DATA Protection Flashcards
What is data protection?
Safeguarding intel from corruption compromise or lost.
What is data classification?
Based on value on the org and how sensitive the info is.
Data owner is the one that determines this level.
Public Data
Has no impact due to being open source to everyone.
Sensitive Data
Has minimal impact like org finance data.
Private Data
Personal record salary etc within the organization.
Confidential Data
Trade secrets, source code can really affect the business if released.
Critical Data
Very valuable like credit card numbers it is very important to not have this release.
Sensitive but unclassified
Would hurt national security people but rather the people that is in the org.
Confidential
Data that could harm the goverment if it gets realsed.
Secret
Damage in national security knowing deployments etc.
Top Secret
Blue prints for weapons or etc that can harm alot of people and places.
Data Owenership
Process of who is responsible for the C.I.A OF the intel.
Data Owner
Senior exec role, maintains CIA of the asset.Makes the rules on how to control things.
Data Controller
Hold responsibility for deciding the purposes and methods of data storage collection and usage. Accountable for any breaches
Data Processor
Group or indiviudal hired by data controller. Help with task to store analayze data sup by controller.
Data Steward
Works for the data owner, making sure everything is classified correctly.
Data Custodian
Enforces access controls. SYSadmin follow the requriments of owner.
Privacy Officer
Incharge of PII phi etc. Oversights it and will be on the hook if a breach happens.Do legal work on following protocols.
Data at rest
Any data that is stored in databases file systems and storage does not move. Threat actors want to get this.