Data Security and Governance

Demo Script

Demo Bootstrap Script
1Data security and Governance

Data Privacy and Security

Data Privacy and Security Measures
 1Data Privacy and Data Security
 2
 3HIPAA Compliance
 4PCI Compliance
 5
 6Data Security:
 7
 8Technical measures
 9Protocols
10
11
12Regulatory Compliance
13------------------------------------->
14GDPR: General Data Protection Regulation
15CCPA: California Consumer Privacy Act
16
17
18Data Security --> Encryption --> Access Controls --> Network Security
19
20
21REgular Audits
22Employee Training
23Incident Response plans

Data Access Management

Data Access Management
 1DAM - Data Access Management
 2------------------------------------------->
 31. Automated Account Mapping
 42. On-Demand Permission Grants
 53. Governance Rule Application
 64. Unified Identity Verification
 75. Continuous Monitoring and insights
 86. Adaptive Access Control
 9
10
11Key Components
12====================>
131. Access Control Measures
142. Data Classification
153. Secure Data Handling
164. User Training and Awareness
17
18Implementation
19---------------------->
201. Implement robust policies
212. Utilize access control models
223. Automate identity Management
234. Regular audits and monitoring
24
25
26Best Practices:
27------------------------------>
281. Apply principle of Least privilege
292. Regualry review permissions
303. Implement comprehensive logging

Data Retention Policy

Data Retention Strategy
 11. Understanding Legal Requirements
 2
 32. GDPR - it requires to delete the personal data if its no-longer required.
 4
 53. Research Regulations
 6
 74. Categorize the data
 8
 9
10Defining Retention Periods:
11=====================================>
12
13Fianancial data must needs to stay for 7 years.
14
15Implementing Secure Storage Solutions
16------------------------------------------->
171. Utilize archiving tools
182. Ensure the data security
19
20
21Establishing Precosures for Data Disposal
22
23Fostering INternal COllaboration
24
25Monitoring Compliance
26-------------------------->

GDPR (General Data Protection Regulation)

_images/GDPR.png
GDPR Compliance Script
1GDPR, HIPAA, and PCI DSS - Overview
2
3The need for compliance:
4------------------------------------>
5Rights of data subjects
6
7GDPR(General Data Protection Regulation) Compliance in the EU regulates how personal data of individuals within the EU is processed and stored.

HIPAA (Health Insurance Portability and Accountability Act)

_images/HIPAA-Health-insurance-Portability-accountability-act.png
HIPAA Compliance Script
 1HIPAA - Health INsurance  Portability and Accountability Act(HIPAA)
 2
 3Key components:
 4----------------------->
 51. Privacy Rule  --> Establishes national standards for the protection of health information
 62. Security Rule --> Sets standards for the safeguarding electronic protected health information(ePHI)
 73. Breach Notification Rule
 8
 9MFA, encryptind patients data, access-controls i.e.
10Hospitals now use secure logins, access controls and encrypted databases.
11
12HIPAA has two violations
131. Civil Violations
142. Criminal Violations

PCI DSS (Payment Card Industry Data Security Standard)

_images/PCI-Compliance.png
PCI-DSS Compliance Script
1PCI DSS - Payment Card Industry Data Security Standard(PCI DSS)
2
31. Build and Maintain a Secure network
42. Protect Card-Holder Data
53. Maintain a Vulnerability Management Program!

Compliance Consequences

_images/Compliance-consequences.png