Prevent sensitive data
Sensitive Data
Sensitive Data is the set of data that contains elements from user data, application data and data protecting data such that user data is not exposed to unauthorized parties
- Application Data
- Configuration Data
- Logging Data
- Application Data
- User Data
- Personal Information
- Personal Identification Information, drivers license
- Data Protecting Data
- Cryptokey
- Passkeys
- Access Control lists
Types Of Insensitive Data
Just because it can contain sensitive data, it does not mean it is. Controls can be put in place to manage it such as in development or via business process.
- Not all user data
- Logging files
Data Classification
This can be by either
- Laws, GDPR, PCI DSS, can include but not exclusive to
- Personal data, trade union membership, genetic, bio metric, health data
- Business requirements