Matomo

Building a secure data vault for PII protection - Cossack Labs

🇺🇦 We stand with Ukraine, and we stand for Ukraine. We offer free assessment and mitigation services to improve Ukrainian companies security resilience.

Read more
Case Mass consumer service Telco & Adtech

Building a secure data vault for PII protection

Industry

  • B2B2C mass consumer services

  • Telco & Adtech platform

Technology stack

  • PostgreSQL

  • Java, Node.js, C++, Python

  • Linux + OpenShift

Regulations

  • GDPR

  • Regional privacy regulations

Challenges

Technology requirements

Access control for different types of consumers

Support search queries on sensitive data without revealing it

Expose as an SQL database

Our approach

Design and build a security layer around data

Different tools for different workloads

Match security policy for real-world security concerns

Solution

Acra database security suite used for building secure personal data vault.

Products and services involved

Acra, <span class="font-normal">a database security suite</span>

Acra, a database security suite

Acra is a set of data security modules: encryption, masking, tokenization, query filtering, logging. Due to its modular nature, Acra fits complicated architectures and use cases without introducing a significant performance penalty.

Read more
Security engineering & architecture

Security engineering & architecture

Cossack Labs security engineering services help development teams to spend less time on irrelevant stuff, focusing on pragmatic security, actual infrastructure and product.

Read more

Benefits

The Customer was planning to implement a sophisticated set of data security controls themselves. Instead, delivering Acra-based solution:

  • Took 3 months to design, build and deploy (instead of 12 months budgeted for a homebrewed solution).
  • Developer budget was 220 hours instead of 3800 budgeted for a homebrewed solution.
  • Provided a security team with convenient means to protect sensitive fields and control database queries without making developers’ life harder.

Results and outcomes

Integrating data protection into massive consumer applications

We help you focus on serving your customers better, while relieving your team from security engineering pains and making your users confident that their data is safe with you.

Contact us

Get whitepaper