ProShop SAFE™

File Management System Protects Sensitive Data and Facilitates Data Security Compliance
ProShop SAFE™ (Secure Access File Ecosystem) offers the most secure and easiest cloud-based file management of any manufacturing ERP system on the market today. It is a revolutionary way to ensure data security compliance to the NIST 800-171, ITAR and CMMC Level 2 standard. It keeps your data SAFE by ensuring that only authorized users have access to the files and folders that you allow permission to, all managed through your unified credentials and authentication of your ProShop login. ProShop SAFE™ dramatically limits the Controlled Unclassified Information (CUI) footprint in the company, making compliance significantly easier and less costly.

Don’t get caught being out of compliance and face the loss of contracts by using an ERP without sufficient security features. Combined with our AWS GovCloud hosting, our suite of features are designed to meet CMMC Level 2's compliance. ProShop SAFE™ helps to ensure your compliance to the CMMC and ITAR standards for managing access to Controlled Unclassified Information (CUI) and any other sensitive company or client data. ProShop is the ONLY shop management ERP/MES/QMS software on the market today specifically designed for the defense and aerospace CNC machining and manufacturing industry with these levels of security controls.

There are so many reasons why limiting file access is critical in manufacturing environments. From meeting the CMMC and ITAR standards, to ensuring that an employee doesn’t accidentally delete or move a critical file. Let’s take a look at how ProShop SAFE™works.

How Does ProShop SAFE™ Work?

ProShop SAFE™ is a managed file store that translates into the browser experience. User definable File Security Access Groups (FSAG) within the User Module of ProShop enables security administrators to define permissions of all folders and files within the file store. The ProShop SAFE™ enables read/write/delete or forbidden access to any configuration of approved folders, subfolders and files the instant that a ProShop login is authenticated using the users ProShop credentials and 2 Factor Authentication (if enabled). Images and files stored within approved folders will also be available and visible in the ProShop browser interface. Those files can then be viewed and even manipulated entirely within the secure cloud file store and in-memory of the device, without ever having to have that file downloaded to the client device. This limits the footprint of where CUI is stored, and makes it considerably simpler to achieve the complex requirements of CMMC and ITAR control of CUI. As soon as the ProShop session is closed, the file store is instantly removed and access to any files within it is eliminated.

ProShop’s file store is not managed through in-database storage as many other ERP companies do. In-database storage requires that anything beyond simple viewing of a file must be performed by downloading the file to the local device, adding significant risk, cost and complexity to the process of meeting CMMC Level 2 requirements. Rather, ProShop SAFE™ files are stored in human readable and browsable file structures, and are access controlled across all folder hierarchies. ProShop SAFE™ even allows access to subfolders, housed within upper level folders without providing access to the upper level folder. This level of control is essential for safe and effective control of files that employees need to perform their jobs effectively.
Click here to visit the CMMC website page

Here is an example of ProShop SAFE™ in action:

Mary is a CNC setup machinist (and ITAR approved US person), and she logs into ProShop out on the factory floor using her credentials and 2FA key on a Windows based device that previously had no access to ProShop SAFE™ files. The instant her credentials are authenticated, the ProShop SAFE™ file store is connected, and she can browse only certain folders and see certain files that her security profile allows her to see. For example, she may have read access only to the G-Code file folder associated with the Parts and Work Orders she needs to work on. And she can also view the approved inspection drawing directly within the browser, in addition to seeing all the approved setup photos and videos that are stored within the part folder.

She also has write access to that folder so she can submit new photos of her setup for approval by the manufacturing engineer. When she is done with her setup, she logs out of ProShop and the file store is instantly removed. When John, a CNC machine operator, then logs into the same device, to run the job Mary just set up, not only does have direct access at all to the G-Code files and folder, he also has only view access to photos of the setup within the ProShop interface, but he does not have write access to that file folder so he can’t delete, move or edit any files within that folder. So his least privilege security settings limit what he can see or do. As soon as he logs out of ProShop, the file store is disconnected instantly again and files can not be browsed or accessed by anyone on that device.

ProShop SAFE™ availability for clients

ProShop SAFE™ Core:  This is a free upgrade available to all clients at no cost. This version comes with preconfigured access levels with no ability to modify them. 
ProShop SAFE™ Plus:  This is a paid feature. ProShop SAFE™ Plus gives each company the complete ability to customize the user groups, folder permissions, and even individual users. With this feature, you can add fine-grained authorization to your filestore.

SAFE Plus is designed to aid in compliance with the NIST 800-171 standard, and CMMC 2.0 Level 2. If your company needs this compliance, then SAFE Plus is likely a required option.
Are you a client interested in upgrading to ProShop SAFE™ Plus? Reach out to us for more information about how to put in your request. 
ProShop SAFE™ Plus for ProShop Clients
Privacy Policy
Terms of Service
magnifiercrosschevron-down linkedin facebook pinterest youtube rss twitter instagram facebook-blank rss-blank linkedin-blank pinterest youtube twitter instagram