The main use case involves transactions happening in banking environments. We are using it only for transaction-based scenarios, such as ATM PINs or general OTPs that we need for validations or verifications.
What is our primary use case?
What is most valuable?
Thales payShield is the most secure solution with FIPS level 3 certification, making it virtually impossible to compromise. We primarily choose it because it handles critical applications requiring high TPS (transactions per second), approximately 1,000 TPS. Thales payShield can easily handle such transaction loads when traffic is good.
The encryption process is efficient due to the two-key system. The DEK (data encryption key) performs encryption quickly, processing approximately 1,000 TPS. The encryption speed is notably good.
The main competitors are Utimaco, G+D, and Futurex, though they do not match Thales payShield's level of performance.
Thales payShield provides most necessary features while maintaining security. As an HSM, it appropriately maintains limited features to ensure security while performing essential day-to-day operations.
What needs improvement?
Thales payShield is a superior product, particularly for transaction processing and banking environments. They have already made improvements from 9k to 10k versions.
The primary area for improvement would be pricing, which is currently quite high. Though the premium pricing reflects their market leadership position, a more flexible pricing model could help acquire more users.
For how long have I used the solution?
Thales payShield is performing well as a solution.
What do I think about the scalability of the solution?
For scalability, Thales payShield rates eight or nine out of ten because it can be scaled easily.
How are customer service and support?
Technical support rates between six and seven out of ten. They take some time to respond due to their high number of clients.
How would you rate customer service and support?
Positive
How was the initial setup?
The setup process for Thales payShield is simple and straightforward.
Which other solutions did I evaluate?
The main competitors are Utimaco, G+D, and Futurex, though they are not at Thales payShield's level of performance.
What other advice do I have?
I primarily work with Thales CipherTrust Manager and have experience with both Luna and Thales payShield. For key management purposes, we typically use Luna or CipherTrust.
Thales payShield effectively supports cryptographic algorithms when integrated with legacy systems, particularly using AES-256 and RSA. The master key securing the algorithm provides enhanced security.
The transaction processing speed is impressive, with the ability to handle approximately 1,000 TPS. The solution is fully compliant with PCI HSM standards.
Overall rating for Thales payShield is 9 out of 10.
Which deployment model are you using for this solution?
On-premises
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Other

