Skip to main content

DLP discovery, scan and creation of redacted copy

  • July 15, 2025
  • 2 replies
  • 16 views

crazyrevol
Forum|alt.badge.img

Hi experts, 

Am new to DLP. trying out the possibilities of usage in our Org.

Use-case:
Our primary intended use-case is to be able to de-identify(by masking) all the documents in our cloud storage buckets of a project for PII, PCI and other sensitive information covered by the DLP infotypes. If our application service account needs to access the objects in the bucket, it should be able to read clear values in the JSON files, csv files etc. But people accessing the buckets through AD groups, should see masked values.

My question: 
What is a good(simple) solution architecture to enable this set-up/use-case?

2 replies

Guiimeris
Forum|alt.badge.img+1
  • New Member
  • July 16, 2025

What a necessity of people acess this bucket?


crazyrevol
Forum|alt.badge.img
  • Author
  • New Member
  • October 6, 2025

These data correction team and analytics team sometimes go in there to check the validity of the docs. They are authorized to do that. we are also planning let LLM applications utilize these docs but with masked values.