How does Siberson Veriket Data Discovery itself protect the sensitive data it processes?
Siberson Veriket Data Discovery is purpose-built to handle sensitive data without becoming the next leak vector. Built-in safeguards include:
-
Encryption at rest — AES-256 for the inventory store, customer-managed keys (CMK) supported on both On-Prem and SaaS.
-
Encryption in transit — TLS 1.2/1.3 between agents, console, and connectors; mutual TLS available for high-assurance deployments.
-
Content snippet redaction — content snippets shown in findings are configurable: full / partial / hashed / suppressed by data type or analyst role.
-
Role-based access control — granular scopes (per-business-unit, per-data-type, per-region) with built-in separation of duties.
-
Tamper-evident audit trail — every administrative action and every finding access is logged to a write-once store.
-
Data sovereignty — On-Prem keeps everything in the customer's network; SaaS pins data to a customer-selected region with no cross-region replication.
Last updated: 2026-04-29