Building a secure data vault for PII protection
B2B2C mass consumer services
Telco & Adtech platform
Java, Node.js, C++, Python
Linux + OpenShift
Regional privacy regulations
Access control for different types of consumers
Support search queries on sensitive data without revealing it
Expose as an SQL database
Design and build a security layer around data
Different tools for different workloads
Match security policy for real-world security concerns
To enable secure data processing:
To enable secure BI:
To enable replication and backups:
To enable defense-in-depth:
Products and services involved
Acra, a database security suite
Acra is a set of data security modules: encryption, masking, tokenization, query filtering, logging. Due to its modular nature, Acra fits complicated architectures and use cases without introducing a significant performance penalty.Read more
Security engineering & architecture
Cossack Labs security engineering services help development teams to spend less time on irrelevant stuff, focusing on pragmatic security, actual infrastructure and product.Read more
The Customer was planning to implement a sophisticated set of data security controls themselves. Instead, delivering Acra-based solution:
- Took 3 months to design, build and deploy (instead of 12 months budgeted for a homebrewed solution).
- Developer budget was 220 hours instead of 3800 budgeted for a homebrewed solution.
- Provided a security team with convenient means to protect sensitive fields and control database queries without making developers’ life harder.
Results and outcomes
Integrating data protection into massive consumer applications
We help you focus on serving your customers better, while relieving your team from security engineering pains and making your users confident that their data is safe with you.
Other customer stories
Quick migration to field level encryption of governmental data
Integrating encryption and data masking for sensitive data stored in MySQL cluster. A combination of transparent SQL encryption via AcraServer and encryption API via AcraTranslator makes Acra fit for complex solutions.