masks on pants off

21
Masks on Pants off A MENTIS Webinar CONFIDENTIAL 1

Upload: chana

Post on 22-Feb-2016

43 views

Category:

Documents


0 download

DESCRIPTION

Masks on Pants off. A MENTIS Webinar. Presentation Flow. What is Masking?. What is it? | Where does it apply?. Masking. STATIC. WHERE. WHAT HAPPENS. Non-Production. Data is UPDATED. Scrambling Persistent Obfuscation Anonymization. DYNAMIC. WHAT HAPPENS. WHERE. Masking. - PowerPoint PPT Presentation

TRANSCRIPT

Page 1: Masks on  Pants off

CONFIDENTIAL 1

Masks on Pants offA MENTIS Webinar

Page 2: Masks on  Pants off

CONFIDENTIAL 2

Presentation Flow

The MENTIS Solution

Landscape

Current Solution

• MENTIS Concepts

The ProblemMasking

Page 3: Masks on  Pants off

CONFIDENTIAL 3

What isMasking?What is it? | Where does it apply?

Page 4: Masks on  Pants off

CONFIDENTIAL 4

Masking

STATIC

• Scrambling• Persistent• Obfuscation• Anonymization

DYNAMIC

• MaskingWHERE

• Production• Pre-Production

WHERE

• Non-Production

WHAT HAPPENS

• PRESENTATION is modified

WHAT HAPPENS

• Data is UPDATED

Page 5: Masks on  Pants off

5

KEY CONCERNS

COMPLETENESS

ALL LOCATIONSof sensitive

data must be masked

REPEATABILITY

ACROSSthe board

CONSISTENCY

• LOCATIONS• Points-in-

time• Application

& Database• Other

Applications

CONFIDENTIAL

COLLABORATION

• AUDIT• COMPLIANCE• IT• SECURITY

PERFORMANCE• VOLUME• COMPEXITY• MAINTENANCE

Page 6: Masks on  Pants off

CONFIDENTIAL 6

TheProblemWhere is sensitive data?

Page 7: Masks on  Pants off

CONFIDENTIAL 7

Sensitive Data is everywhere

Address Bank Account Information

Credit Card In-formation

Date of Birth Email Address Names IP Addresses National/ State Identifier

Phone0

500

1000

1500

2000

2500

3000

3500

PSFT HCM Implementation Data Classification Counts

Num

ber o

f Col

umns

Data Classification PSFT - HCM Implementation

8.8

PSFT – HCM Implementation

9.1Name (First, Last, Other..)

1005 2862

Bank Account Number 16 180Address 830 2527National ID 172 965Date of Birth 193 445Credit Card Number 10 6Phone Number 283 665Email Address 53 629

Tables > 800 > 2000

Columns > 2000 > 8000

DB Size ~ 600 GB ~ 1TB

67%

Page 8: Masks on  Pants off

CONFIDENTIAL 8

Sensitive Data is everywhereData Classification- Oracle EBS – HCM

ImplementationName 425Bank Account Number 120Salary 189Address 89National ID 105Date of Birth 118Credit Card Number 10Phone Number 218

Tables > 380Columns > 1200

Rows ~ 70MMDB Size ~ 1 TB

DETAILS

1. EBS R12.1.3

2. 140 Countries

3. 1.4 TB61%

Page 9: Masks on  Pants off

CONFIDENTIAL 9

Results from recent implementation

A ddress

Ba nk Account In fo rma tio n

Cre di t Ca rd In fo rma tio n

Da te o f B i r th

Ema i l A ddresses

Fi r st Na me

IP A ddresses

Last Name

Na tio na l / S ta te Iden tifie r

Othe r Na mes (Custo mer Name, Ve ndo r Name , e tc )

Pho ne

0 500 1000 1500 2000 2500 3000 3500 4000 45003714

396576

15021244

1315208

15002808

13021157

Number of Columns per ClassificationTotal

DETAILS

1. EBS R12.1.3

2. Multiple Geographies

3. 4 TB

Page 10: Masks on  Pants off

CONFIDENTIAL 10

Masking

Where is your Sensitive Data?

Production Non-Production

Application Database

Where Who Scramble

Mask

Mask

Are you sure?• Locations• Code• Users

Page 11: Masks on  Pants off

CONFIDENTIAL 11

TheMENTIS SolutionPurpose built masking solution

Page 12: Masks on  Pants off

CONFIDENTIAL 12

SENSITIVE DATA LIFECYCLE MANAGEMENT ™

GENERATE

USE

COPY

SHARE

DISPOSE

iDiscover• Locations• Code

WHERE & HOW

iScrambleSTATIC MASKING

iSubsetiDiscover• Users

SUBSET & WHO

iMaskiMonitor

MASK & MONITORiRetire

RETIREProductionProduction

Non-Production

Non-Production

Page 13: Masks on  Pants off

CONFIDENTIAL 13

Sensitive Data Discovery ™ - iDiscover

Locations

Find All Locations of Sensitive Data (Tables & Columns)

CodeFind all code that

uses Sensitive Data (Database

& Application)

Users Find all Users of Sensitive Data

Page 14: Masks on  Pants off

14

ADVANCEDBASIC

iDiscover ™ - LOCATIONSTa

ble

& Co

lum

n Na

me

Mat

chin

g

NATIONAL_ID, SSN, etc..

Rela

tions

hip

Mat

chin

g

Columns with relations to NATIONAL_ID, SSN, etc…

Patte

rn M

atch

ing

9 digit Numbers, 16 digit Numbers; including where pattern is embedded in larger text

Valid

atio

ns

To avoid false positives, various validations are employedIf iDiscover- Code is also licensed, validations across code also performed automatically

Data Classification Results

Page 15: Masks on  Pants off

CONFIDENTIAL 15

Masking – the MENTIS way

Where is your Sensitive Data?

Production Non-Production

Application Database

Where Who Scramble

Mask

Mask

iDiscover- Locations

iScramble

iMask 4 DB

iMask 4 APPS

iDiscover- Code

iDiscover - Users

Page 16: Masks on  Pants off

16

KEY BENEFITS

INTELLIGENCE

SHARED between all

MENTIS products→ COMMON

platformTIME TO GO LIVE

WEEKSNOT MONTHS

COMPREHENSIVE

• Start with all COLUMNS

• Map to all UI elements

• Connect to USERS

CONFIDENTIAL

AUTOMATED

• WHAT data to MASK

• WHERE to mask

• WHO to mask from

Page 17: Masks on  Pants off

CONFIDENTIAL 17

AboutMENTISMarket leading solution for ERP Systems

Page 18: Masks on  Pants off

CONFIDENTIAL 18

Magic Quadrant

Cool Vendor2008

Visionary2012

Challenger

2013

Page 19: Masks on  Pants off

CONFIDENTIAL 19

Sample customers

04/22/2023

Page 20: Masks on  Pants off

CONFIDENTIAL

Why MENTIS?

20

SECURITYCOLLABORATIVE

• Built-in SOD• Ownership• Reporting

• Consistency• Repeatability• Flexibility

SUCCESS

• Customer Successes

• Rated Highly by Analysts

• Purpose Built

FUTURE

EVOLVEDVISIONOTHER

APPLICATIONS

PERSONAL CARE

USER GROUP

Page 21: Masks on  Pants off

CONFIDENTIAL 21

Questions& AnswersPlease submit through the Chat feature