Tokenization - An Overview

Tokenization should be considered when sensitive data is stored on multiple systems throughout an organization.  Tokenization is the process of replacing sensitive data with unique identification numbers (e.g. tokens) and storing the original data on a central server, typically in encrypted form.  By centralizing all sensitive data onto a single system, tokenization can help thwart hackers and minimize the scope of compliance audits such as PCI.

Powertech Encryption for IBM i offers several advantages when tokenization is required:  

  • Centralizes key management and policies on a single server
  • Supports tokenization of data from diverse systems including IBM i, Windows, Linux, AIX, etc.
  • Provides remote connections to token functions through standard HTTP(S) protocol
  • Auto-assigns token identifiers from the central token server
  • Encrypts and stores tokenized data into scalable DB2 physical files
  • Allows securing data elements by User Id, User Group and/or Authorization Lists
  • Provides centralized audit logs and message alerts

Listed below is a diagram that illustrates Powertech Encryption for IBM i within a tokenized environment. 

For more information regarding Tokenization, please refer to the Powertech Encryption for IBM i Programmers Guide.