Is GDPR the new Y2K?
2018 is a major year for all enterprises that deal with customer information in Europe. The European Union has set a date of May 25, 2018 for all businesses to be GDPR (General Data Protection Regulation) compliant. Let us examine two key clauses of GDPR and how it impacts the software infrastructure layers of your organization.
GDPR readiness requires that organizations know the attributes of the data they store and process in order to adequately protect it.
GDPR gives individuals the right to “be forgotten”, meaning organizations must erase personal data if it is no longer needed or the individual withdraws consent. This requires having the technology and processes to find data across the organization, delete it from systems, inform third party processors of the erasure request and demonstrate compliance.
GDPR requires certain personal identifiable data to be masked or encrypted when moving data from one system to another.
In most organizations today, the customer centric data first enters into an operational database system like Oracle, SAP, SQL Server etc. (also often called as the Source-Of-Truth) and then are copied into multiple different analytical systems like Teradata, HANA, Hadoop, AWS RedShift for large scale analytics. The glue between the systems are often some ETL products that move data from one platform to the other. In this complex and intricate web of multiple software systems duct-taped together by ETL pipelines, ensuring GDPR compliance seems to be a Herculean effort.
![](https://static.wixstatic.com/media/5bf24d_55f8cad987c04093abd98a48fcf6ab09~mv2.png/v1/fill/w_601,h_335,al_c,q_85,enc_avif,quality_auto/5bf24d_55f8cad987c04093abd98a48fcf6ab09~mv2.png)
Replicant can get businesses to achieve GDPR compliance by helping them tackle the three main core requirements of GDPR.
Data Discovery
GDPR readiness requires that organizations know the attributes of the data they store and process in order to adequately protect it. Using Replicant, you can get a global view of all your data and maintain a global map of user data. At any point in time, Replicant will be able to tell you if any system has any customer/user information stored in an insecure way. Note that every sensitive information inside Replicant is stored in a secure encrypted way.
Right to be forgotten
GDPR gives individuals the right to “be forgotten”, meaning organizations must erase personal data if it is no longer needed or the individual withdraws consent. Replicant is the only solution in the market that can help you achieve this. Replicant tracks changes made to an operational database system in real time and keep an audit record of whether those changes made in the operational system have been reflected in all the destination systems where the same data has been copied. In addition to the Audit Reporting capability, Replicant can be configured to forcibly delete the information in all systems to avoid expensive fines.
Data Privacy & Obfuscation
GDPR requires certain personal identifiable data to be masked or encrypted when moving data from one system to another. Replicant is the modern data movement tool that can move data in real-time from operational databases to analytical systems, which allows personal identifiable data to be masked or obfuscated when moved from one system to another.
Please contact us at sales@replicant.tech to know more about how Replicant can help you accelerate your path to GDPR compliance.