Optim. Optim Solutions for Data Governance. R. Kudžma Information management technical sales

Similar documents
Optim. Optim Solutions, Benefits and Value Propositions. Kari Hirvonen - SoftwareGroup/Techsales IBM Finland

Upgrade Strategies for Oracle E-Business: Leveraging Archiving Best Practices

Information On Demand featuring IBM Optim

Application Information Lifecycle Management Control Both the Size of Your Data and the Cost of Managing It

IBM s Integrated Data Management Solutions for the DBA

Upgrade and Migration and Archiving Strategies for Your Enterprise Applications

Database Centric Information Security. Speaker Name / Title

Information Lifecycle Management and Database Archiving

Administration and Data Retention. Best Practices for Systems Management

Oracle Security Products and Their Relationship to EBS. Presented By: Christopher Carriero

Oracle Database Vault

Improving Data Governance in Your Organization. Faire Co Regional Manger, Information Management Software, ASEAN

Test Data Management for Security and Compliance

Information Lifecycle Management for Business Data. An Oracle White Paper September 2005

SQL Compliance Whitepaper HOW COMPLIANCE IMPACTS BACKUP STRATEGY

Oracle Audit Vault. Trust-but-Verify for Enterprise Databases. Tammy Bednar Sr. Principal Product Manager Oracle Database Security

Data Protection. Plugging the gap. Gary Comiskey 26 February 2010

2 The IBM Data Governance Unified Process

Oracle E-Business Suite Certified with Oracle Database Vault Certification Overview

Altius IT Policy Collection

Discover Best of Show März 2016, Düsseldorf

Modern Database Architectures Demand Modern Data Security Measures

Virtual Machine Encryption Security & Compliance in the Cloud

Overview. Business value

University of Pittsburgh Security Assessment Questionnaire (v1.7)

Getting ready for GDPR. Philipp Hobler EMEA Field CTO Global Technology Office Dell EMC Data Protection Solutions

Oracle Database Vault and Applications Unlimited Certification Overview

Vendor: Oracle. Exam Code: 1Z Exam Name: Oracle Database 11g Security Essentials. Version: Demo

Altius IT Policy Collection Compliance and Standards Matrix

Exam : Title : ASAM Advanced Security for Account Managers Exam. Version : Demo

QuickBooks Online Security White Paper July 2017

Database Growth: Problems & Solutions

Daxko s PCI DSS Responsibilities

Altius IT Policy Collection Compliance and Standards Matrix

Rocket Software Rocket Arkivio

30%: Annual growth in Data; 0%: Annual Growth in budgets How Do You Manage? Parag Pithia, Information Management Software, IBM, India/SA

Top Trends in DBMS & DW

Oracle Buys Automated Applications Controls Leader LogicalApps

McAfee Database Security

Brochure. Data Masking. Cost-Effectively Protect Data Privacy in Production and Nonproduction Systems

CA ERwin Data Profiler

Maximizing IT Security with Configuration Management WHITE PAPER

UNIVERSITY OF MASSACHUSETTS AMHERST INFORMATION SECURITY POLICY September 20, 2017

Comprehensive Database Security

Martijn Loderus. Merritt Maxim. Principal Analyst Forrester. Director & Global Practice Partner for Advisory Consulting Janrain

Data Management and Security in the GDPR Era

PROFESSIONAL SERVICES (Solution Brief)

Unified Governance for Amazon S3 Data Lakes

Ten Innovative Financial Services Applications Powered by Data Virtualization

Executive Summary SOLE SOURCE JUSTIFICATION. Microsoft Integration

IBM Internet Security Systems October Market Intelligence Brief

Reducing Costs and Risk with Enterprise Archiving

UNIVERSITY OF MASSACHUSETTS AMHERST INFORMATION SECURITY POLICY October 25, 2017

Start Now with Information Governance

Oracle Database 11g: Security Release 2

Kenna Platform Security. A technical overview of the comprehensive security measures Kenna uses to protect your data

Records Management and Retention

Complete document security

Choosing the level that works for you!

Managing SaaS risks for cloud customers

Formulate A Database Security Strategy To Ensure Investments Will Actually Prevent Data Breaches And Satisfy Regulatory Requirements

IBM System Storage Data Protection and Security Chen Chee Khye ATS Storage

Oracle Database 11g: Security Release 2

Putting It All Together:

Transforming the Data Center into the Information Center. Jack Domme Chief Executive Officer Hitachi Data Systems

Information Technology Security Plan Policies, Controls, and Procedures Identify Governance ID.GV

KantanMT.com. Security & Infra-Structure Overview

HIPAA Security and Privacy Policies & Procedures

FRAMEWORK MAPPING HITRUST CSF V9 TO ISO 27001/27002:2013. Visit us online at Flank.org to learn more.

Security Policies and Procedures Principles and Practices

Essentials for Data Masking for Siebel

Ransomware & Modern DR: Risky Business

IBM Security technology and services for GDPR programs GIULIA CALIARI SECURITY ARCHITECT

LEADING WITH GRC. Common Controls Framework. Sundar Venkat, Sr. Director Technology Compliance Salesforce

How To Establish A Compliance Program. Richard E. Mackey, Jr. SystemExperts Corporation

GDPR Controls and Netwrix Auditor Mapping

Private Clouds: Opportunity to Improve Data Security and Lower Costs. InfoTRAMS Fusion Tematyczny, Bazy Danych, Kariera I Prywatny Sprzęt t W Pracy

Management Case Study. Kapil Lohia

DB2 Security Overview

Top. Reasons Legal Teams Select kiteworks by Accellion

RSA Solution Brief. The RSA Solution for VMware. Key Manager RSA. RSA Solution Brief

Balancing Between Risk and Compliance

Informatica Dynamic Data Masking

Embedding GDPR into the SDLC

Embedding GDPR into the SDLC. Sebastien Deleersnyder Siebe De Roovere

HP Storage Software Solutions

ALERT LOGIC LOG MANAGER & LOG REVIEW

Safeguards on Personal Data Privacy.

01.0 Policy Responsibilities and Oversight

Veritas Enterprise Vault 6.0 What s New

Storage for Compliance Applications

Transparent Solutions for Security and Compliance with Oracle Database 11g. An Oracle White Paper September 2008

Importance of the Data Management process in setting up the GDPR within a company CREOBIS

Compliance and Privileged Password Management

Canada Life Cyber Security Statement 2018

DATA STEWARDSHIP BODY OF KNOWLEDGE (DSBOK)

Choosing the Right Security Assessment

TRACKVIA SECURITY OVERVIEW

SAS 70 Audit Concepts. and Benefits JAYACHANDRAN.B,CISA,CISM. August 2010

COBIT 5 With COSO 2013

Transcription:

Optim Solutions for Data Governance R. Kudžma Information management technical sales kudzma@lt.ibm.com IBM Software Group 10/23/2009 2008 IBM Corporation

What is Data Governance Data Governance is the orchestration of people, process and technology to enable an organization to leverage data as an enterprise asset DATA GOVERNANCE People Process Technology Executive Executive-Level Sponsorship Data Governance Risk Data Council Bodies Risk Data Governance Office (DGO) Data Governance Data Governance PMA Program Manager Data Quality Reporting Team Project Teams Virtual Teams Line of Business Stewardship Community Data Quality Reporting Liaison (1) Metadata Technical Liaison Liaisons (1) (4) Business Liaisons (4) Lead Steward Extract Data Definition Stewardship Function Data Production Stewardship Function Data Usage Stewardship Function Quality Measurement Stewardship Function Extract Extract The core objectives of a governance program are: Guide information management decision-making Ensure information is consistently defined and well understood Increase the use and trust of data as an enterprise asset 2 IBm software Group 10/23/2009

Without Data Governance People make mistakes Those mistakes more commonly result in losses than hackers Those losses effect every aspect of IT and business But data is still an abstract concept and governance needs technology to be improved

The 11 Disciplines of Data Governance Requires Data Risk Management & Compliance Outcomes Enablers Organizational Structures & Awareness Value Creation Enhance Stewardship Policy Core Disciplines Data Quality Management Information Life-Cycle Management Information Security and Privacy Supporting Disciplines Supports Data Architecture Classification & Metadata Audit, Logging & Reporting 4 IBm software Group 10/23/2009

Data Governance Program Activities The key activities of a governance program to achieve the objectives are: Building governance infrastructure, technology and supporting organization Defining data governance policies and standards Defining processes and business rules for ongoing governance Developing common and standard data domain definitions Developing architecture practices and standards Developing the capability to monitor and improve the quality and usefulness of data 5 IBm software Group 10/23/2009

11 Themes of Data Governance Risk Management Audit Policy Security Organizational Awareness Stewardship Data Quality Metadata Value Creation Architecture ILM 6 IBm software Group 10/23/2009

Summary of Requirements to Offerings Requirement Feature Applicable Regulation Description Available Solutions Prevent Data Intrusion Access Control All Assigns unique userid and passwords, privileges assigned based on userid Built-in Access Control Label Based Access Control Auditing Audit Sarbanes Audit privilege granting IBM Audit Expert (DB) Database HIPAA Consul (Enterprise) Privileges PCI Auditing Audit Database Access All Provides audit trail to data access IBM Audit Expert (DB) Consul (Enterprise) Protect Privacy Encryption SB1386 GLBA HIPAA Encrypts data to ensure privacy when unauthorized access occurs IBM Encryption Expert IBM DB2 and IMS Encryption PCI Protect Privacy Test Data Generation with Data Privacy SB1386 GLBA HIPAA Ensure test data masks sensitive data IBM Optim Data Privacy Solution PCI Data Retention and Retirement Data Archiving Sarbanes HIPAA Archive data not being accessed IBM Optim Archive Solution 7 IBm software Group 10/23/2009

Positioning Optim within Enterprise Data Governance Optim is a critical cornerstone in IBM s Enterprise Data Governance Strategy Enterprise Data Governance is an integrated discipline for securing and protecting data as an enterprise asset. This involves implementing, monitoring and sustaining data protection policies and standards in order to improve ensure data is secure while promoting operational efficiency, transparency, and enabling regulatory compliance and business insight. The top challenge for 43% of CFOs is improving governance, controls, and risk management CFO Survey: Current state & future direction, IBM Business Consulting Services 8 IBm software Group 10/23/2009

IBM Optim Market leading Enterprise Data Management (EDM) Solution and Platform: Data Growth Retention & Discovery Data Privacy Test Data Management Application Upgrades, Migrations & Retirements 2400 clients worldwide; c. 50% of Fortune 500 Princeton Softech acquired by IBM, September 2007 9 IBm software Group 10/23/2009

Optim Solutions Optim Data Growth Solution (Archiving) Improve performance Control data growth, save storage Support retention compliance Enable application retirement Streamline upgrades Optim Test Data Management Solution Create targeted, right sized test environments Improve application quality Speed iterative testing processes Optim Data Privacy Solution Mask confidential data Comply with privacy policies 10 IBm software Group 10/23/2009

Enterprise Architecture Single, scalable, interoperable EDM solution provides a central point to deploy policies to extract, store, port, and protect application data records from creation to deletion 11 IBm software Group 10/23/2009

The Easiest Way to Expose Private Data Internally with the Test Environment 70% of data breaches occur internally (Gartner) Test environments use personally identifiable data Standard Non-Disclosure Agreements may not deter a disgruntled employee What about test data stored on laptops? What about test data sent to outsourced/overseas consultants? How about Healthcare/Marketing Analysis of data? Payment Card Data Security Industry Reg. 6.3.4 states, Production data (real credit card numbers) cannot be used for testing or development * The Solution is Data De-Identification * 12 IBm software Group 10/23/2009

Optim Data Privacy Solution Production Test EBS / Oracle Custom / Sybase Siebel / UDB Contextual, Application- Aware, Persistent Data Data Masking Siebel / UDB Custom / Sybase EBS / Oracle Substitute confidential information with fictionalized data Deploy multiple masking algorithms Provide consistency across environments and iterations Enable off-shore testing Protect private data in non-production environments 13 IBm software Group 10/23/2009

Optim Test Data Management Solution Production or Production Clone Create targeted, right-sized subsets faster and more efficiently than cloning Easily refresh, reset and maintain test environments Compare data to pinpoint and resolve application defects faster Accelerate release schedule Extract Dev Extract Files Load Insert / Update Compare Test QA 14 IBm software Group 10/23/2009

The Problem Mergers & acquisitions Organic business growth ecommerce ERP/CRM The digital revolution Records retention Basel II SOX Euro-SOX Data multiplier effect Forrester estimates that 85% of data stored in databases is inactive * Source: Noel Yuhanna, Forrester Research, Database Archiving Remains An Important Part Of Enterprise DBMS Strategy, 8/13/07 15 IBm software Group 10/23/2009

The Answer The Optim Data Growth Solution Production Archives Historical Retrieved Current Archive Retrieve Reference Data Reporting Data Historical Data Open Access to Application Data Application ODBC / JDBC XML Report Writer 16 IBm software Group 10/23/2009

Archiving a Complete Business Object Ledgers 17 IBm software Group 10/23/2009

Why Optim Data Growth Solution? Manage data across the enterprise including multiple applications, databases, and platforms Segment and manage data at the complete business object level Increase database performance/response time and minimize batch windows Remove historical business records from Production Archive to selected target format Compressed, indexed file XML file Archive database Implement tiered storage strategies to maximize ILM efficiencies CAS devices (EMC Centera, IBM DR550) Existing tape libraries Optical disk Multiple access methods to archived business records Native Application access Self-Help Access (Canned Reports, Query Tools) Application Independent access (Original app/version is not needed) 18 IBm software Group 10/23/2009

What Customers are Saying Optim has already yielded the returns we were looking for, and we have just touched the tip of the iceberg We can easily comply with data privacy regulations without incurring additional costs The bottom line is that Optim's archiving capabilities will help us exceed our SLA Our backup times are 20% faster 19 IBm software Group 10/23/2009