The u.trust Cloud offers companies a way to easily and flexibly define data worth protecting, enact rules for encryption, identify users who can access it, and manage these access rights dynamically and centrally. A cloud-based admin console distributes rules and keys (contained in a personalized profile) to users’ endpoints, which are consumed and applied by apps (“clients”) on the endpoints. These clients decrypt and encrypt the files that the users work with according to the defined rules.