Glossary
This glossary is organized to help easily understand key terms frequently encountered when using Document Security products.
Quick Navigation
Quickly look up key terms.
| Category | Key Terms |
|---|---|
| Basic Concepts | Document Security, Endpoint, Orchestration |
| Document Security | Security Document, DRM, MIP, Encryption, Decryption |
| Grade/Label | C/S/O grade, label, security label |
| Permissions/Policies | Permission, ZTCAP, category-based permission, grade-based permission |
| Authentication | SSO, SHIELD ID, unified login, MFA |
| Document Conversion | DRM↔MIP conversion, bidirectional automatic conversion, batch conversion |
| Cloud | Microsoft 365, OneDrive, SharePoint |
| Document Control | Access Control, Copy/Paste Control, Screen Capture Control |
| Document Management | Batch Encryption, Secure Document Destruction, Secure Files for External Transmission |
| Logs and Monitoring | Integrated logs, document logs, document visibility |
| Other Terms | Offline login, token, app permissions, user token |
Basic Concepts
Document Security
Encrypting electronic documents generated within companies and organizations to prevent important information from being leaked externally.Endpoint Document Security Orchestration Solutionis.
Main Features:
- Document Encryption and Access Control
- Integration with cloud environments such as Microsoft 365, Azure AD
- Automatic Document Conversion and Security Policy Application
Endpoint
The term refers to end-user devices such as personal computers or laptops where users actually create, edit, and view documents. Document Security encrypts documents and manages security on these endpoints.
**Protection target:**PC, user devices such as laptops
**Protection method:**Document encryption, access control, process protection
Orchestration
It means to harmoniously integrate various security solutions and systems for unified management. Document Security provides orchestration capabilities to use internal DRM and cloud security together.
Main Role:
- Support for the Coexistence of Internal DRM and Cloud Security
- Integrated management of document conversion, permission management, and policy application
Document Security
Core Security Technologies
Secure Document
Document Security refers to encrypted documents. Secure documents can only be viewed, edited, and printed by authorized users, preventing unauthorized copying or leakage.
DRM (Digital Rights Management, Digital Rights Management)
It is a technology that controls access and usage rights for documents. It refers to the internal document encryption method used in Document Security, allowing for fine-grained control of permissions such as reading, editing, and printing on a per-user or per-group basis.
MIP (Microsoft Information Protection)
A unified information protection platform provided by Microsoft, encompassing all of Microsoft's information protection technologies including MIP. Document Security works in conjunction with MIP to provide document security in the Microsoft 365 environment.
Term Relationships
MIP ⊃ label
- MIP is Microsoft's comprehensive information protection platform.
- A label is a security classification mark assigned to a document in MIP.
Encryption Method
Document Security supports various encryption methods:
- Selective Encryption: This is a method where the user directly selects the type of security document (personal security document, access target/permission setting security document, regulatory security document, classification security document) to encrypt.
- Automatic (Forced) Encryption: This is a method that automatically encrypts documents under specific conditions according to the security policy set by the administrator. It is automatically applied when saving, saving as, and at the time of exit.
- Simple Encryption: This is the basic encryption method applied to files of applications that Document Security does not natively support. Basic encryption can be performed regardless of the file extension.
Encryption/Decryption
Encryption: This is the process of converting the contents of a document into an unreadable form using a specific algorithm. Document Security encrypts the document so that unauthorized users cannot view the contents.
Decryption: The process of restoring an encrypted document to its original readable form. Only authorized users can decrypt and access the document.