Data Security and Governance
Demo Script
Demo Bootstrap Script
1Data security and Governance
Data Privacy and Security
Data Privacy and Security Measures
1Data Privacy and Data Security
2
3HIPAA Compliance
4PCI Compliance
5
6Data Security:
7
8Technical measures
9Protocols
10
11
12Regulatory Compliance
13------------------------------------->
14GDPR: General Data Protection Regulation
15CCPA: California Consumer Privacy Act
16
17
18Data Security --> Encryption --> Access Controls --> Network Security
19
20
21REgular Audits
22Employee Training
23Incident Response plans
Data Access Management
Data Access Management
1DAM - Data Access Management
2------------------------------------------->
31. Automated Account Mapping
42. On-Demand Permission Grants
53. Governance Rule Application
64. Unified Identity Verification
75. Continuous Monitoring and insights
86. Adaptive Access Control
9
10
11Key Components
12====================>
131. Access Control Measures
142. Data Classification
153. Secure Data Handling
164. User Training and Awareness
17
18Implementation
19---------------------->
201. Implement robust policies
212. Utilize access control models
223. Automate identity Management
234. Regular audits and monitoring
24
25
26Best Practices:
27------------------------------>
281. Apply principle of Least privilege
292. Regualry review permissions
303. Implement comprehensive logging
Data Retention Policy
Data Retention Strategy
11. Understanding Legal Requirements
2
32. GDPR - it requires to delete the personal data if its no-longer required.
4
53. Research Regulations
6
74. Categorize the data
8
9
10Defining Retention Periods:
11=====================================>
12
13Fianancial data must needs to stay for 7 years.
14
15Implementing Secure Storage Solutions
16------------------------------------------->
171. Utilize archiving tools
182. Ensure the data security
19
20
21Establishing Precosures for Data Disposal
22
23Fostering INternal COllaboration
24
25Monitoring Compliance
26-------------------------->
GDPR (General Data Protection Regulation)

GDPR Compliance Script
1GDPR, HIPAA, and PCI DSS - Overview
2
3The need for compliance:
4------------------------------------>
5Rights of data subjects
6
7GDPR(General Data Protection Regulation) Compliance in the EU regulates how personal data of individuals within the EU is processed and stored.
HIPAA (Health Insurance Portability and Accountability Act)

HIPAA Compliance Script
1HIPAA - Health INsurance Portability and Accountability Act(HIPAA)
2
3Key components:
4----------------------->
51. Privacy Rule --> Establishes national standards for the protection of health information
62. Security Rule --> Sets standards for the safeguarding electronic protected health information(ePHI)
73. Breach Notification Rule
8
9MFA, encryptind patients data, access-controls i.e.
10Hospitals now use secure logins, access controls and encrypted databases.
11
12HIPAA has two violations
131. Civil Violations
142. Criminal Violations
PCI DSS (Payment Card Industry Data Security Standard)

PCI-DSS Compliance Script
1PCI DSS - Payment Card Industry Data Security Standard(PCI DSS)
2
31. Build and Maintain a Secure network
42. Protect Card-Holder Data
53. Maintain a Vulnerability Management Program!
Compliance Consequences
