Polymer

Download free DLP for AI whitepaper

Summary

  • Identity and access management (IAM) needs a rethink in the age of cloud applications.
  • Polymer DLP enables IAM at the data level, ensuring only legitimate users access sensitive data based on defined privileges.

Perimeter security has historically provided the analogy of protecting the keys to the kingdom for Enterprises. Once you have been approved to enter the drawbridge which typically consists of verifications such as password, VPN, 2-Factor, a user can have access to all the data and applications within the castle. However once you are in the castle (or the network) you are anonymous and lose identity. Hence, spies were so effective in these environments in the eons past, and hackers in the current era.

Old drawbridge, Bruges Painting by Alexander Jamieson
Moats that work sometimes

This ‘walled’ model works well if all employees are sitting in 1 office building within an enterprise.  With anyone being able to come to the gates and request access to the castle using the mobile phone or public internet connected wifi, the robustness of the drawbridge protocols are not quite sturdy.

Privilege access of applications

There is a huge plethora of software companies that focus on a roundabout way of securing Enterprises via outdated Access Management. Network Packet Analysis based products, VDIs etc. but the inherent problem in this architecture (as it pertains to distributed staff) was not addressed.

Cloud and SaaS software required a rethink. Defining moment came in 2010 when Google was breached by Chinese hackers leading to Operation Aurora.

Google poured in resources after that hack to develop the next generation framework of identity access management that was open-sourced in the seminal BeyondCorp white paper. Based on Zero Trust methodology, the methodology can be summarized as follows:

  • Who someone is and can they be allowed to use a certain application?
  • Knowing who the user is accessing a bank account (for example) beyond just the username/password based identification
  • Enterprise managed Employee Device database with a listing of authorized devices
  • User and group database on a single-sign on
  • Authentication protocols when accessed from external networks

The big leap that has come in recent years with frameworks like Layer 7 is attestation of identity management moving to the 21st century. Now an enterprise can differentiate between someone having access to the phone directory vs someone having access to bank account details within the same organization. 

As an employee I can only access authorized applications and I am good to go. But wait, how does this methodology work with data? 

If many folks within an organization are working over the same platform who has access to what information? Privilege access within collaborative tool is not a thing, or is it?

Privilege access of data

Databases have traditionally been the ultimate collaboration platforms that provide the common knowledge-base for the enterprise. Access can be controlled based on authentication frameworks described above as well as low level access by the admin that can be managed by limiting access to tables or areas within the database. For example, a salesperson would not have access to the finance portion of the database in a data warehouse.

Identity and access management in the enterprise
Knowledge Store Architecture Evolution

Databases (and maybe Shared folders) provided all you needed to know for a business. Salesforce changed it about  a decade ago. Here was a cloud-based workflow tool to not only create and store information but also make it cumbersome to export it out. Suddenly organizations had to work with 2 sources of data now, SaaS and traditional database domain. 

Over the years, other tools within the organizations were added to the mix in the form of ServiceNow (enterprise architecture artifacts, service tickets etc.), Github/Bitbucket (codebases), Jira/Zendesk (service tickets) and the list goes one.

In the knowledge space, the increasing adoption of collaborative software such as Slack, Dropbox, Zoom created other datasets that are increasingly making Enterprise knowledge store highly desegregated and scattered. 

Polymer: Beyondcorp for data

Polymer was designed on the footprints of BeyondCorp- at a data level. This framework of privilege access to sensitive data was borne out of a need to identify access not at an application level but at a data element level. Each SaaS application brings with it a different set of usage patterns and what data is created. Privilege access to data within these platforms is not only needed but essential as organizations grapple with privacy and data breach risks.

We are looking to open-source aspects of this framework to open up this discussion more widely. Keep an eye out for that. In the meantime, drop me a line if you agree/disagree or have things to add to my layman summary above.

Polymer is a human-centric data loss prevention (DLP) platform that holistically reduces the risk of data exposure in your SaaS apps and AI tools. In addition to automatically detecting and remediating violations, Polymer coaches your employees to become better data stewards. Try Polymer for free.

SHARE

Get Polymer blog posts delivered to your inbox.

RATU311

thor311 tajen bali

thor311 alternatif

situs toto4d

thor311 toto4d

thor311 akses

ceri188

KUPU178

daftar ceri188

cery188

ceri188

KUPU178

KUPU178

slot gacor

kupu 178

kupu178

ceri1888

ceri188

slot online

hoki311

togel online

ceri188

ding dong

ratu311

slot gacor

kupu178

live casino

kupu178

RATU311

mix parlay

ceri188

judi bola online

thor311 slot

RATU311

HOKI311

HOKI311

THOR311

RATU311

RATU311

KUPU178

THOR311

THOR311

ceri188

ratu311

slot online

hoki311

kupu178

togel online

kupu178

slot gacor

ceri188

judi bola online

ceri188

ratu311

kupu178

RATU311

RATU311

live casino roullete

ceri188

slot pg soft

kupu178

KUPU178

KUPU178

THOR311

THOR311

THOR311

THOR311

RATU311

KUPU178

KUPU178

THOR311

THOR311

THOR311

RATU311

thor311 domino qq

thor311 akses

thor dingdong

THOR311

ceri188

ceri188

KUPU178

RATU311

RATU311

kupu178

kupu178

HOKI311

togel

kupu178

mix parlay

ceri188

slot online

kupu178

THOR311

THOR311

KUPU178

KUPU178

kupu178

hoki311

togel online

kupu178

ceri188

ceri188

www.vrcorporate.in

phbalance.vn

togel hongkong

kupu178

slot gacor

kupu178

kupu178

ceri188

kupu178

RATU311

KUPU178

RATU311

RATU311

slot online

kupu178

THOR311

KUPU178

slot mahjong ways

hoki311

slot gacor

ceri188

kupu178

Casino Baccarat Online

kupu178

kupu178

ceri188

toto macau

KUPU178

Slot Gacor

KUPU178

RATU311

Mahjong ways

KUPU178

THOR311

RATU311

RATU311

RATU311

KUPU178

KUPU178

RATU311

RATU311

RATU311

Toto Togel

KUPU178

CERI188

Slot Sweet Bonanza 2500

KUPU178

RATU311

RATU311

KUPU178 X SLOT777

judi bola online

THOR311

KUPU178 SLOT TERPERCAYA

KUPU178 TOGEL

TOTO 4D MACAU

KUPU178

KUPU178

THOR311

HOKI311

KUPU178

RATU311

Slot Mahjong Ways

KUPU178

CERI188

Slot Online Resmi

KUPU178

RATU311 SLOT ONLINE

KUPU178

KUPU178: Link Akses Resmi

KUPU178: Strategi Menang Di Game Live Casino

KUPU178

KUPU178: Minimal 200 Rupiah

THOR311

THOR311

THOR311

THOR311

THOR311

KUPU178

Slot Thailand

CERI188

CERI188

THOR311 RTP

RATU311

RATU311

CERI188

KUPU178 TOTO SLOT

CERI188 TOTO Singapore

THOR311

CERI188

RATU311: Alternatif karnpuracollege

Thor311 Terbaru

THOR311 MAHJONG

RATU311: BONUS SABUNG AYAM

CERI188: Masuk Akun Slot Super Cepat

CERI188

CERI188

THOR311

HOKI311

HOKI311

RATU311

HOKI311

KUPU178

RATU311

RATU311

RATU311

THOR311

CERI188

CERI188

RATU311

RATU311

RATU311

Game Thor311

HOKI311

HOKI311

RATU311

HOKI311

HOKI311

THOR311

RATU311 NONTON BOLA

HOKI311 Link QRIS EWALLET

RATU311

HOKI311 Link Apk Resmi

CERI188

RATU311 judi bola

KUPU178

HOKI311

RATU311

THOR311

HOKI311

KUPU178

KUPU178

KUPU178

RATU311

RATU311

KUPU178

THOR311

KUPU178

RATU311

THOR311