| Document Encryption | Support for various encryption policies | Selective Encryption | Users can select and encrypt personal security documents, access target/permission setting security documents, regulatory security documents, and classification security documents. | You can select and encrypt various security documents according to customer requirements. | |
| | Automatic Encryption | Forced Encryption | Automatically enforces encryption under certain conditions according to the security policy set by the administrator. | SAVE, SAVE AS, will be applied when closing. | |
| | Exception settings for forced encryption | You can set forced encryption exception permissions under certain conditions. | Detailed settings are available. | |
| | Simple Encryption | Apply simple encryption to the unsupported Application file. | You can perform basic encryption regardless of the file extension. | |
| Document Permission Control | Category-based permissions | Enterprise Category | Set up category-based security policies that apply organization-wide. | | |
| | Forced Category | Enhance category-based security settings through forced permissions. | | |
| Role-based permissions | Warrior Grade | Set up a tiered security policy that applies organization-wide. | | |
| | Forced Rating | Enhance role-based security settings through enforced permissions. | | |
| Group/User Based Permissions | Document-level permissions | You can manage permissions by document unit for groups/users. | | |
| | Forced Authorization | Grants forced permissions to a specific group/user. | | |
| User Permission Settings | User-Group Specific Policy Settings | You can set security policies by user or group. | Manage from the Console. | |
| | Category-Grade Policy Settings | You can control permissions based on categories and ratings. | Example: View, Edit, Print, Decrypt Permission Settings | |
| Access Control | Read-Edit-Output-Decryption Permissions | Supports detailed settings by permission for reading, editing, outputting, and decryption. | Includes constructor permissions and exception settings. | |
| | Output Permission Control | You can set output permissions by user, group, category, and rating. | | |
| | Block Virtual Printer Output | Prevents unauthorized printing using a virtual printer when outputting files. | | |
| | Usage period and frequency limits | Automatically destroys when the number of views/prints and the validity period exceed. | | |
| Edit Control | Copy & Paste Direction Control | Copy-Paste Block | Prevents copying/pasting the contents of security documents into regular documents. | | |
| | Permission-based Copy-Paste | Copying/pasting is possible depending on the permissions of the security document being copied. | | |
| Screen Capture Control | Screen Capture Prevention | Controls the content of security documents to prevent screen capture. | | |
| Creating Secure Files for External Transmission | | Creating Secure Files for External Transmission | Creates a simple encrypted secure file (EXE) that can be executed without installing a client program (Clientless). | | |
| Security Document Protection | Tracking of Exported Security Documents | User-group specific marking | Insert markings such as user/group information, output time, ownership, etc. into the output document. | Example: Employee Number, Name, Department, IP Address, etc. Output | |
| | General Document Marking | You can insert print markings not only in security documents but also in regular documents. | | |
| Offline Login Policy | Offline permission setting support | User-Department Permission Settings | You can set separate permissions for users/departments even in offline mode. | If not set, the latest online login permissions will be automatically applied. | |
| | Policy-based permission actions | Recently, the permissions operate according to the online login policy or a separately designated policy. | For example: You can set permission restrictions such as reading, editing, and output. | |
| Batch Encryption | Local Document Encryption | Document Scanning and Batch Encryption | You can scan regular documents on your local PC and encrypt them in bulk. | Select the target document and proceed with encryption. | |
| | User-Department Level Encryption | You can set encryption policies by user and department. | Administrator settings and schedule-based encryption are available. | |
| Document Type Management | Registering Extensions | You can register and manage the types of documents (extensions) to which encryption is applied. | | |
| | Target Document Search and Processing | Search for the specified target document and proceed with batch encryption processing. | You can select targets and apply encryption based on the search results. | |
| Agent Protection | Process Protection | Prevent Forced Termination | Protects against forcibly terminating the process. | A blocking notification is displayed when attempting to terminate a process in Task Manager. | |
| | Process Hiding | Hides specific processes to prevent external access. | | |
| Module Tampering Prevention | Anti-tampering | Prevents arbitrary tampering of process modules and executable files. | Administrator approval is required. | |
| Deletion Limit | Approval-Based Deletion Control | Restrict users from arbitrarily deleting the program, and deletion is only possible with administrator approval. | A warning window will be displayed when attempting to delete. | |
| Visibility/Tracking | Web Console | User Monitoring | Records and analyzes user activity logs such as document viewing, editing, and printing to detect and track user activities. (InfoLineage) | Scheduled Items | |
| | Document Distribution Visualization | Visualize the distribution and use of documents by user and business system graphically. | Scheduled Items | |
| | Hidden Information | Visualize the distribution and use of documents containing hidden information graphically. | Scheduled Items | |
| MLS Support (N2SF) | Rating Assignment | CSO grade designation | Manual rating can be specified through the right-click menu of the mouse. | Provides the ability to assign C/S/O grades through right-clicking the mouse. | |
| | Automatic Grade Assignment Upon Completion | When saving or closing the document, the system automatically assigns a security level predetermined by the administrator's policy without user confirmation. | Applies to both regular documents and security documents, and the grade can only be changed to a higher grade. | |
| | Manual Assignment of Grades at Closure | When closing the document, display the security level selection window, allowing the user to select the security level of the document directly. | Documents without a grade show all allowed grades, while documents with a grade only display the same or higher grades. If canceled, the grade will not be applied. | |
| Grade Check | Document Properties Window Security Level Display | In the explorer, right-click on the file → Properties → You can check the security level applied to the document as read-only in the "Security Level" tab. | Supports both regular documents and secure documents. By default, the grade name and label name are displayed, and the display items can be selected through administrator settings. It is only displayed when logged in. | |
| Multi-Environment Support | Support for Various OS | Windows OS | Supports Windows 10, 11 (64bit) environments. | | |
| | Mac OS | Supports Mac OS environment. | Supports reading DRM documents in read-only mode, connecting MIP documents to MS Office, and converting general documents to MIP. | |
| Batch Conversion Tool | SCFinder Search and Conversion | MFT-based search | Provides fast file search using the Master File Table. | | |
| | Search by Document Type | Supports search by document type for General/DRM/MIP. | | |
| | Batch conversion | Batch conversion processing is provided for the retrieved documents. | | |
| Convenience Features | Folder Encryption | Encrypt the Application document in the folder. | | |
| Whitelist-based transformation | Convert only specific documents | DS_MIP_DOC_CONV_WHITE_LIST provides policy-based 1:1 mapping conversion. | | |
| Zero Trust Security | User Authentication Management | SHIELD ID Unified Login | Security365 login authentication supports integrated login for Security365, Azure ActiveX (MS365), and SCI. | | |
| | AzureAD-EntraID SSO | Provides automatic SSO login in Windows AD Join + Hybrid environment. | | |
| | SCI SSO | Supports Single Sign-On through SCI Server ID. | | |
| | EntraID SSO | Supports SSO login through EntraID. | | |
| | PKCE Authentication (Public Client Login) | You can complete Security365 authentication with just a browser login even in environments where authentication information cannot be distributed to user PCs. | The authentication method is automatically determined according to the administrator policy settings. The authentication information is securely stored on the PC and can be used offline without re-logging during the validity period. | |
| | Customizing the Login UI | Supports branding for the SHIELD ID login page. | | |
| | Force Logout on User Deactivation | Automatically logs out when the user is deactivated. | | |
| | MFA Authentication Support | Supports various MFA authentication based on conditions to enhance user authentication. | | |
| | Zero Trust Policy | Applies a zero trust-based security policy. | | |
| visibility | Reporting | User-specific patch status, login status, installation status, decryption status, print status, document export status, and users with release permissions are provided. | Scheduled Items | |
| Document Security Orchestration (MIP Support) | File Encryption/Decryption | MIP encryption method | Supports MIP encryption compatible with Microsoft 365. | | |
| | Encryption-Decryption Timing Management | Manages the encryption/decryption timing through the ZTCAP policy. | | |
| Document Automatic Conversion and Integrated Control | Bidirectional Automatic Conversion | Supports bidirectional automatic conversion between MIP documents and DRM encryption documents according to the ZTCAP policy. | | |
| | Right-click conversion | Supports mutual conversion between DRM documents, MIP documents, and regular documents through right-clicking the mouse. | | |
| | Batch Conversion of Folders | Supports batch DRM conversion and batch MIP conversion through right-clicking the mouse in the folder, and allows for saving and viewing batch conversion logs. | | |
| | Transformation Log Save - Query | You can save and view batch conversion logs. | | |
| | Cloud Download Document Conversion | Automatically converts when downloading from OneDrive, SharePoint, and Teams. | | |
| | Teams Copilot Upload Document Conversion | When attaching security documents in the Copilot tab of the Teams app, they are automatically converted on the user's PC before being uploaded to the cloud. | Supports file attachment, drag-and-drop, and paste methods. The targets are Word, Excel, PowerPoint documents, and PDFs, while Teams web, mobile, and chat, board uploads are excluded. | |
| | Automatic conversion when viewing the document | Automatic conversion according to the ZTCAP policy is provided at the time of document viewing. | Local/SharePoint Path Support | |
| | Maintain document ownership during conversion | Even if the MIP document is converted to a DRM document and then converted back to a MIP document, the original owner of the MIP document remains unchanged. | The original owner permissions are preserved even if another user performs the conversion. If the MIP label is deleted, the owner information is not retained. | |
| | Check the reason for conversion failure | If the document conversion fails, you can check the failed documents in the conversion results list and see which policy and reason caused the failure through the detail view. | The list of policies is displayed in order of priority, and the policy that determined the outcome is highlighted. The evaluation results of conditions, exclusions, and decision factors for each policy are provided in Korean. | |
| | Conversion Progress Guide at Document End | When closing the document, if multiple documents are converted and graded simultaneously, the processing status for each file will be displayed in the progress notification window. | Each file displays a conversion in progress, success, or failure status, and once all tasks are completed, the confirm button is activated and will automatically close after 5 seconds. The window cannot be closed during the operation. | |
| Icon Support | DRM Document Icon | Supports DRM document icons. | | |
| | MIP Document Icon | Distinguish and display MIP document icons in the explorer. Classification (Label) / Protection (Protect) | | |
| | CSO grade icon | Displays the overlay icon for C/S/O grade documents. | | |
| MIP Document Management | Delete MIP Label | Provides MIP label deletion through the right-click menu. | | |
| | MIP Icon Control | You can control the display/hide of the MIP icon. | | |
| | Third-party Tenant MIP Document Viewing Confirmation Guide | When opening a document protected by MIP labels from another company, a confirmation window is displayed, allowing the user to choose whether to view it or not. | It is displayed when you double-click in the explorer or select it in the Office open dialog. This does not apply when opening via drag and drop or from the recent documents list. | |
| Cloud Integrated Management | Upload Control | Automatic Conversion | Upload | Automatically converts when uploading from local to OneDrive/SharePoint. | | |
| | Conversion Progress Warning Dialog | Displays a user notification window during bulk file processing. | Up to 10 windows | |
| | Backup of the original file | Automatically backs up the original file upon upload. | | |
| | Upload Blocking (Grade-Based Selective Blocking) | When uploading documents to cloud storage such as OneDrive/SharePoint, it blocks the upload of documents that are classified as restricted. | The level to be blocked is specified by the administrator in the conditional policy. Microsoft Office documents and PDFs are supported. | |
| | Replace the guide file | The blocked document has been replaced with a notice file, allowing the process of uploading multiple documents at once to either stop midway or complete without errors. | The notification file name is "original_name_blocked.txt". When uploading a folder, if there is a blocked document, the original folder remains on my PC as it is. | |
| | Upload Result Notification | When the upload task is complete, the results for each file (moved/blocked/error) will be displayed in one window. | If there are no blocks or errors, no notifications will be displayed. | |
| Download Control | Automatic Conversion | Download | OneDrive/SharePoint → Automatically converts when downloaded locally. | | |
| Document Control by Path | Local Path | Provides control over the general path document. | | |
| | OneDrive Path | Provides control over OneDrive path documents. (Limited) | | |
| | SharePoint Path | Provides control over SharePoint path documents. | | |
| Adobe Control | Browser Authentication Not Used | Provides an option to bypass Adobe authentication. | | |