Adaptive Redaction

From Wikipedia, the free encyclopedia
Jump to navigation Jump to search

Adaptive Redaction is an intelligent version of redaction whereby sensitive parts of a document are automatically removed based on policy. It is primarily used in next generation Data Loss Prevention (DLP) solutions.

Content and Context[edit]

The policy is a set of rules based on content and on context.

Context can include:

  • Who is sending (or uploading) the information.
  • Who is receiving the information (including a web site if uploading or downloading).
  • The communication channel (e.g. email, web, copy to removable media).

Content can be 'visible' information, such as that you see on the screen. It can also be 'invisible' information such as that in document properties and revision history, and it can also be 'active' content which has been embedded in an electronic document, such as a macro.

Purpose[edit]

Adaptive Redaction is designed to alleviate "False Positive" events created with Data loss prevention software (DLP) security solutions.

False positives occur when a DLP policy triggers and prevents legitimate outgoing communication. In the majority of cases this is caused through oversight by the sender.

Examples[edit]

Sending unprotected credit card information outside an organization breaches the Payment Card Industry Data Security Standard (PCI DSS regulations). Many organizations accept credit card information through email, however a reply to an email containing such information would send out the prohibited information. This would cause a breach of policy. Adaptive Redaction can be used to remove just the credit card number but allow the email to be sent.

'Invisible' information can be found in documents and has created embarrassment for several governments.[1] [2]

See also[edit]

References[edit]