Updated on 2023-03-02 GMT+08:00

Functions

Table 1 describes the functions provided by DSC.
Table 1 DSC functions

Function

Description

Reference Document

Data Security Overview

DSC provides constant visibility of the security status of your data and displays the security status in data collection, transmission, storage, usage, exchange, and deletion.

OverviewData Security Overview

Asset List

DSC manages the data assets added in DSC, including OBS, databases, MRS, and big data.

For details about the restrictions on adding assets, see Constraints.

Adding Assets in Batches

Sensitive Data Identification

  • Automatic data classification: DSC precisely and efficiently identifies sensitive data from structured data stored in Relational Database Service (RDS) and unstructured data stored in Object Storage Service (OBS), covering all data on the cloud.
    • File types: DSC can identify sensitive data from over 200 types of unstructured files.
    • Data types: DSC is able to identify dozens of personal privacy data types (Chinese or English).
    • Image types: DSC is able to identify sensitive words (Chinese and English) in eight types of images such as PNG, JPEG, x-portable-pixmap, TIFF, BMP, GIF, JPX, and JP2.
    • Compliance templates: Various templates built in DSC are used to check whether data is compliant with regulations and standards such as General Data Protection Regulation (GDPR), Payment Card Industry Data Security Standard (PCI DSS), and Health Insurance Portability and Accountability Act (HIPAA).
  • Automatic identification of sensitive data
    • Automatic identification of sensitive data and personal privacy data
    • Customized identification rules to meet various requirements of different industries
    • File framework sort-out to precisely identify sensitive data.
    • Clear and intuitive compliance reports that can be downloaded

Creating a Sensitive Data Identification Task

Data Masking

Supports static data masking and dynamic data masking.

Data masking has the following features:

  • Zero impact: DSC reads data from original databases, statically masks sensitive data using precise masking engines, and saves the masked data separately without affecting your data assets.
  • Various data sources: Data of various sources on the cloud, such as RDS, self-built databases on ECSs, or big data, can be masked to meet security requirements.
  • Custom data masking policies: DSC provides you with over 20 preset data masking rules. You can use the default masking rules or customize the masking rules to mask sensitive data in the specified database table. For details about the data masking algorithms supported by DSC, see .
  • Easy and quick masking rule configuration for security compliance: Easy and quick data masking rule configuration can be achieved based on data scanning results.

DSC uses built-in and customized masking algorithms to mask RDS and Elasticsearch data.

Configuring a Data Masking Rule

Data Watermarking

Adds watermarks to or extracts watermarks from PDF, PPT, Word, and Excel files.

  • Copyright proof: The owner information is added to the assets to specify the ownership, achieving copyright protection.
  • Automated monitoring: The user information is added to the assets for tracing data leak.

Watermark Injection

Alarm Notifications

Sends notifications through the notification method configured by users when sensitive data identification is completed or abnormal events are detected.

Alarm Notifications