A Fortify 24x7 brand. Plain dealing, printed rates, and a name against every job.Sign in at the counterSend us a line
Stars and Stripes ITCarried · Posted · Signed for
Route 05 / The sealed pouch

Find the records first. Then seal the pouch

Every company we have worked with is holding regulated material it has forgotten about. A folder of scanned identity documents from a hiring round. A spreadsheet of card numbers exported once for a reconciliation and never removed. It is not carelessness. It is what a decade of ordinary work leaves behind, and it cannot be dealt with until it appears on a list.

ActifileDiscovery firstTwo items on this route
FORM 3805
Items carried2
Rate followsDevice
Worked byDiscovery, then enforcement
Runs onActifile

Discovery is the part that changes minds

The agent sweeps each machine, and the shares that machine can reach, then reports what regulated material turned up and exactly where. Card numbers, national identifiers, health records, executed contracts. That opening report is nearly always longer than anybody predicted, and its length is the whole value of it.

Actifile then prices what each machine is carrying. A dollar figure is what converts an unreadable inventory into a queue, because it says which laptop to handle on Monday instead of leaving thirty of them equally urgent and therefore equally ignored.

Nothing is protected while it is still on nobody's list

Then the pouch is sealed

Enforcement encrypts what discovery located, in the place it already lives, and rules on each application separately about which exits a protected record may take. A rule sticks to the record itself and not to the folder around it, which matters because copies wander off while folders stay put.

Buying enforcement without discovery is a common and expensive mistake, because you end up writing rules against an estate you imagined. Run discovery, read the report, then buy enforcement for the machines the report actually points at.

Every item on this route

Item by item, with the figure attached

Each figure here is pulled out of the billing service as this page opens. Load a line now and it waits in the bag until you have finished reading.

Fortify-DLP-ClassifyROUTE 05

Sensitive Data Discovery

per device

Actifile reads the estate and reports where regulated material has ended up. Card numbers, national identifiers, health records, signed contracts. Nothing gets protected while it is still unlisted, and most estates hold a few directories nobody has opened since the person who made them left.

  • Sweeps each machine, and the storage it can open, for regulated and proprietary records.
  • Prices what each machine is carrying, which is how a flat inventory becomes a queue.
  • Finds the copies as well as the originals, including the ones on desktops.
  • Reporting suitable for handing to an auditor without rewriting it first.
Carried onActifile agent, one per device in scope
CoversMachines in scope and whatever storage those machines can open
Held in transitFindings and risk scoring held in the Actifile console; files stay where they are
Postmarked byRescans on a schedule, the opening one covering the estate entire
Signed forOne device, one line, one monthly rate
Rate loadingcounted per device
paid a month ahead
HOW MANY
Fortify-DLP-EnforceROUTE 05

Encryption and Channel Control

per device

Discovery with teeth. Records found by the scan get encrypted where they already sit, and every application is ruled on separately over whether it may move them at all. Compliance profiles cover the usual regimes, and the rule attaches to the record instead of the directory somebody once remembered to configure.

  • Encryption applied to the records discovery identified, in place.
  • Each application ruled on separately for which exits a protected record may take.
  • Multiple compliance profiles, so one estate can serve more than one regime.
  • Enforcement runs after discovery, so you are governing a real list and not a guess.
Carried onActifile agent, one per device in scope
CoversMachines in scope and their storage, with the rule attached to each record
Held in transitEncryption keys and policy state held in the Actifile console
Postmarked byContinuous enforcement, with scheduled rescans behind it
Signed forOne device, one line, one monthly rate
Rate loadingcounted per device
paid a month ahead
HOW MANY
Honest scope

Where this route ends

Data work is bounded by where an agent can read and by what a person is entitled to do. Both bounds deserve stating.

  • Reach is agent reach. Machines in scope, and storage those machines can open. A cloud drive nobody syncs down, or a supplier keeping your records on their own systems, falls outside.
  • A sweep is not omniscience. Matching is strong without being flawless. Expect a handful of false hits and the occasional peculiar file format it cannot open.
  • Encryption is not permission. It defends a record against somebody who was never meant to hold it. It does nothing about a colleague entitled to open the file who then misuses what is inside.
  • This does not make you compliant. It produces evidence a regulator will accept as one part of a programme. The programme, the policies, and the judgment stay with you.
  • Enforcement is worth buying second. We will turn down an order for enforcement alone. That is not a sales tactic. The purchase simply does not work in that order.
NOTE 01

Heads up: card statements show FORTIFY 24X7 - Stars and Stripes IT is a Fortify 24x7 brand, and your subscription is billed by Fortify 24x7.