Data types
Regulated
–Managed by a third-party
–Government laws and statutes
* Trade secret
–An organization’s secret formulas
–Often unique to an organization
* Intellectual property
–May be publicly visible
–Copyright and trademark restrictions
* Legal information
–Court records and documents, judge and attorney
information, etc.
–PII and other sensitive details
–Usually stored in many different systems
* Financial information
–Internal company financial details
–Customer financials
–Payment records
–Credit card data, bank records, etc.
* Human-readable
–Humans can understand the data
–Very clear and obvious
* Non-human readable
–Not easily understood by humans
–Encoded data
–Barcodes
–Images
* Some formats are a hybrid
–CSV, XML, JSON, etc.
Classifying sensitive data
Data classifications
Sensitive - Intellectual property, PII, PHI
* Confidential - Very sensitive, must be approved to view
* Public / Unclassified - No restrictions on viewing the data
* Private / Classified / Restricted
–Restricted access, may require an NDA
* Critical - Data should always be available