Company News

Back to news

Prime Factors and Entrust Deliver Simplified Data Protection with Quantum-Ready, Crypto-Agile Solution

EncryptRIGHT and Entrust nShield 5c HSM integration establishes a FIPS 140-3 certified root of trust for application-level data protection and PCI DSS compliance

September 1, 2026 – Prime Factors has integrated EncryptRIGHT with the latest release of the Entrust nShield general purpose HSM, the nShield 5c HSM. This joint solution gives organizations a certified, tamper-resistant root of trust for protecting sensitive data as it moves across applications, databases, and cloud environments.

The integration pairs Prime Factors' data security platform, EncryptRIGHT, with the FIPS 140-3 certified nShield 5c HSM to anchor the cryptographic keys that secure EncryptRIGHT's centralized policy engine. The solution allows enterprises to enforce encryption, tokenization, masking, digital signing, and hashing policies from a single console while distributing enforcement across every application that touches sensitive data, and without requiring developers to rewrite code as security requirements change.

“As regulatory requirements accelerate and the shift toward quantum-resistant algorithms becomes a priority, organizations need an architecture that can quickly adapt to change without disrupting existing applications,” said Juan Asenjo, Director of Product Management at Prime Factors. “EncryptRIGHT’s policy-driven approach, combined with the certified hardware root of trust that nShield provides, gives security teams a way to update cryptographic protections centrally and quickly, rather than waiting on lengthy application redevelopment cycles. This integration is a direct response to what our customers are asking for as they plan their long-term data protection roadmaps.”

A Certified Foundation for Application-Level Data Protection

As data volumes grow and compliance requirements tighten, security teams must strengthen protection without impacting the applications and processes their organizations already depend on. EncryptRIGHT addresses this challenge by abstracting data protection from applications, while nShield HSMs supply the hardware-backed key custody that regulators and auditors expect for high-assurance environments. The combination extends Entrust’s identity-centric security model down to the data itself, giving organizations a consistent way to protect information at rest, in motion, and in use, regardless of where an application is deployed and without affecting existing applications.

Key capabilities of the joint solution include:

  • Quantum-Ready Crypto-Agility – Centralized policy control with distributed enforcement lets organizations swap keys or migrate to quantum-resistant algorithms across every connected application without code changes or redevelopment cycles.
  • Reduced PCI DSS Audit Scope – Broad-spectrum data protection, including encryption, tokenization, masking, digital signing, and hashing, combined with built-in compliance reporting, helps satisfy PCI DSS requirements.
  • Granular Role-Based Access Controls – Fine-grained permissions enforce data privacy policies and limit insider risk, ensuring only authorized users and applications can access sensitive data or keys.
  • Flexible Deployment Across Environments – The solution deploys on premises, in the cloud, or across hybrid environments, adapting to how organizations already run their infrastructure.
  • FIPS 140-3 Certified Root of Trust – The nShield HSM protects the keys securing EncryptRIGHT's policy engine and the data processed by applications within a tamper-resistant hardware boundary, delivering high-assurance security.

Organizations ready to strengthen their data protection can request more information at primefactors.com/request-info/, or learn more about the integrated solution at primefactors.com/data-protection/encryptright/ and entrust.com/HSM.

 

linkedin facebook pinterest youtube rss twitter instagram facebook-blank rss-blank linkedin-blank pinterest youtube twitter instagram