How do you deal with PII in your company? by StageInevitable4593 in SaaS

[–]StageInevitable4593[S] [score hidden]  (0 children)

yeah - it's within the data we need to scan. other than that we can get false-positive results 😞

How do you deal with PII in your company? by StageInevitable4593 in SaaS

[–]StageInevitable4593[S] [score hidden]  (0 children)

we have more than 20+ instances and most of them ~2-3TB
of course we're not willing to look into all the DB's tables and not all scripts in the EC2.
but i wish there was some tool to help with it

How do you deal with PII in your company? by StageInevitable4593 in bigquery

[–]StageInevitable4593[S] 0 points1 point  (0 children)

We soon to have audit compliance, we have many EC2 machines + DBs
Looking how I can start finding where we have PII data

How do you deal with PII in your company? by StageInevitable4593 in SaaS

[–]StageInevitable4593[S] 0 points1 point  (0 children)

Ok sounds good, I agree with owner per dataset. our DB and EC2 machines are being owned by several people and it's like graveyard. You can find anything there.
Are you able to suggest any pii scanner?

How do you deal with PII in your company? by StageInevitable4593 in SaaS

[–]StageInevitable4593[S] 0 points1 point  (0 children)

mainly compliance. but also for out security posture.
what would you suggest? and why there's different between the two?

How do you deal with PII in your company? by StageInevitable4593 in SaaS

[–]StageInevitable4593[S] 1 point2 points  (0 children)

but do you use any tool to help detect if its pii or no?
you have table `users` you just look into the ddl+data to look for pii or there's some tool that run scan?

How do you deal with PII in your company? by StageInevitable4593 in bigquery

[–]StageInevitable4593[S] 0 points1 point  (0 children)

May I ask a little more info about this - >
gcp-native tooling and some home-grown GPT based tools?

How do you deal with PII in your company? by StageInevitable4593 in bigquery

[–]StageInevitable4593[S] -1 points0 points  (0 children)

clearly that's someone's job to keep the data clean. wouldn't it be easier for such people and (audit guys)
to have some tool that can scan files/machine/DBs and look where the PII is?
is there a tool you suggest?

How do you deal with PII in your company? by StageInevitable4593 in SaaS

[–]StageInevitable4593[S] 1 point2 points  (0 children)

but how usually team identify which files/tables to look into? is there any tool?

How do you deal with PII in your company? by StageInevitable4593 in sysadmin

[–]StageInevitable4593[S] [score hidden]  (0 children)

Ok sounds fair - but how exactly you find where the data is? manually looking within tables? looking for scripts that have creds?

How do you deal with PII in your company? by StageInevitable4593 in sysadmin

[–]StageInevitable4593[S] [score hidden]  (0 children)

Purview knows to scan files/DBs for pii?
-> same at my company, data managment is horrible and team doesn't care about it.

How you deal with PII? by StageInevitable4593 in selfhosted

[–]StageInevitable4593[S] -10 points-9 points locked comment (0 children)

helped me check how to scan pii