SlideShare a Scribd company logo
Powered by Apache RangerTM
WEBINAR
CCPA Compliance for Analytics and Data Science
with Privacera and Databricks
February 19, 2020
Srikanth Venkat
Vice President of Product Management
Privacera
Nauman Fakhar
Director of ISV Solutions
Databricks
Today’s Presenters
Total data
Lost Value: Competing Mandates to Comply and Democratize Data
D
A
T
A
V
O
L
U
M
E
Lost value
2018 2020
Captured value
Data that meets
compliance
CCPA: Businesses & Consumers
Collects, shares, buys or sells Annual Revenue over $25M+ 50%+ of revenue from
PI data of 50K+ CA consumers CA
consumers
Receive a copy of the
specific personal
information collected
about them during
preceding 12 months
prior to their request
Right to have their
personal information
deleted (with
exceptions) within
reasonable timeframe
(45 days or less)
What categories of
personal information
collected, the source
and use of the
information, and
disclosed to who?
Right to know a
firm’s data sale
practices and to
request that their
PI not be sold to
3rd parties
Right not to be
discriminated against due
to exercise of CCPA
consumer rights!
FOR PROFIT BUSINESS
CONSUMER
CCPA: Personal Information & Obligations
● CCPA defines personal information broadly
○ “identifies, relates to, describes, is capable of being
associated with, or could reasonably be linked,
directly or indirectly, with a particular consumer or
household”
○ Inferences drawn to create a profile about the
individual to reflect preferences, attitudes, etc.
● Obligation of firms to:
○ Expand and annually update their privacy policy
disclosures
○ Provide on-demand to consumers within 45 days
information requested
○ Delete personal information upon request
○ Stop selling personal information of consumers upon
request
Personal Information (PI) Examples:
➢ Name
➢ Address
➢ Internet protocol address
➢ Email address
➢ Account name
➢ SSN, driver’s license number, passport numbers
➢ Protected classifications under CA or U.S. law
➢ Commercial activity (personal property, products or
services purchased)
➢ Biometric information
➢ Browsing history
➢ Geolocation data
➢ Audio, electronic, visual thermal, olfactory or similar
information
➢ Professional or employment information
➢ Education information
CCPA: Non-Compliance Consequences
● Up to $750 in damages per
consumer per incident or
actual damages, whichever
is greater
● Civil Action with fines by
Attorney General Office upto
$7500 for each intentional
violation, if offense is not
remedied within 30 days!
● Fines and penalties
● Costs for Litigations
● Product modification cost
● Restriction of operations
● Loss of revenue
● Increased insurance
coverage costs
● Loss of Brand image
● Loss of customer trust
● Customer churn
● Loss of employee trust
Unified data analytics platform for accelerating innovation across
data science, data engineering, and business analytics
Original creators of popular data and machine learning open source projects
Global company with 5,000 customers and 450+ partners
Accelerating data-driven
innovation across data
science, data engineering,
and business analytics
RAW DATA LAKE
DATA
SCIENTISTS
ML ENGINEERS DATA ANALYSTS
DATA
ENGINEERS
ENTERPRISE CLOUD SERVICE
A simple, scalable, and secure managed service
UNIFIED DATA SERVICE
High quality data with great performance
DATA SCIENCE WORKSPACE
Collaboration across the lifecycle
BI INTEGRATIONS
Access all your data
UNIFIED DATA ANALYTICS PLATFORM
Compliance - Transactions
Performance - Fast queries at scale
• Ability to delete/update specific rows of data from a cloud
native data lake
• Transaction log tracks history of operations on every Delta
table
• Compaction to optimize file sizes
• Data skipping reads only the relevant data
• Caching increases read throughput by up to 15x
Delta Lake: Adds Reliability & Performance
Reliability - High Quality Data
• Schema enforcement makes data consistent
• Transactions ensure only completed writes are committed
• Time travel maintains versions of data
2012
XA Secure
founded.
XA Secure
acquired by
Hortonworks, open
sourced as
Apache Ranger.
2014
Apache Atlas,
data governance
project incubated
2015
Privacera
founded
2016
Privacera
platform
Generally
Available
2017
Customers
include
multiple
Fortune 100
companies.
Founded in 2016 by the creators of Apache Ranger and Apache Atlas.
Experienced and accomplished innovators in data and cloud governance.
Partner of Amazon Web Services, Microsoft, and Databricks.
2020
Privacera: Leaders in Big Data and Cloud
● Centralized data access governance
platform.
● Works across heterogenous on-
premises and cloud data services.
● Based on open source Apache Ranger
project.
● Breaks data silos and simplifies data
access governance.
Privacera: Centralized Data Access Governance for the Hybrid Cloud
Central
Portal
LDAP/AD
Policy
Database
DatabasesDatabasesHive/Spark
Plug-In Policy Sync
Privacera: Platform Architecture
Cloud/Object Storage
Data Access
Server
Benefits of Privacera Data Access Governance for Hybrid Cloud
For IT and data teams
✓ Single, centralized environment.
✓ Automated sensitive data discovery and
tagging.
✓ Consistent policy creation and
automated enforcement across services.
✓ Comprehensive monitoring, auditing and
compliance reporting.
Benefits of Privacera Data Access Governance for Hybrid Cloud
For data scientists and analysts
✓ Faster, safer access to more data and
data services.
✓ Transparent governance for improved
user experience.
✓ Reduced privacy, security and
compliance risk.
✓ More use cases, better insights, smarter
decisions.
DISCOVER DEFINE ENFORCE REPORT
Privacera: Data Access Governance Lifecycle
DISCOVER DEFINE ENFORCE REPORT
Privacera: Data Access Governance Features
○ Diverse Compatibility: Quickly connect to cloud
storage & databases.
○ Scan & Tag Sensitive Data: Leverage machine
learning, rules to scan and tag sensitive data.
○ Scalable Metadata Storage: Store tags in a truly
scalable metadata store or integrate with 3rd party
data catalogs and associated tags.
DISCOVER DEFINE ENFORCE REPORT
Privacera: Data Access Governance Features
○ Centralized Management: Manage access control
policies for all data sources in a central portal.
○ FGAC: Create fine-grained access control policies
down to the file, row, and column level.
○ Robust Policy Definition: Create role-based,
attribute-based, and tag-based access control
policies.
DISCOVER DEFINE ENFORCE REPORT
Privacera: Data Access Governance Features
○ Heterogeneous Compatibility: Configure
enforcement points across on-premises and cloud
data and analytics services.
○ Simple, Immediate Enforcement: Automate
enforcement of access control policies for all users
across all environments.
DISCOVER DEFINE ENFORCE REPORT
Privacera: Data Access Governance Features
○ Instant Visibility: Quickly generate reports to help
teams get instant visibility on data assets.
○ Seamless Compliance: Generate custom reports to
prove compliance to outside regulators.
○ Comprehensive View of Sensitive Data Risks:
Monitor and audit data access behavior and get alerts
when sensitive data is moved.
CCPA: PI Handling & Processing Best Practices
● PI DATA INVENTORY : CCPA compliance starts with knowing what PI you have
=> Accurate, complete, and up-to-date sensitive data inventory is the foundation for compliance!
○ Review areas where any type of PI can reside (e.g. website, forms at retail locations, mail, email, employment
applications, HR documents, call center recordings, agreements and contracts (vendor or service providers,
landlord/tenant), marketing, CCTV, chatbot data etc.)
○ Identify and categorize or classify all PI with sources
○ Identify purposes for collecting PI data and uses
○ Identify retention period for each category of information to honor deletion requests
○ Identify who has been given access to the information, including 3rd parties via contracts and their use of the
information
○ Identify location of PI in data stores, storage format, and the owner or person(s) responsible for maintaining it
● For Managing Consumer Rights
○ Use de-identified PI data where possible to minimize exfiltration and attribution risk
○ Provide methods for record level deletion and updates across data stores in cloud and data center
○ Use masking, encryption (with removal of keys) and redaction on PI data where complete deletion is not
possible due to legal exceptions or other processing requirements
○ Centralize entitlement, access control, and consent management
CCPA Compliance Demo
CCPA as an Opportunity!
● Automated data security and privacy controls help:
○ reduce risk of manual errors
○ reduce operational complexity
○ improve response times to critical privacy and security incidents
○ avoid costly penalties, positively impacting bottom line
● Integrating a robust privacy program into your business processes
○ Helps build deeper customer engagement and improves business outcomes
○ Improves employee, partner, and customer trust and enhances brand image
and reputation
○ Improves data management practices to enable better and faster insights to
generate top line benefits
Questions?
Submit your questions now or email follow-up
questions to info@privacera.com and either
Srikanth or Nauman will follow up with you.
For more information about Privacera and
Databricks, visit www.privacera.com/databricks.
Thank You
Powered by Apache RangerTM

More Related Content

PDF
Building the Governance Ready Enterprise for GDPR Compliance December 2017
PDF
Building the Governance Ready Enterprise for GDPR Compliance
PDF
BigID, OneTrust, IAPP Webinar: Bridging the Privacy Office with IT
PDF
Practical steps to GDPR compliance
PDF
Finding Data at Risk for CCPA Compliance
PPTX
Tackling the GDPR Dell EMC Index Engines Webinar
PPTX
Supporting GDPR Compliance through Data Classification
PPTX
Webinar: Practical Technology Playbook for the GDPR
Building the Governance Ready Enterprise for GDPR Compliance December 2017
Building the Governance Ready Enterprise for GDPR Compliance
BigID, OneTrust, IAPP Webinar: Bridging the Privacy Office with IT
Practical steps to GDPR compliance
Finding Data at Risk for CCPA Compliance
Tackling the GDPR Dell EMC Index Engines Webinar
Supporting GDPR Compliance through Data Classification
Webinar: Practical Technology Playbook for the GDPR

What's hot (17)

PPTX
Collibra Data Citizen '19 - Bridging Data Privacy with Data Governance
PDF
Beginning your General Data Protection Regulation (GDPR) Journey
PPTX
GDPR Readiness for Software Usage Analytics
PDF
Enacting the Data Subjects Access Rights for GDPR with Data Services and Data...
PPTX
Security&Governance
PDF
Data- and database security & GDPR: end-to-end offer
PDF
A Comparison of Analytics and Tag Management Suites by Piwik PRO and Google
PPTX
GDPR: 20 Million Reasons to get ready - Part 1: Preparing for compliance
PPTX
Ensuring GDPR Compliance - A Zymplify Guide
PPTX
Hadoop and Financial Services
PPTX
GDPR: Your Journey to Compliance
PDF
DEFeND Project Presentation - July 2018
PDF
Are Your Data Ready for GDPR? (with MAPR and Talend)
PDF
Unlocking Greater Insights with Integrated Data Quality for Collibra
PPTX
Geek Sync | Tackling Key GDPR Challenges with Data Modeling and Governance
PPTX
Secure Your Enterprise Data Now and Be Ready for CCPA in 2020
PPTX
Make a case for Data Classification in your organization
Collibra Data Citizen '19 - Bridging Data Privacy with Data Governance
Beginning your General Data Protection Regulation (GDPR) Journey
GDPR Readiness for Software Usage Analytics
Enacting the Data Subjects Access Rights for GDPR with Data Services and Data...
Security&Governance
Data- and database security & GDPR: end-to-end offer
A Comparison of Analytics and Tag Management Suites by Piwik PRO and Google
GDPR: 20 Million Reasons to get ready - Part 1: Preparing for compliance
Ensuring GDPR Compliance - A Zymplify Guide
Hadoop and Financial Services
GDPR: Your Journey to Compliance
DEFeND Project Presentation - July 2018
Are Your Data Ready for GDPR? (with MAPR and Talend)
Unlocking Greater Insights with Integrated Data Quality for Collibra
Geek Sync | Tackling Key GDPR Challenges with Data Modeling and Governance
Secure Your Enterprise Data Now and Be Ready for CCPA in 2020
Make a case for Data Classification in your organization
Ad

Similar to CCPA Compliance for Analytics and Data Science Use Cases with Databricks and Privacera (20)

PDF
Transforming GE Healthcare with Data Platform Strategy
PDF
How a Logical Data Fabric Enhances the Customer 360 View
PDF
Big Data LDN 2017: Data Governance Reimagined
PPT
Using Big Data and AI for Customer Analytics
PPTX
Data Science Salon 2018 - Building a true enterprise data governance platform...
PDF
Analyst Webinar: Best Practices In Enabling Data-Driven Decision Making
PDF
Webinar #2 - Transforming Challenges into Opportunities for Credit Unions
PPTX
Necessity of Data Lakes in the Financial Services Sector
PPTX
How Cloudera SDX can aid GDPR compliance
PPTX
Big Data Everywhere Chicago: Platfora - Practices for Customer Analytics on H...
PPTX
Financial Services - New Approach to Data Management in the Digital Era
PDF
Ethyca CodeDriven - Data Privacy Compliance for Engineers & Data Teams
PDF
Chainyard BITA TYS presentation v0.1.11042019
PDF
Mastering Data Compliance in a Dynamic Business Landscape
PDF
BDW Chicago 2016 - Ramu Kalvakuntla, Sr. Principal - Technical - Big Data Pra...
PDF
Building Rules for Data Governance
PPTX
File Sharing Use Cases in Financial Services
PDF
Workable Enteprise Data Governance
PPTX
Office 365 Security: How to Safeguard Your Data
PPTX
Strata NYC 2015 - Transamerica and INFA v1
Transforming GE Healthcare with Data Platform Strategy
How a Logical Data Fabric Enhances the Customer 360 View
Big Data LDN 2017: Data Governance Reimagined
Using Big Data and AI for Customer Analytics
Data Science Salon 2018 - Building a true enterprise data governance platform...
Analyst Webinar: Best Practices In Enabling Data-Driven Decision Making
Webinar #2 - Transforming Challenges into Opportunities for Credit Unions
Necessity of Data Lakes in the Financial Services Sector
How Cloudera SDX can aid GDPR compliance
Big Data Everywhere Chicago: Platfora - Practices for Customer Analytics on H...
Financial Services - New Approach to Data Management in the Digital Era
Ethyca CodeDriven - Data Privacy Compliance for Engineers & Data Teams
Chainyard BITA TYS presentation v0.1.11042019
Mastering Data Compliance in a Dynamic Business Landscape
BDW Chicago 2016 - Ramu Kalvakuntla, Sr. Principal - Technical - Big Data Pra...
Building Rules for Data Governance
File Sharing Use Cases in Financial Services
Workable Enteprise Data Governance
Office 365 Security: How to Safeguard Your Data
Strata NYC 2015 - Transamerica and INFA v1
Ad

More from Jeff Kelly (7)

PPTX
Wikibon Barclays Disruptive Tech Call - November 2014
PPTX
Wikibon Big Data Capital Markets Day 2014
PDF
Democratizing Big Data (Updated)
PDF
The business value of Big Data
PDF
Big Data and Hadoop - key drivers, ecosystem and use cases
PDF
Create your Big Data vision and Hadoop-ify your data warehouse
PPTX
Democratizing Big Data
Wikibon Barclays Disruptive Tech Call - November 2014
Wikibon Big Data Capital Markets Day 2014
Democratizing Big Data (Updated)
The business value of Big Data
Big Data and Hadoop - key drivers, ecosystem and use cases
Create your Big Data vision and Hadoop-ify your data warehouse
Democratizing Big Data

Recently uploaded (20)

PPTX
Big Data Technologies - Introduction.pptx
PDF
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
PPTX
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
PDF
NewMind AI Monthly Chronicles - July 2025
PDF
Agricultural_Statistics_at_a_Glance_2022_0.pdf
PPTX
Digital-Transformation-Roadmap-for-Companies.pptx
PPTX
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
PDF
Electronic commerce courselecture one. Pdf
PDF
Shreyas Phanse Resume: Experienced Backend Engineer | Java • Spring Boot • Ka...
PDF
Dropbox Q2 2025 Financial Results & Investor Presentation
PDF
cuic standard and advanced reporting.pdf
PDF
Network Security Unit 5.pdf for BCA BBA.
PPTX
A Presentation on Artificial Intelligence
PDF
Advanced methodologies resolving dimensionality complications for autism neur...
PPTX
Understanding_Digital_Forensics_Presentation.pptx
PDF
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
PPTX
Cloud computing and distributed systems.
PDF
Spectral efficient network and resource selection model in 5G networks
PDF
Encapsulation_ Review paper, used for researhc scholars
PDF
Review of recent advances in non-invasive hemoglobin estimation
Big Data Technologies - Introduction.pptx
TokAI - TikTok AI Agent : The First AI Application That Analyzes 10,000+ Vira...
KOM of Painting work and Equipment Insulation REV00 update 25-dec.pptx
NewMind AI Monthly Chronicles - July 2025
Agricultural_Statistics_at_a_Glance_2022_0.pdf
Digital-Transformation-Roadmap-for-Companies.pptx
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
Electronic commerce courselecture one. Pdf
Shreyas Phanse Resume: Experienced Backend Engineer | Java • Spring Boot • Ka...
Dropbox Q2 2025 Financial Results & Investor Presentation
cuic standard and advanced reporting.pdf
Network Security Unit 5.pdf for BCA BBA.
A Presentation on Artificial Intelligence
Advanced methodologies resolving dimensionality complications for autism neur...
Understanding_Digital_Forensics_Presentation.pptx
How UI/UX Design Impacts User Retention in Mobile Apps.pdf
Cloud computing and distributed systems.
Spectral efficient network and resource selection model in 5G networks
Encapsulation_ Review paper, used for researhc scholars
Review of recent advances in non-invasive hemoglobin estimation

CCPA Compliance for Analytics and Data Science Use Cases with Databricks and Privacera

  • 1. Powered by Apache RangerTM WEBINAR CCPA Compliance for Analytics and Data Science with Privacera and Databricks February 19, 2020
  • 2. Srikanth Venkat Vice President of Product Management Privacera Nauman Fakhar Director of ISV Solutions Databricks Today’s Presenters
  • 3. Total data Lost Value: Competing Mandates to Comply and Democratize Data D A T A V O L U M E Lost value 2018 2020 Captured value Data that meets compliance
  • 4. CCPA: Businesses & Consumers Collects, shares, buys or sells Annual Revenue over $25M+ 50%+ of revenue from PI data of 50K+ CA consumers CA consumers Receive a copy of the specific personal information collected about them during preceding 12 months prior to their request Right to have their personal information deleted (with exceptions) within reasonable timeframe (45 days or less) What categories of personal information collected, the source and use of the information, and disclosed to who? Right to know a firm’s data sale practices and to request that their PI not be sold to 3rd parties Right not to be discriminated against due to exercise of CCPA consumer rights! FOR PROFIT BUSINESS CONSUMER
  • 5. CCPA: Personal Information & Obligations ● CCPA defines personal information broadly ○ “identifies, relates to, describes, is capable of being associated with, or could reasonably be linked, directly or indirectly, with a particular consumer or household” ○ Inferences drawn to create a profile about the individual to reflect preferences, attitudes, etc. ● Obligation of firms to: ○ Expand and annually update their privacy policy disclosures ○ Provide on-demand to consumers within 45 days information requested ○ Delete personal information upon request ○ Stop selling personal information of consumers upon request Personal Information (PI) Examples: ➢ Name ➢ Address ➢ Internet protocol address ➢ Email address ➢ Account name ➢ SSN, driver’s license number, passport numbers ➢ Protected classifications under CA or U.S. law ➢ Commercial activity (personal property, products or services purchased) ➢ Biometric information ➢ Browsing history ➢ Geolocation data ➢ Audio, electronic, visual thermal, olfactory or similar information ➢ Professional or employment information ➢ Education information
  • 6. CCPA: Non-Compliance Consequences ● Up to $750 in damages per consumer per incident or actual damages, whichever is greater ● Civil Action with fines by Attorney General Office upto $7500 for each intentional violation, if offense is not remedied within 30 days! ● Fines and penalties ● Costs for Litigations ● Product modification cost ● Restriction of operations ● Loss of revenue ● Increased insurance coverage costs ● Loss of Brand image ● Loss of customer trust ● Customer churn ● Loss of employee trust
  • 7. Unified data analytics platform for accelerating innovation across data science, data engineering, and business analytics Original creators of popular data and machine learning open source projects Global company with 5,000 customers and 450+ partners
  • 8. Accelerating data-driven innovation across data science, data engineering, and business analytics RAW DATA LAKE DATA SCIENTISTS ML ENGINEERS DATA ANALYSTS DATA ENGINEERS ENTERPRISE CLOUD SERVICE A simple, scalable, and secure managed service UNIFIED DATA SERVICE High quality data with great performance DATA SCIENCE WORKSPACE Collaboration across the lifecycle BI INTEGRATIONS Access all your data UNIFIED DATA ANALYTICS PLATFORM
  • 9. Compliance - Transactions Performance - Fast queries at scale • Ability to delete/update specific rows of data from a cloud native data lake • Transaction log tracks history of operations on every Delta table • Compaction to optimize file sizes • Data skipping reads only the relevant data • Caching increases read throughput by up to 15x Delta Lake: Adds Reliability & Performance Reliability - High Quality Data • Schema enforcement makes data consistent • Transactions ensure only completed writes are committed • Time travel maintains versions of data
  • 10. 2012 XA Secure founded. XA Secure acquired by Hortonworks, open sourced as Apache Ranger. 2014 Apache Atlas, data governance project incubated 2015 Privacera founded 2016 Privacera platform Generally Available 2017 Customers include multiple Fortune 100 companies. Founded in 2016 by the creators of Apache Ranger and Apache Atlas. Experienced and accomplished innovators in data and cloud governance. Partner of Amazon Web Services, Microsoft, and Databricks. 2020 Privacera: Leaders in Big Data and Cloud
  • 11. ● Centralized data access governance platform. ● Works across heterogenous on- premises and cloud data services. ● Based on open source Apache Ranger project. ● Breaks data silos and simplifies data access governance. Privacera: Centralized Data Access Governance for the Hybrid Cloud
  • 12. Central Portal LDAP/AD Policy Database DatabasesDatabasesHive/Spark Plug-In Policy Sync Privacera: Platform Architecture Cloud/Object Storage Data Access Server
  • 13. Benefits of Privacera Data Access Governance for Hybrid Cloud For IT and data teams ✓ Single, centralized environment. ✓ Automated sensitive data discovery and tagging. ✓ Consistent policy creation and automated enforcement across services. ✓ Comprehensive monitoring, auditing and compliance reporting.
  • 14. Benefits of Privacera Data Access Governance for Hybrid Cloud For data scientists and analysts ✓ Faster, safer access to more data and data services. ✓ Transparent governance for improved user experience. ✓ Reduced privacy, security and compliance risk. ✓ More use cases, better insights, smarter decisions.
  • 15. DISCOVER DEFINE ENFORCE REPORT Privacera: Data Access Governance Lifecycle
  • 16. DISCOVER DEFINE ENFORCE REPORT Privacera: Data Access Governance Features ○ Diverse Compatibility: Quickly connect to cloud storage & databases. ○ Scan & Tag Sensitive Data: Leverage machine learning, rules to scan and tag sensitive data. ○ Scalable Metadata Storage: Store tags in a truly scalable metadata store or integrate with 3rd party data catalogs and associated tags.
  • 17. DISCOVER DEFINE ENFORCE REPORT Privacera: Data Access Governance Features ○ Centralized Management: Manage access control policies for all data sources in a central portal. ○ FGAC: Create fine-grained access control policies down to the file, row, and column level. ○ Robust Policy Definition: Create role-based, attribute-based, and tag-based access control policies.
  • 18. DISCOVER DEFINE ENFORCE REPORT Privacera: Data Access Governance Features ○ Heterogeneous Compatibility: Configure enforcement points across on-premises and cloud data and analytics services. ○ Simple, Immediate Enforcement: Automate enforcement of access control policies for all users across all environments.
  • 19. DISCOVER DEFINE ENFORCE REPORT Privacera: Data Access Governance Features ○ Instant Visibility: Quickly generate reports to help teams get instant visibility on data assets. ○ Seamless Compliance: Generate custom reports to prove compliance to outside regulators. ○ Comprehensive View of Sensitive Data Risks: Monitor and audit data access behavior and get alerts when sensitive data is moved.
  • 20. CCPA: PI Handling & Processing Best Practices ● PI DATA INVENTORY : CCPA compliance starts with knowing what PI you have => Accurate, complete, and up-to-date sensitive data inventory is the foundation for compliance! ○ Review areas where any type of PI can reside (e.g. website, forms at retail locations, mail, email, employment applications, HR documents, call center recordings, agreements and contracts (vendor or service providers, landlord/tenant), marketing, CCTV, chatbot data etc.) ○ Identify and categorize or classify all PI with sources ○ Identify purposes for collecting PI data and uses ○ Identify retention period for each category of information to honor deletion requests ○ Identify who has been given access to the information, including 3rd parties via contracts and their use of the information ○ Identify location of PI in data stores, storage format, and the owner or person(s) responsible for maintaining it ● For Managing Consumer Rights ○ Use de-identified PI data where possible to minimize exfiltration and attribution risk ○ Provide methods for record level deletion and updates across data stores in cloud and data center ○ Use masking, encryption (with removal of keys) and redaction on PI data where complete deletion is not possible due to legal exceptions or other processing requirements ○ Centralize entitlement, access control, and consent management
  • 22. CCPA as an Opportunity! ● Automated data security and privacy controls help: ○ reduce risk of manual errors ○ reduce operational complexity ○ improve response times to critical privacy and security incidents ○ avoid costly penalties, positively impacting bottom line ● Integrating a robust privacy program into your business processes ○ Helps build deeper customer engagement and improves business outcomes ○ Improves employee, partner, and customer trust and enhances brand image and reputation ○ Improves data management practices to enable better and faster insights to generate top line benefits
  • 23. Questions? Submit your questions now or email follow-up questions to info@privacera.com and either Srikanth or Nauman will follow up with you. For more information about Privacera and Databricks, visit www.privacera.com/databricks.
  • 24. Thank You Powered by Apache RangerTM