Jump to content

Varonis® DataPrivilege®

  • Automated Entitlement Reviews
  • Authorization Workflow
  • Ethical Walls
  • Self-Service Governance Portal
  • Data Owner Accountability
  • Policy Enforcement
DataPrivilege - automated entitlement reviews, authorization workflows, ethical walls.

Sign up for our 30-day FREE trial!
Within a day of installation, Varonis DatAdvantage will begin
to show you which users are accessing your data, and how.
Click here to replay.

Interested but want to learn more? Register to download our free whitepapers, webinars, and case studies.

Overview

The Challenge

Data entitlement management belongs with data owners – after all, they are the ones accountable to the enterprise for the data. However, assuming IT can identify data owners, several challenges arise:

  • Entitlement Reviews: How can data owners efficiently and effectively review access to their data?
  • Authorization Workflow: How can we automate owner involvement in the authorization process?
  • Accountability: How can authorization and entitlement review processes be tracked and reported?
  • Policy enforcement: How can we make sure data owners and end users adhere to organizational policies?

The Varonis Solution

Varonis® DataPrivilege® addresses these challenges with a configurable web interface that brings IT, data owners, and users together in a self-service portal for automating access authorization, entitlement reviews, policy enforcement (e.g. ethical walls), and compliance reporting.

"With Varonis® DatAdvantage® and DataPrivilege® we have automated the process of identifying folder ownership, managing folder permission requests, tracking changes and we have been able to identify orphaned groups within the Active Directory — 1800 to date." – Elroy Overdijk
Ziggo

Features and Benefits

Features

DataPrivilege automates data governance by providing a framework for users and data owners to be directly involved in the access review and authorization workflows. A configurable web interface for data owners, business users, and IT administrators automates data access requests, owner and IT authorization of changes, automated entitlement reviews, and business data policy automation (e.g. ethical walls). A complete audit trail ensures that data governance policies are in place and being adhered to.

Benefits

  • Automated entitlement reviews provided to data owners with recommendations for access removal generated by DatAdvantage
  • Access control workflow empowering users to request access to data and group resources directly, with data owners involved in the authorization process
  • Business policy implementation through ethical walls
  • Complete self-service data governance portal for users and data owners
  • Audit trail and reporting of all access authorization activity

Why Varonis

Data protection is necessary to safeguard an organization's customers, employees, business partners, and investors. It is fundamental in securing an organization's intellectual property and competitive edge, and for maintaining the organizational trust required for it to properly function. Ongoing, scalable data protection and management require technology designed to handle an ever-increasing volume and complexity—a metadata framework.

The Varonis Metadata Framework non-intrusively collects this critical metadata, generates metadata where existing metadata is lacking (e.g. its file system filters and content inspection technologies), pre-processes it, normalizes it, analyzes it, stores it, and presents it to IT administrators in an interactive, dynamic interface. Once data owners are identified, they are empowered to make informed authorization and permissions maintenance decisions through a configurable web-based interface—that are then executed—with no IT overhead or manual backend processes.

Technical FAQ

What Platforms does Varonis® DataPrivilege® work with?
Microsoft Windows File Systems, EMC Celerra and Network Appliance NAS devices
How does Varonis® DataPrivilege® communicate with Data Owners?
DataPrivilege will generate proactive alerts to Data Owners via SMTP, and any responses or reviews can be provided through the pre-configured web site and, in some cases, via direct SMTP 'reply to' responses.
What operations can be managed by a Data Owner in DataPrivilege?
A Data Owner can be assigned the management of a domain global group (i.e., who is and is not in the group) and the permissions on a file system or share (including DFS) folder. This can be done via an interactive 'grant / deny' of new permissions, or via a regular, scheduled entitlement review approach.
Who can access the DataPrivilege interface?
All users with a valid domain logon can access DataPrivilege to generate new requests to available, managed resources. Data Owners receive additional permissions that relate to the management of sub-folders and groups under their control. DataPrivilege administrators can also access system configuration information via the interface.
Can Data Owners generate their own reports?
Yes – DataPrivilege allows a Data Owner to report on workflow processes such as who made an access request, who authorized access, and what changes to permissions were implemented.
Do I need to configure DataPrivilege separately from DatAdvantage?
DataPrivilege can be configured in a standalone environment. However, for ease of administration, Data Owner information is automatically synchronized with DatAdvantage where both products are installed.

30-Day Trial

Our 30-Day Free Trial provides a full audit of your file system or your SharePoint environment. Audit permissions, auditing access, usage statistics, recommendations, impact analysis, and identification of business owners.

Within hours of installation

You can instantly conduct a permissions audit: File and folder access permissions and how those map to specific users and groups. You can even generate reports.

Within a day of installation

Varonis® DatAdvantage® will begin to show you which users are accessing the data, and how.

Within 3 weeks of installation

Varonis® DatAdvantage® will actually make highly reliable recommendations about how to limit access to files and folders to just those users who need it for their jobs.

Get the Varonis View. Sign up for the 30-Day Free Trial.