Data Security, Software Security, Cloud Security

Privacera Launches AI Governance Solution

Privacera Launches AI Governance Solution

Privacera, the cloud data governance and security leader founded by the creators of Apache Ranger, today announced the private preview of Privacera AI Governance (PAIG - pronounced \pa(i)-ge\). From the continuous scanning and classification of training data to the securing and auditing of AI models, model outputs, and user requests, PAIG empowers organizations to efficiently manage the entire AI data security lifecycle.

Generative AI and large language models (LLMs) have the potential to revolutionize enterprise operations and customer engagements, but the privacy and compliance risks associated with the presence of personal, private, and confidential information in training data and subsequent models have enterprises scrambling to ensure proper security and access controls are in place.

With native enforcement of security and privacy controls across diverse data estates, and architectures, and built on open standards, Privacera's latest innovation helps companies reduce sensitive data exposure, increase privacy and ethics, and address regulatory and legal compliance issues with AI.

PAIG fosters powerful AI data security governance and federated stewardship between IT departments and business teams. The solution brings together comprehensive data security governance for relational data, non-structured data as well as AI model training and access. PAIG combats the unpredictability of generative AI by helping companies avoid the potential misuse of data, address challenges in compliance policy enforcement, and reduce complexities that arise when runtime contexts are added during inference.

With PAIG, organizations can tap into Privacera's proven history of innovation in building massively scalable data and access security on AI and diverse data estates. PAIG is powered by the company's Unified Data Security Platform, which has set the standard for data in the big data ecosystem and the modern cloud data estate. This allows for a common security administration and monitoring platform across all data, along with consistent policies, roles, and controls across all AI models.

The combined solution provides compliance support for CCPA, GDPR, and HIPAA during the training, deployment, and utilization of AI models.

"The potential of generative AI and large language models (LLMs) to transform enterprise operations is immense, but their inherent unpredictability can unknowingly reveal intellectual property, Personally Identifiable Information (PII) and sensitive data," said Privacera co-founder and CEO Balaji Ganesan. "By providing organizations with an intelligent and adaptive AI data governance solution, Privacera continues its mission to empower enterprises to utilize their data as a strategic asset."

PAIG core capabilities include:

  • High-performance AI-driven data governance and security for AI use cases. Building on the existing strengths of Privacera plus combining purpose-built AI and large language models to drive dynamic security, privacy, and access governance.
  • Real-time discovery, classification, and tagging: Training data for generative AI models, as well as embeddings are continuously scanned for sensitive data attributes that then get tagged. More than 160 classifications and rules are pre-built in Privacera and organizations can expand on these based on their own requirements.
  • Data access controls, masking, and encryption: Based on the discovery and tagging above, data-level controls are established to redact, de-identify, mask, encrypt, or even remove sensitive data and data that could introduce vulnerability in the pre-training data pipeline.
  • Allow/deny prompts or responses based on governance policies. Real-time scanning of user inputs and queries for sensitive data elements and applying appropriate privacy controls based on user identity and data access permissions.
  • Redact/de-identify sensitive data in prompts/responses. Real-time scanning for sensitive data elements in model responses and applying appropriate controls based on user's identity and data access permissions.
  • AI-powered auditing and monitoring: Continuous monitoring and collection of model usage and user behaviors into large language models to power analytics into usage, security, and risk patterns.

PAIG is currently in Private Preview. Interested customers can contact your account representative to schedule a demo or apply to get access to the preview. Visit Privacera's website for more information about PAIG.

Privacera is Exhibiting at Snowflake Summit 2023 and Data + AI Summit 2023 - Join us!

  • Snowflake Summit 2023: Privacera executives and team members will be onsite at the company's booth #1031-C to provide in-depth information and answer questions on how Privacera extends data access control, governance, and compliance beyond Snowflake to ensure consistent data access policies across the entire data estate. Booth visitors will also have the opportunity to learn more about PAIG and GDS onsite.
  • Data + AI Summit: Click here to schedule a 30-minute meeting at our booth #818 to understand how Privacera fits within your enterprise data stack and can help you realize your organization's vision. We are also providing 10-minute custom demos to show how Privacera can migrate new workloads into the lakehouse, secure data sharing, and accelerate data democratization. Booth visitors will also have the opportunity to learn more about PAIG and GDS onsite.

About Privacera

Founded in 2016 by the creators of Apache Ranger–which advanced data access and security for the big data revolution, Privacera's SaaS-based data security and access governance platform enables data and security teams to simplify data access, security, and privacy for data applications and analytical workloads. The Privacera platform supports compliance with regulations such as GDPR, CCPA, LGPD, and HIPAA. Privacera provides a unified view and control for securing sensitive data across multiple cloud services such as AWS, Azure, Databricks, GCP, Snowflake, and Starburst. The Privacera platform is utilized by Fortune 500 customers across finance, insurance, life sciences, retail, media, and consumer industries, as well as government agencies to automate sensitive data discovery, mask sensitive data, and manage high-fidelity policies at petabyte scale on-premises and in the cloud.

Spotlight

Other News
Data Security

GuidePoint Security Announces Portfolio of Data Security Governance Services

GuidePoint Security | January 30, 2024

GuidePoint Security, a cybersecurity solutions leader enabling organizations to make smarter decisions and minimize risk, today announced the availability of its Data Security Governance services, which are designed to help customers address the challenges of unstructured data and data sprawl through a proven process and program to meet their unique needs. GuidePoint’s Data Security Governance services consist of policies, standards, and processes leveraging the newest technologies to meet organizations’ data governance goals in both on-prem and cloud environments. Once the right strategy is determined with the customer, GuidePoint Security consultants will review program requirements, assess current policies and controls, perform gap analysis, design and develop/enhance the program, recommend and implement supporting technologies, and create operational processes and metrics. “Whether an organization is just beginning to build their data security governance program or needs help assessing and improving an existing program, our team and service capabilities are built to meet them at their current maturity level,” said Scott Griswold, Practice Director - Security Governance Services, GuidePoint Security. “We work side by side with the customer to conduct the necessary data discovery in their environment and provide tailored recommendations for solutions and processes to ultimately build/improve upon the data security governance program.” GuidePoint’s Data Security Governance Services include: Sensitive Data Cataloging: For organizations just getting started in the process of protecting their sensitive data, GuidePoint offers Data Identification workshops to identify sensitive data types in the environment, including trade secrets, intellectual property, and sensitive business communications. Data Security Governance Program Assessment: For organizations with existing Data Security Governance or Data Protection programs, GuidePoint Security experts will assess the program to identify policy non-compliance, gaps in data protection requirements—whether legal, regulatory, contractual, or business—and program maturity levels. Data Security Governance Program Strategy Development: The GuidePoint team will work with an organization's key stakeholders to design a program strategy aligned with relevant requirements. The outputs of this effort include delivering ongoing sensitive data discovery, automated classification and labeling, the application of required sensitive data protections, restrictions on where sensitive data can be stored and sent, and data retention policy enforcement. Merger and Acquisition Data Identification: This offering provides the ability to identify sensitive data within an M&A target or recent acquisition (including locations, amounts, and access rights) and then perform penetration testing on the storage repositories where that sensitive data exists to determine the risk of data compromise. About GuidePoint Security GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions that minimize risk. Our experts act as your trusted advisor to understand your business and challenges, helping you through an evaluation of your cybersecurity posture and ecosystem to expose risks, optimize resources and implement best-fit solutions. GuidePoint’s unmatched expertise has enabled a third of Fortune 500 companies and more than half of the U.S. government cabinet-level agencies to improve their security posture and reduce risk. Learn more at www.guidepointsecurity.com.

Read More