Intelligent Data Governance Solutions

Home Products DatAdvantage

Data entitlement management belongs with data owners, after all they are the ones accountable to the enterprise for the data. However, assuming IT can identify data owners, several challenges arise:

  • Entitlement Reviews: How can data owners efficiently and effectively review access to their data?
  • Authorization Workflow: How can we automate owner involvement in the authorization process?
  • Accountability: How can authorization and entitlement review processes be tracked and reported?
  • Policy enforcement: How can we make sure data owners and end users adhere to organizational policies?

Varonis© DataPrivilege© addresses these challenges with a web interface that brings IT, data owners, and users together in a self-service portal for automating access authorization, entitlement reviews, policy enforcement (e.g. ethical walls), and compliance reporting.

Benefits

  • Expedient and efficient data access response
  • Accurate business-driven data controls
  • Continuous at-will auditing
  • Reduction in IT burden

Functions

  • Automated business rule to authorization policy conversion
  • Multi-level permission management (i.e. authorizers, reviewers)
  • Data permission authorization history & audit trail
  • Synchronization with file systems and user repository

Business Rules

DataPrivilege allows data business owners to define rules for how data entitlements should be handled. DataPrivilege converts the rules to an authorization process by which those responsible for granting entitlements obtain the permissions to do so.

Permissions

Within the DataPrivilege Web user interface, data authorizers can review requests by users to access data and approve accordingly. A data authorization will be enacted in the live environment, and the data access requestor will receive an email notification of the authorizer's action.

Auditing

DataPrivilege maintains a record of all pending, granted and denied requests to access data. Data reviewers can, at any time, see who owns the data, who made a request to access and who authorized the request. They can also see a record of the rationale for allowing or denying a data access request.

Synchronization

DataPrivilege lets data owners and authorizers not only define data access entitlements but also disseminate them in the environment. The commit engine communicates all data access approvals and denials to the file servers that will enforce the entitlements.

DataPrivilege®

Pricing & Demos

Document Downloads

Data Sheets: