| Document Encryption | Support for various encryption policies | Selective Encryption | Users can select and encrypt personal security documents, access target/permission setting security documents, regulatory security documents, and classification security documents. | You can select various security documents to encrypt according to customer requirements. | |
| | Automatic Encryption | Forced Encryption | Automatically enforces encryption under specific conditions according to the security policy set by the administrator. | SAVE, SAVE AS, will be applied upon exit. | |
| | Exception Settings for Forced Encryption | You can set forced encryption exception permissions under specific conditions. | Detailed settings are available. | |
| | Simple Encryption | Apply simple encryption to the unsupported Application file. | You can perform basic encryption regardless of the file extension. | |
| Document Permission Control | Category-Based Permissions | Transcription Category | Set up category-based security policies that apply organization-wide. | | |
| | Forced Category | Enhance category-based security settings through enforced permissions. | | |
| Role-based permissions | Warrior Grade | Set up a tiered security policy that applies organization-wide. | | |
| | Forced Rating | Enhance role-based security settings through mandatory permissions. | | |
| Group/User Based Permissions | Document-level permissions | You can manage permissions by document unit for groups/users. | | |
| | Forced Authorization | Grants forced permissions to a specific group/user. | | |
| User Permission Settings | User-Group Policy Settings | You can set security policies for users or groups. | Manage from the Console. | |
| | Category-Grade Policy Settings | You can control permissions based on categories and ratings. | Example: View, Edit, Print, Decrypt Permission Settings | |
| Access Control | Read-Edit-Output-Decryption Permissions | Supports detailed settings by permission for reading, editing, outputting, and decrypting. | Includes permissions and exception settings for the constructor. | |
| | Output Permission Control | You can set output permissions by user, group, category, and rating. | | |
| | Block Virtual Printer Output | Prevents unauthorized printing using a virtual printer when outputting files. | | |
| | Usage period and limit on the number of times | Automatically destroys when the number of views/prints and the validity period are exceeded. | | |
| Edit Control | Copy & Paste Direction Control | Copy-Paste Block | Prevents copying/pasting the contents of security documents into regular documents. | | |
| | Permission-based Copy-Paste | Copying/pasting is possible depending on the permissions of the security document being copied. | | |
| Screen Capture Control | Screen capture prevention | Controls the content of security documents to prevent screen captures. | | |
| Creating Secure Files for External Transmission | | Creating Secure Files for External Transmission | Creates a simple encrypted secure file (EXE) that can be executed without installing a client program (Clientless). | | |
| Security Document Protection | Tracking of Exported Security Documents | User-group specific marking | Insert markings such as user/group information, output time, ownership, etc. into the output document. | Example: Employee Number, Name, Department, IP Address, etc. Output | |
| | General Document Marking | You can insert print markings not only in security documents but also in regular documents. | | |
| Offline Login Policy | Offline permission setting support | User-Department Permission Settings | You can set separate permissions for users/departments even in offline mode. | If not set, the latest online login permissions will be applied automatically. | |
| | Policy-based permission actions | Recently, the permissions operate according to the online login policy or a separately designated policy. | For example: Permissions such as reading, editing, and output can be restricted. | |
| Batch Encryption | Local Document Encryption | Document Scanning and Batch Encryption | You can scan regular documents on your local PC and encrypt them in bulk. | Select the target document and proceed with encryption. | |
| | User-Department Level Encryption | You can set encryption policies by user and department. | Administrator settings and schedule-based encryption are available. | |
| Document Type Management | Registering Extensions | You can register and manage the types of documents (extensions) to which encryption is applied. | | |
| | Document Search and Processing | Search for the specified target document and proceed with batch encryption processing. | You can select targets and apply encryption based on the search results. | |
| Agent Protection | Process Protection | Preventing Forced Termination | Protects against forcibly terminating the process. | A blocking notification is displayed when attempting to terminate a process in Task Manager. | |
| | Process Hiding | Hides specific processes to prevent external access. | | |
| Module Tampering Prevention | Tamper Resistance | Prevents arbitrary tampering of process modules and executable files. | Administrator approval is required. | |
| Deletion Limit | Approval-based deletion control | Restrict users from arbitrarily deleting the program, and deletion is only possible with administrator approval. | A warning window will be displayed when attempting to delete. | |
| Visibility/Tracking | Web Console | User Monitoring | Records and analyzes user activity logs such as document viewing, editing, and printing to detect and track user activities. (InfoLineage) | Scheduled Items | |
| | Document Distribution Visualization | Visualize the distribution and use of documents by user and business system graphically. | Scheduled Items | |
| | hidden information | Visualize the distribution and use of documents containing hidden information graphically. | Scheduled Items | |
| MLS Support (N2SF) | Grade Assignment | CSO grade designation | Manual grading can be done through the right-click menu of the mouse. | Provides the ability to assign C/S/O grades through right-clicking the mouse. | |
| | Automatic Grade Assignment on Completion | When saving or closing the document, the system automatically assigns a security level predetermined by the administrator's policy without user confirmation. | Applies to both regular documents and security documents, and the grade can only be changed to a higher grade. | |
| | Manual Assignment of Grades at Closure | When closing the document, display the security level selection window, allowing the user to select the security level of the document directly. | Documents without a grade will display all allowed grades, while documents with a grade will only show the same or higher grades. If canceled, the grade will not be applied. | |
| Grade Check | Document Properties Window Security Level Display | In the explorer, right-click on the file → Properties → In the "Security Level" tab, you can check the security level applied to the document as read-only. | Supports both regular documents and security documents. By default, the grade name and label name are displayed, and the display items can be selected through administrator settings. It is only displayed when logged in. | |
| Multi-Environment Support | Support for Various OS | Windows OS | Supports Windows 10, 11 (64bit) environments. | | |
| | Mac OS | Supports Mac OS environment. | Supports DRM document read-only viewing, MIP document MS Office connection, and general document MIP conversion. | |
| Batch Conversion Tool | SCFinder Search and Transformation | MFT-based search | Provides fast file search using the Master File Table. | | |
| | Search by Document Type | Supports search by document type: General/DRM/MIP. | | |
| | Batch conversion | Provides batch conversion processing for the retrieved documents. | | |
| Convenience Features | Folder Encryption | Encrypt the Application document in the folder. | | |
| Whitelist-based transformation | Convert only specific documents | DS_MIP_DOC_CONV_WHITE_LIST provides policy-based 1:1 mapping conversion. | | |
| Zero Trust Security | User Authentication Management | SHIELD ID Unified Login | Security365 login authentication supports integrated login for Security365, Azure ActiveX (MS365), and SCI. | | |
| | AzureAD-EntraID SSO | Windows AD Join + Hybrid environment provides automatic SSO login. | | |
| | SCI SSO | Supports Single Sign-On through SCI Server ID. | | |
| | EntraID SSO | Supports SSO login through EntraID. | | |
| | PKCE Authentication (Public Client Login) | You can complete Security365 authentication with just a browser login even in environments where authentication information cannot be distributed to the user's PC. | The authentication method is automatically determined according to the administrator policy settings. The authentication information is securely stored on the PC and can be used offline without re-logging during the validity period. | |
| | Login UI Customization | Supports branding for the SHIELD ID login page. | | |
| | Force Logout on User Deactivation | Automatically logs out when the user is deactivated. | | |
| | MFA Authentication Support | Supports various MFA authentication based on conditions to enhance user authentication. | | |
| | Zero Trust Policy | Applies a Zero Trust-based security policy. | | |
| visibility | Reporting | User-specific patch status, login status, installation status, decryption status, print status, exported document status, and users with release permissions are provided. | Scheduled Items | |
| Document Security Orchestration (MIP Support) | File Encryption/Decryption | MIP encryption method | Supports MIP encryption compatible with Microsoft 365. | | |
| | Encryption-Decryption Point Management | Manages the encryption/decryption timing through the ZTCAP policy. | | |
| Document Automatic Conversion and Integrated Control | Bidirectional Automatic Conversion | Supports bidirectional automatic conversion according to the ZTCAP policy between the MIP document and the DRM encryption document. | | |
| | Right-click conversion | Supports the mutual conversion between DRM documents, MIP documents, and regular documents through right-clicking the mouse. | | |
| | Batch Conversion of Folders | Supports batch DRM conversion and batch MIP conversion through right-clicking the mouse in the folder, and allows for saving and viewing batch conversion logs. | | |
| | Transformation Log Storage - Retrieval | You can save and view the batch conversion logs. | | |
| | Cloud Download Document Conversion | Automatically converts when downloading from OneDrive, SharePoint, Teams, and Google Drive. | The target cloud storage is determined by the list of download URLs of the conditional policy. Google Drive is included in the default policy after the URL is confirmed. | |
| | Teams Copilot Upload Document Conversion | When attaching security documents in the Copilot tab of the Teams app, they are automatically converted on the user's PC before being uploaded to the cloud. | Supports file attachment, drag-and-drop, and paste methods. The targets are Word, Excel, PowerPoint documents, and PDFs, while Teams web, mobile, and chat, bulletin board uploads are excluded. | |
| | Automatic conversion when viewing documents | Automatic conversion according to the ZTCAP policy is provided at the time of document viewing. | Local/SharePoint Path Support | |
| | Maintain document ownership during conversion | Even if the MIP document is converted to a DRM document and then converted back to a MIP document, the original owner of the MIP document remains unchanged. | If another user performs the conversion, the original owner permissions are preserved. If the MIP label is deleted, the owner information is not retained. | |
| | Check the reason for conversion failure | If the document conversion fails, you can check the failed documents in the conversion results list and see which policy and reason caused the failure through the detailed view. | The list of policies is displayed in order of priority, and the policy that determined the outcome is highlighted. The evaluation results of conditions, exclusions, and decision factors for each policy are provided in Korean. | |
| | Conversion Progress Guide at Document End | When ending the document, if multiple documents are being converted and graded simultaneously, the processing status for each file will be displayed in the progress notification window. | Each file displays the conversion status of in progress, success, or failure, and once all tasks are completed, the confirm button is activated and will automatically close after 5 seconds. The window cannot be closed during the process. | |
| Icon Support | DRM Document Icon | Supports DRM document icons. | | |
| | MIP Document Icon | Distinguish and display MIP document icons in the explorer. Classification (Label) / Protection (Protect) | | |
| | CSO grade icon | Displays the overlay icon for C/S/O grade documents. | | |
| MIP Document Management | Delete MIP Label | Provides MIP label deletion through the right-click menu. | | |
| | MIP Icon Control | You can control the display/hide of the MIP icon. | | |
| | Third-party Tenant MIP Document Viewing Confirmation Guide | When opening a document protected with an MIP label by another company, a confirmation window is displayed, allowing the user to choose whether to view it or not. | It is displayed when you double-click in the explorer or select it in the Office open dialog. It is excluded when opening by drag and drop or from the recent documents list. | |
| Cloud Integrated Management | Upload Control | Automatic Conversion | Upload | Automatically converts when uploading from local → OneDrive/SharePoint. | | |
| | Conversion Progress Warning Dialog | Displays a user notification window during bulk file processing. | up to 10 windows | |
| | Backup of the original file | Automatically backs up the original file when uploading. | | |
| | Upload Blocking (Grade-Based Selective Blocking) | When uploading documents to cloud storage such as OneDrive/SharePoint, only documents of restricted grades are selected to block the upload. | The level to be blocked is specified by the administrator in the conditional policy. Microsoft Office documents and PDFs are supported. | |
| | Replace the guide file | The blocked document has an information file uploaded instead of the original, allowing the task of uploading multiple documents at once to either stop midway or complete without errors. | The notification file name is "original_name_blocked.txt". When uploading a folder, if there is a blocked document, the original folder remains on my PC as it is. | |
| | Upload Result Notification | When the upload task is complete, the results by file (moved/blocked/error) will be displayed in one window. | If there are no blocks or errors, no notifications will be displayed. | |
| Download Control | Automatic Conversion | Download | OneDrive/SharePoint → Automatically converts when downloaded locally. | | |
| Document Control by Path | Local path | Provides control over general path documents. | | |
| | OneDrive Path | Provides control over OneDrive path documents. (Limited) | | |
| | SharePoint Path | Provides control over SharePoint path documents. | | |
| Adobe Control | Browser Authentication Not Used | Provides Adobe certification bypass options. | | |