What is encryption? It’s a process that secures data or messages so that the intended recipient (or person authorized to access the data) is able to view the data while others can’t. In this process, the data is first encrypted and authorized parties are allowed to decrypt the data. A set of “keys” are typically used to allow this to happen. One of the main differences in the different encryption methods is what types of keys are used and how the process occurs in relation with those keys.

PGP encryption has long been recognized as an extremely secure encryption method for the z/OS mainframe and other platforms. Several algorithms are used to encrypt the data and the final security measure lies in the use of “public-key cryptography”. This requires the proper key to decrypt the data and is something that will be explored more when we describe mainframe encryption in depth.

If you’re not sure why your organization needs to find and use the best possible encryption solution, spend 10 minutes on Google looking through recent news articles describing data breaches. These breaches happen to the largest companies in the world and will continue to happen. All it takes is one little weakness in a system and trust me, the bad guys will find it and make you pay! It happened to Target recently on the Black Friday weekend in 2013. Encryption seems to have helped Target keep debit card PIN codes secure (as secure as any 4-digit code can be) while still losing millions of customer’s credit/debit card numbers. This breach happened at physical Target locations across the country; the credit card swipe machines seem to be the culprit. It just goes to show that a data breach can happen anywhere within any organization and being prepared for every possibility is necessary. We’ve provided a few examples of recent data breaches where large amounts of data were lost by large organizations.

