
TeraCryption
Enterprise File Encryption System
Featured Insight & Resources
File Encryption Systems With Automatic Key Management For Transparent Operation
TeraCryption is an Enterprise File Encryption System (EFES) designed for organizations that need to protect sensitive business files without disrupting normal workflows.
Controlled Encrypted File Sharing
TeraCryption Standard controls encrypted file sharing through authorized Groups. TeraCryption Enterprise adds File Ownership control, allowing file owners to select which authorized members of their Group can decrypt individual files they own.
TeraCryption is a file encryption system designed to protect business files stored on servers or in cloud platforms while allowing secure access and controlled sharing across teams. Unlike traditional enterprise encryption approaches, TeraCryption provides enterprise file encryption solutions that enable secure file sharing and controlled access without changing how users work, allowing organizations to maintain normal workflows while protecting sensitive data.
Enterprise Transparent File Encryption (ETFE)
TeraCryption belongs to the subcategory of Enterprise Transparent File Encryption (ETFE), meaning encryption and decryption occur automatically and invisibly, without requiring users to change how they work.
Secure Team Workflow and Access Control
Organizations need files to remain accessible for team workflow while restricting access to authorized users only. This is especially important in environments that require file security systems to protect sensitive business data across teams, departments, and external collaborators.
For example, engineering and architecture firms often require dedicated CAD file encryption to protect DWG, BIM, and project drawings shared between teams and contractors.
Restrict Access Inside Shared Folders
In traditional environments, employees often have access to entire shared folders. TeraCryption uses Group-based access control so users can decrypt files only when they are authorized members of the corresponding Group. TeraCryption Enterprise can provide additional control over individual files within the Group.
Persistent File Protection
The protection stays attached to the file, enabling management of encrypted files where security remains enforced after copying, emailing, downloading, restoring backups, or moving data to cloud storage.
The TeraCryption file encryption system controls access everywhere the file travels — not only where it is stored.
Enterprise Encryption Controls
-
Users and Groups: The administrator creates Groups and assigns authorized users according to the organization’s departments, projects, clients, or other security requirements. Users can decrypt files encrypted to the Groups to which they are assigned.
-
Shared Folders and Cloud: Permissions remain enforced after copying or sharing, allowing organizations to encrypt cloud files and server-based files securely.
-
No Key Handling: Users do not need to create, store, retrieve, or exchange encryption keys.
-
Ransomware Protection: Stolen files remain unreadable.
-
Central Administration: The administrator manages users, Groups, and organizational security settings from a centralized environment.
TeraCryption delivers these controls using the TeraKey encryption engine and the TeraLink access control system, working together to provide a complete enterprise file encryption system.
What Sets Us Apart

Transfer encrypted files to remote clients in seconds from your Explorer to their Explorer without using email or uploading to file transfer services.
TeraCryption is an enterprise file encryption system that protects sensitive files stored on servers, shared folders, and cloud storage while enabling recovery after a cyberattack.
Organizations can restore operations without paying ransomware and without losing control of file access, ensuring continuity through secure and resilient encrypted file management.
As an Enterprise File Encryption System (EFES) platform with Enterprise Transparent File Encryption (ETFE) capabilities, TeraCryption provides enterprise‑grade protection while remaining fully transparent to users.
Key advantages
-
File-level encryption with Group-based access control, with TeraCryption Enterprise adding File Ownership control for individual encrypted files.
-
Automatic Key Management™: Users do not need to create, store, retrieve, or exchange encryption keys. Each file is encrypted using unique one-time cryptographic material that is not reused to encrypt another file.
-
Ransomware-resistant recovery for business continuity, allowing fast restoration of encrypted data.
-
Simple deployment without infrastructure overhaul, supporting existing environments.
-
Compliance support (ISO 27001, NIST, GDPR) for enterprise security requirements.
-
Encrypted files remain encrypted in place, whether stored on servers or cloud platforms.
-
Encryption and decryption performed in seconds, supporting normal workflows.
-
Encryption and decryption are transparent to the user and integrate with Windows File Explorer for normal file operations, minimizing changes to existing workflows.
What is an Enterprise File Encryption System?
File Encryption Systems for security and restorage applications.
An enterprise file encryption system automatically encrypts files and controls who can open them based on user identity rather than storage location. Users do not manually encrypt files or manage encryption keys.
The protection remains attached to the file itself, so the file stays secure after copying, emailing, downloading, restoring backups, or unauthorized access to servers or cloud storage.
Businesses use file encryption systems to maintain control of sensitive documents across employees, departments, contractors, partners, and external environments while enabling secure file sharing without changing normal workflows.
Enterprise environments require structured group-based workflows where multiple users access shared project files while permissions remain restricted to authorized identities.
Learn how TeraCryption works as a complete file encryption system platform.
WHY YOU NEED TERACRYPTION - The bottom line!
-
Add a file security layer.
-
Restore operations quickly after a hacker attack.
-
Stop unauthorized people from reading sensitive files.
-
Encrypted files are automatically stored in centralized Group folders on the server or cloud.
-
ZERO TRUST security.
-
Secure file sharing supporting HIPAA security requirements.
Automatic File Encryption for Server and
Cloud Storage
TeraCryption automatically encrypts files as they are created, saved, or shared. Users do not manually encrypt files or manage encryption keys.
Encrypted files are stored in a secure folder on a designated central server, where access is controlled based on user identity and Group permissions. Only authorized members of the corresponding Group can decrypt files encrypted to that Group.
Organizations can also use cloud storage platforms as secure hubs for encrypted files or as part of backup and recovery strategies. Because files are already encrypted, they remain protected when stored in cloud environments or transferred between systems.
This approach allows businesses to use their existing server infrastructure and cloud services while maintaining consistent file-level protection, secure file sharing, and controlled access across teams and external collaborators.
Group-based folders are automatically created in the central storage environment, ensuring encrypted files are organized and accessible only to authorized users.
TeraCryption also provides Enterprise File Protection Infrastructure for secure workflows, automated key management, and ransomware operational continuity across distributed enterprise environments.
Components of a File Encryption System
A complete enterprise file encryption system must control file access everywhere the file travels — not only where it is stored.
Users and Groups
The administrator creates Groups and assigns authorized users. Users can decrypt files encrypted to the Groups to which they are assigned.
TeraCryption Enterprise File Owner Controlled Sharing
-
TeraCryption Enterprise adds File Ownership Control for users assigned ownership rights by the administrator. File owners can select which authorized members of their Group may decrypt individual files they own.
-
After saving an owned file in a shared Group folder, TeraCryption automatically encrypts the file and allows the file owner to select which authorized members of the Group may decrypt it. The owner can select no other users, one user, multiple users, or the entire Group.
-
Decryption permissions can be changed at any time, allowing the file owner to grant or revoke access for authorized Group members without moving or duplicating the encrypted file.
-
This supports normal team workflow while keeping individual owned files restricted to the authorized Group members selected by the file owner.
Shared Folders and Cloud
Permissions remain enforced after copying or sharing, enabling secure use of servers and cloud platforms without exposing file contents.
Automatic Key Management
Users do not need to create, store, retrieve, or exchange encryption keys. Each file is encrypted using unique one-time cryptographic material that is not reused to encrypt another file.
Storage-Independent Protection
Files remain encrypted on servers, cloud storage, backups, and email attachments through consistent file-level encryption.
Central Administration
The administrator manages users, Groups, and organizational security settings through the TeraMail Administration Console.
TeraCryption integrates TeraKey encryption, TeraLink connectivity, Automatic Key Management™, Group-based access control, and centralized administration as part of a complete enterprise file encryption system.
TeraCryption supports organizations across North America, including the United States, Canada, and Mexico.
Engineering and CAD File Protection Use Cases
-
AutoCAD
-
Sketchup
-
Revit
-
Rhino
-
ArchiCAD
-
3DSMax
-
Vectorworks
-
Allplan
-
Briscadown

Install TeraCryption Core software on your company's server (optional for the Enterprise).


TeraCryptor for emergency offline decryption of encrypted files. Not required for normal TeraCryption operation.
Use Cases and Supported Environments

TeraCryption adds a security layer that protects business files from unauthorized access while allowing normal team workflow. Files are automatically encrypted as they are created or shared and stored securely on your existing servers or cloud platforms.
Encrypted files are shared with authorized users based on Group membership and access controls, while remaining encrypted in the organization's designated server, cloud, or authorized local storage environment.
Advantages of TeraCryption
TeraCryption combines enterprise file encryption, controlled access, and secure file sharing across distributed environments.
-
Automatic file encryption with Automatic Key Management™, eliminating the need for users to create, store, retrieve, or exchange encryption keys.
-
File-level encryption keeps files encrypted wherever they are stored, copied, or shared.
-
Encrypted file management across servers and cloud platforms.
-
Explorer integration for seamless user experience.
Easy to use:
-
Encryption tracking and visibility for administrators.
-
Automatic Key Management™ eliminates the need for users to create, store, retrieve, or exchange encryption keys.
-
TeraBackup provides ransomware-resistant recovery for business continuity, allowing restoration of encrypted files from the encrypted backup mirror.
-
Simple deployment with no server installation required, allowing organizations to implement enterprise file encryption without infrastructure changes.
-
Explorer integration allows users to work with encrypted files using familiar drag-and-drop and double-click actions without changing workflow.
Encrypted files are never uploaded to TeraCryption servers. Files remain under your control and stored in your chosen environment.
Multi-step authentication and Automatic Key Management™ ensure that users can access only authorized files without handling encryption keys.
Engineering and CAD Environments
Engineering companies handle valuable intellectual property, so organizations often implement CAD project encryption to prevent unauthorized access to design drawings and project files.
Mass Encryption of Files and Folders
Authorized users can encrypt entire folders, including subfolders and files of any type and size, while preserving the original structure. This enables fast encryption of folders with large files and archives.
No Master Key Required for Normal Operation
TeraCryption does not require customers or users to manage a master encryption key for normal operation.
Automatic Key Management™ eliminates the need for users to create, store, retrieve, exchange, or safeguard encryption keys as part of their normal work.
For business continuity, TeraCryptor provides a separate emergency offline decryption capability if the normal TeraCryption SaaS becomes unavailable.
TeraCryptor is not a master key and is not required for normal TeraCryption operation.
TeraCryptor — Emergency Offline File Decryption
TeraCryptor provides a controlled method to decrypt critical encrypted files only when normal online TeraCryption SaaS is unavailable, such as during an extended Internet or service interruption.
USERS
-
Law Firms
-
Accountant Firms
-
Financial Consultants
-
Factories
-
Labs for Compliance
-
HR Departments
-
Healthcare
-
R&D entities.
-
Contractors
-
Consultants

Use TeraCryption as a cloud service. Nothing to install on your servers.

Easy encrypted file access control.

Assign users to Groups on a map with drag-and-drop on a webpage of the TeraMail administrator console.
ENCRYPTED FILE STORAGE ON YOUR SERVER WITH CONTINUOUS CLOUD BACKUP FOR RECOVERY
What happens to your encrypted files if your server storage is attacked, damaged, or destroyed?
TeraCryption Plan 4 includes TeraBackup, designed to maintain a continuously updated encrypted cloud mirror of files stored in your TK-SERVER Main Storage Folder on the server.
As soon as editing of a file is completed, TeraBackup uploads the encrypted file to its corresponding location in the organization's mirrored folder tree in Google Drive, Microsoft OneDrive, or Amazon S3, replacing the previous mirrored version.
If the TK-SERVER Main Storage Folder is subsequently lost or destroyed, the administrator can restore the original folder-tree structure and the corresponding encrypted files from the TeraBackup mirror, returning them to their latest mirrored state before the loss. Operations return to normal.
TeraBackup provides:
-
Continuous encrypted cloud mirroring.
-
Preservation of the organization's folder-tree structure.
-
Restoration of encrypted files to their original folder locations.
-
Recovery of the latest mirrored versions after file loss or destruction.


Enterprise Data Protection: Companies use the TeraCryption file encryption system to protect sensitive business documents such as financial reports, strategic plans, and proprietary research from unauthorized access and data breaches.
Compliance with Data Protection Regulations: TeraCryption supports enterprise file encryption compliance with standards such as NIST, GDPR, HIPAA, and PCI DSS by protecting access, sensitive documents and preventing unauthorized disclosure.
Secure Communication: Use TeraMail to send and receive encrypted messages and files. Extend secure file sharing to clients and external partners while maintaining full control of access.
Secure File Sharing: TeraCryption enables secure file sharing with encryption, allowing organizations to protect documents shared via email, cloud platforms, or external collaboration tools. For engineering workflows, organizations implement secure CAD file sharing to protect design data.
Protection of Intellectual Property: Protect patents, trade secrets, and proprietary algorithms using file-level encryption, ensuring that confidential business information remains secure at all times.
Remote Work Security: TeraCryption protects files stored on laptops, mobile devices, and remote systems using encrypted file management, reducing the risk of data breaches outside the corporate network.
Securing Legal and Compliance Documents: Legal teams use TeraCryption to encrypt contracts, compliance reports, and regulatory filings, ensuring confidentiality and regulatory compliance through enterprise file encryption systems.
Protection of Employee Data: Encrypt HR records, payroll data, and personnel files to protect sensitive employee information and maintain privacy using secure document encryption.
Data Residency and Control: The physical location of TeraKey-encrypted files and backups remains under your control. Files can be stored on your server or in cloud platforms such as Google Drive or Microsoft OneDrive.
Encrypted and unencrypted files are never uploaded to TeraCryption servers for processing or storage, ensuring full control over your data.
Secure Encrypted File Management

"MY TERAKEY" For Local Sensitive Files
When the TeraKey application is installed, it integrates with Windows Explorer and automatically creates a folder called My TeraKey for secure local file storage.
Files placed in My TeraKey are automatically encrypted and remain private to the user. They are not shared unless explicitly assigned to a group or project.
A secure copy of the My TeraKey folder is maintained in the central server or cloud storage environment under the user’s identity. This allows users to restore lost or deleted files while maintaining full file-level encryption and protection.
ENCRYPTION
-
Random encryption keys automatically managed.
-
Unbreakable military level of encryption.
-
Do not worry about sending keys to clients.
-
There is no need to buy encryption keys ever.
-
Unlimited encryption of any type of files.

A Secure Communications System
Secure Internal Text and File Communications
Executives and employees, and can exchange secure text messages and encrypted files using TeraMail and TeraKey, ensuring that sensitive information remains protected during transmission over the Internet.
Secure Mobile Communication
TeraMessage Mobile (iOS and Android) allows users to send, receive, and automatically decrypt TeraKey-encrypted files. Decrypted files cannot be stored on the device or forwarded outside the file encryption system, ensuring full control of sensitive data even if a device is lost.
Secure Client Access
Clients can securely join your environment by installing the TeraKey Client application. Once authenticated, a shared folder appears in their Explorer, allowing controlled file exchange without exposing unprotected data.
Files placed in the shared folder are automatically encrypted and securely delivered to authorized users without using email attachments or public cloud links.
Private Communication Environment
TeraMail and TeraMessage provide a private communication environment where messages and files remain protected from interception or unauthorized access.
Secure File Workflow
Users can encrypt complete folders, including subfolders and files of any size or type, while preserving the original structure.
Encryption and decryption are transparent to the user, allowing files to be opened and worked on without disrupting normal workflow.
Enterprise File Encryption Platform
TeraCryption combines enterprise file encryption, secure communication, and controlled access into a unified platform. Integration with cloud services such as Google Drive and OneDrive helps organizations reduce vulnerabilities while maintaining secure and efficient file operations.
