You are here

Solix EDMS Data Masking

Privacy needs Active Protection
Data security has become a major concern in business in this age of growing, often Internet-based, cyber crime. Exposure of sensitive corporate or customer data can result in major business losses ranging from the stealing of corporate bank accounts to the revelation of strategic plans to competitors, to the loss of brand loyalty and credibility due to the theft of sensitive customer and employee data, to legal action by customers and, in regulated industries such as medical and financial, government regulators. Furthermore, no one wants to tell their boss or the board of directors that cyber criminals have penetrated corporate security, which can be a career-ending moment.

In consequence, businesses of all sizes invest heavily in cyber security. But while they spend large amounts on protecting production databases, often database clones in non-production environments are forgotten and left relatively unprotected in low-security. Extending the full technical security umbrella to these environments is costly, can interfere with legitimate activities, and still often leaves the data exposed to trainees, outside consultants, and other people who may not be fully security vetted.

Solix EDMS Data Masking

Solix EDMS Data Masking provides a cost-effective highly secure alternative that guarantees data privacy, security, and compliance. Combined with the Solix EDMS Application-Awareness for the specific application, this module of the Solix EDMS automates data masking best practices, using a variety of data masking techniques to scramble, encrypt, or mask sensitive data, rendering the sensitive data unreadable while ensuring the data format remains valid for testing purposes. Solix EDMS pre-packages specific algorithms to handle the formats required for creating a valid environment for application testing while ensuring obfuscation of personally identifiable information.

Enterprise System Testing Challenges

A typical enterprise runs multiple applications, sometimes on different databases. Sensitive data, such as salaries, need to be masked in a consistent manner across all these applications. Furthermore, different sets of sensitive data (SSN versus customer or patient name versus demographics) require different treatments. Business users also demand rapid testing. These objectives have to be met in a way consistent with the overarching criterion of integrity for application testing and need to be tied together with key elements of Software Development LifeCycle.

Solix EDMS has been architected to support multiple applications running on heterogeneous databases from a single installation. Solix EDMS Data Masking can be implemented to support consistent masking rules across these multiple applications. Solix EDMS Data Masking provides a rich library of masking and encryption algorithms to satisfy the Chief Information Security Officer's mandate to treat different data values with appropriate masking and security rules. In combination with Solix EDMS Test Data Management, the Solix EDMS Data Masking tool delivers secure subsets in a rapid manner, meeting business users' demands for timely application testing. The most important criterion for integrity for application testing is met through the meta-data repository with Application-Awareness that are either pre-packaged for defined enterprise applications or can be built through an auto population tool for other ISV or custom applications.

Benefits:

  • Solix EDMS Data Masking, systematically used, virtually eliminates the possibility of sensitive data being revealed through database clones, even if the entire cloned database is stolen or made public over the Internet.
  • Solix EDMS Data Masking offers a choice of masking strategies, which can be applied by column or row in the database allowing the DBA and security officer to choose the most appropriate approach for a particular data set.
  • Solix EDMS allows the business to define masking and security rules in its terms while allowing IT to execute on those rules, eliminating the "Fox-in-the-Henhouse" Syndrome.
  • Solix EDMS incorporates storage replication, application cloning, and other integral steps in the SDLC process into the masking solution.
  • Solix EDMS builds policies based on business testing requirements and compliance needs.
  • Solix EDMS provides complete library of functions that meets all test use cases.
  • Solix EDMS provides out-of-box Application Awareness for major enterprise applications.
Upcoming Webinar
Managing Data Growth with Database Archiving and Application Retirement in Solix Cloud
Thursday, May 17, 2012 11:00am PT / 2:00pm ET