The data lifecycle phase which focuses on implementing encryption at rest, data redundancy, and secure access controls across cloud storage.
Store
Cloud storage type that requires data immutability, stringent access controls and encryption.
Long-term storage
A process used to check the integrity of a received data file.
Hashing
The process of identifying, inventorying, and mapping data across an organization's systems.
Data discovery
According to NIST SP 800-39, the two classifications which are most important for data classification
Sensitivity and Criticality
A cloud security technique that fragments, encodes, and distributes encrypted data slices across multiple disjointed servers.
Data dispersion
Temporary, non-persistent data volumes, local disk storage, or memory which automatically wipes when an instance terminates.
Ephemeral storage
A process used to obscure data and make it unreadable without the appropriate tools.
Encryption
A method that uses attached tags to locate, categorize, and govern datasets across cloud environments.
Label-based data discovery
The role responsible for doing data classification.
Data owner
A tool that can help visualize data movement to aid organizations in better understanding their data flows and broader data lifecycles processes.
Data Flow Diagram
A distributed architecture for unstructured data.
Object storage
A process used to ensure data integrity and authenticity of sender.
Digital Signature
A process of creating data about data for the purpose of data discovery.
Metadata-based data discovery
The role responsible for implementing the controls associated with the data classification.
Data custodian
Data lifecycle phase which executes secure erasure.
Destroy
Storage type that acts as a virtual hard drive attached to a virtual machine or container.
Volume storage
A symmetric process used to provide digital signature like capability.
HMAC
A method of analyzing the actual data payload to locate, classify and understand assets within cloud environments.
Content-based data discovery
The sub-category of commercial data classification which is used for data which gives the company its competitive edge.
Proprietary
Data lifecycle phase which includes viewing, processing, or dynamic analysis.
Use
SQL injection is an attack against what type of storage
Database
A non-encryption technique which can be used to satisfy PCI-DSS encryption requirements.
Tokenization
The data type that typically accounts for over 80% of data in the enterprise.
Unstructured
The foundational blueprint for cloud data security bridging the gap between data discovery and actual classification.
Data mapping