Featured Product
This Week in Quality Digest Live
Lean Features
Daniel Marzullo
Think and plan more deeply with this exercise
William A. Levinson
Quality and manufacturing professionals are in the best position to eradicate inflationary waste
Mark Graban
Focus on psychological safety instead
Donald J. Wheeler
What does this ratio tell us?
Matthew M. Lowe
Take this opportunity to prepare for the future

More Features

Lean News
Embrace mistakes as valuable opportunities for improvement
Introducing solutions to improve production performance
Helping organizations improve quality and performance
Quality doesn’t have to sacrifice efficiency
Weighing supply and customer satisfaction
Specifically designed for defense and aerospace CNC machining and manufacturing
From excess inventory and nonvalue work to $2 million in cost savings
Tactics aim to improve job quality and retain a high-performing workforce
Sept. 28–29, 2022, at the MassMutual Center in Springfield, MA

More News

Quality Digest

Lean

File Management System Protects Data and Facilitates Data-Security Compliance

Specifically designed for defense and aerospace CNC machining and manufacturing

Published: Tuesday, October 25, 2022 - 12:01

(ProShop: Bellingham, WA) -- The ProShop Secure Access File Ecosystem (SAFE) from ProShop ERP will be a secure, innovative, cloud-based ERP file-management system that enables companies to achieve multidimensional, roll- and user-based data security compliance to multiple standards such as NIST 800-171, CMMC, ITAR, HIPAA, SOC, GDPR, and ISO-2700X.

ProShop SAFE ensures that only authorized users have access to specific files and folders managed through the unified credentials and authentication of their ProShop login. Combined with ProShop’s GovCloud hosting suite of features, ProShop SAFE dramatically limits a shop’s controlled unclassified information (CUI) footprint and thereby simplifies and economizes compliance efforts. It also protects other sensitive company and customer data. (Future versions will even streamline marking of CUI, CTI, and FCI.)

Beyond facilitating compliance to CMMC and ITAR standards, ProShop SAFE also ensures that an employee can’t accidentally delete or move critical information they’re not authorized to act on. ProShop ERP is the only shop management ERP/MES/QMS software specifically designed for defense and aerospace CNC machining and manufacturing with these levels of security controls.

ProShop SAFE is a managed, encrypted file store (end to end, and at rest) that securely and seamlessly translates into the browser experience. User-definable file access security groups (FASG) within the user module of ProShop enable security administrators to define permissions of all folders and files within the file store, and provide read/write/execute or forbid access to any configuration of approved folders, subfolders, and files.

When a ProShop login is authenticated via a user’s ProShop credentials and two-factor authentication (2FA), if enabled, the files and images are immediately available and visible in the ProShop browser interface. The user can view and manipulate those files with the secure cloud file store and in-memory of the device without the need for the files to be downloaded to the user’s device. This limits the storage footprint of CUI information within a shop and makes it considerably simpler to achieve CMMC and ITAR requirements for controlling CUI. When the ProShop session is closed, the file store is immediately removed, and access to any files within it is terminated.

In many ERP systems, files may be stored in a database, which requires that anything beyond simple viewing of a file in the browser must include downloading the file to the local device. That adds significant risk, cost, and complexity to the process of meeting CMMC Level 2 requirements.

Conversely, ProShop SAFE files are stored in human-readable and browsable file structures and are access-controlled across all folder hierarchies. ProShop SAFE even allows access to subfolders housed within upper-level folders without providing access to the upper-level folder itself. This level of control is essential for safe and effective management of files that employees need to effectively perform their jobs.

A good example application of ProShop SAFE: A CNC setup machinist (and ITAR-approved U.S person) can log into ProShop on the factory floor using user-specific credentials and a 2FA key on a Windows-based device that may previously have had no access to ProShop SAFE files. As soon as ProShop authenticates the credentials, the ProShop SAFE file store is connected, and the setup person can browse only the specific folders and see the specific files permitted.

For example, the setup person may have read-access-only to the G-Code folder associated with the parts and work orders involved. The setup person can also view the approved inspection drawing directly within the browser and see the approved setup photos and videos stored within the part folder. ProShop SAFE also allows write access to that folder so new photos of the setup can be submitted for manufacturing engineering approval. When setup is complete, the file store is immediately removed when the setup person logs out of ProShop.

Then, when a CNC machine operator logs into the same device to run the job, and new permissions are applied, there is direct access to the G-Code files and folder as well as read-only access to photos of the setup within the ProShop interface. There is, however, no write access to that file folder, to prevent deleting, moving, or editing any files within the folder. The least-privilege security settings limit what the machine operator can see or do. As soon as the operator logs out of ProShop, the file store is disconnected, and files can’t be browsed or accessed by anyone on that device.

Paul Van Metre, president of ProShop USA, says data security is critical, especially in the defense and aerospace industry. “A business that is out of compliance with data security standards can lose contracts. Application of ProShop SAFE accelerates and simplifies fulfillment of a wide range of security requirements, avoiding possible loss of work while saving money and time.”

For more information browse https://proshoperp.com/proshopsafe or call (800) 990–4046.

Discuss

About The Author

Quality Digest’s picture

Quality Digest

For 40 years Quality Digest has been the go-to source for all things quality. Our newsletter, Quality Digest, shares expert commentary and relevant industry resources to assist our readers in their quest for continuous improvement. Our website includes every column and article from the newsletter since May 2009 as well as back issues of Quality Digest magazine to August 1995. We are committed to promoting a view wherein quality is not a niche, but an integral part of every phase of manufacturing and services.