An enterprise security team is defining fundamental data governance and privacy requirements for a new corporate application. Match each data governance concept on the left with its corresponding operational description on the right.
- Data SovereigntySubjecting stored data to the privacy laws and regulatory jurisdiction of the geographic location where it resides.
- Data MinimizationCollecting and processing only the personal information strictly necessary to fulfill a specific, authorized purpose.
- Data AnonymizationIrreversibly removing all personally identifiable attributes so that the individual data subject cannot be re-identified.
- Data Retention PolicyEstablishing operational timelines for storing records to comply with legal mandates and securely destroying them when expired.
Cevap
Data Sovereignty pairs with subjecting data to local laws where stored; Data Minimization pairs with collecting only strictly necessary data; Data Anonymization pairs with irreversibly removing identifiable attributes; Data Retention Policy pairs with establishing storage timelines and disposal schedules.
Each concept directly aligns with its fundamental security requirement: Data Sovereignty relates to legal jurisdiction based on physical storage location; Data Minimization enforces collecting only what is strictly necessary; Data Anonymization irreversibly removes PII; and Data Retention Policies specify holding periods and secure destruction.
Adım Adım Çözüm
Anahtar Kavram
Data Governance, Classification, and Privacy Controls
Daha Fazla Pratik
Review how data pseudonymization differs from data anonymization under GDPR and modern privacy standards.
Tahmini Süre:1m 0s