Thales is a global leader whose cybersecurity division focuses primarily on the security of sensitive information in both cloud and on-premise infrastructures. Key areas include data encryption (encryption of hard drives, databases, and network transmissions), key management (hardware security modules – HSM – for the secure generation and storage of cryptographic keys), and access control (multi-factor authentication and user identity verification).
Imperva complements the portfolio by focusing on the application layer and protection against threats from the internet. Key areas include application protection (Web Application Firewall against exploitation of vulnerabilities in websites and APIs), attack defense (blocking DDoS attacks and detecting malicious bots), and database security (monitoring user activity and protecting sensitive data directly within database repositories).
Solutions and Products
- CipherTrust Data Security Platform (CDSP)
An integrated platform for discovering, protecting, and controlling sensitive data across hybrid, multi-cloud, and on-premise environments, built on a microservices architecture. It covers three pillars:- Discovery (scanning and classifying sensitive data in line with GDPR, PCI-DSS, HIPAA),
- Protection (transparent encryption, APIs for field-level encryption and tokenization, dynamic data masking),
- Control (centralized key management via CipherTrust Manager, cloud key management via CipherTrust Cloud Key Manager with BYOK/HYOK support, and separation of duties between administrators and data access).
- Thales Hardware Security Modules (HSM)
Tamper-resistant cryptographic processors that serve as a hardware root of trust for generating, managing, and securely storing encryption keys directly in hardware. - Imperva Data Security Fabric (DSF)
A unified, data-centric platform protecting sensitive data in databases across hybrid and multi-cloud environments, with centralized management, data protection, and compliance oversight.
Application Security - Web Application Firewall (WAF)
Protects web applications against zero-day attacks, DDoS attacks, SQL injection, cross-site scripting, and other OWASP Top 10 vulnerabilities. Virtual patching protects known vulnerabilities and legacy systems without waiting for a vendor fix. Available as a hardware platform or a cloud service. - Imperva Threat Intelligence
An ecosystem powered by the Imperva Research Labs team, which analyzes trillions of network requests and billions of attacks worldwide. Includes Reputation Intelligence (reputation and risk scoring of IP addresses) and ThreatRadar feeds (data on anonymous proxies, the TOR network, and malicious bots) that directly enrich Imperva WAF. - Bot Protection
A WAF extension that distinguishes between harmless bots and malicious automated bots. - API Security
A WAF add-on that automatically discovers and protects REST, GraphQL, and SOAP APIs from abuse. - Thales AI Security Fabric
A runtime security architecture (built on Imperva technology) designed to protect generative AI applications, LLM models, and agentic AI — safeguarding enterprise data, application logic, and user interactions without impacting performance. - Attack Analytics
A tool that uses AI and machine learning to process large volumes of security alerts, correlate events, and deliver contextual insight into attacks.
Typical use cases
- an organization needs HSM, key management, and a root of trust for critical applications
- sensitive data must be discovered, classified, encrypted, or tokenized