Platform Security

Providing flexible and practical OS security for high assurance environment

Services
Tresys provides deep expertise in platform security to the DoD and Intelligence community. We offer strategic planning, development & engineering services, certification and accreditation expertise, and platform security training services. Specific areas of technical expertise include the following:

Secure solutions begin with the creation of secure Linux system configurations that serve as a secure, regulatory compliant platform for application hosting.

With adoption of Linux on the rise, it is increasingly important that customers maintain a level of internal expertise around SELinux to ensure strong operating system security.

At the core of today's desktop and data center initiatives around green IT, consolidation, and cost savings, virtualization offers many benefits, but it is not in itself a security tool.

From the cloud to private networks, it is critical to secure the underlying infrastructure of a business and to ensure that business applications leverage that security.

Open Source
Solutions
Tresys' platform security solutions are designed to ensure the lockdown and management of Linux platforms – enabling greater trust and stronger security while providing flexibility and control. Our solutions focus on endpoint security and centralized compliance management.

CLIP ™ is an open source project that delivers a hardened configuration and strict SELinux policy for Red Hat Enterprise Linux. CLIP provides a foundation for secure applications requiring compliance with DCID 6/3 PL4, NSS 1253, DOD 8500.2, and DISA IASE STIG V5R1. It also includes all appropriate Certification and Accreditation documentation.

Learn More

VM Fortress ™ is a security hardened operating system lockdown suite for designed to ensure strong, independent control over all system resources (e.g., physical devices, virtual machines, applications, etc.) using the power of SELinux and virtual machines to provide strong separation and stop exploits at the OS level.

Learn More