A system for identification of potentially sensitive data in the cloud

dc.contributorAalto-yliopistofi
dc.contributorAalto Universityen
dc.contributor.advisorBurke, Joshua
dc.contributor.authorNemeš, Nikola
dc.contributor.schoolPerustieteiden korkeakoulufi
dc.contributor.supervisorAppuswamy, Raja
dc.contributor.supervisorDi Francesco, Mario
dc.date.accessioned2022-08-28T17:21:39Z
dc.date.available2022-08-28T17:21:39Z
dc.date.issued2022-08-22
dc.description.abstractDue to the increasing amount of digital services that handle sensitive data such as personal information, health information or financial information, data breaches are becoming more common and more costly. The cost of an average data breach in 2021 was USD 4.24 million. DLP solutions present a new and developing security paradigm that focuses on preventing data breaches. Unlike traditional security mechanisms, which analyze metadata and access rights, DLP solutions focus on analyzing content. Depending on the type of data is being analyzed, a wide range of data analysis methods can be used, such as regular expressions, fingerprinting methods or statistical methods. While many DLP solutions offer novel approaches in the dimension of data analysis methods, they do not focus on the usability aspect of defining data protection policies. In this thesis we explore the possibility of a solution that supports data protection policy definition using an interpreted DSL. Our solution aims to provide users with the ability to define data protection policies in an easily readable format that is based on the core concepts of the DLP paradigm. However, the interpretation of the DSL incurs certain performance overhead compared to native execution. Due to this, we make suggestions as to how the solution can be further improved upon, allowing it to reach minimal to no performance overhead, while also providing users with a new approach for defining data protection policies.en
dc.format.extent48
dc.format.mimetypeapplication/pdfen
dc.identifier.urihttps://aaltodoc.aalto.fi/handle/123456789/116411
dc.identifier.urnURN:NBN:fi:aalto-202208285225
dc.language.isoenen
dc.programmeMaster's Programme in Security and Cloud Computing (SECCLO)fi
dc.programme.majorSecurity and Cloud Computing (SECCLO)fi
dc.programme.mcodeSCI3113fi
dc.subject.keyworddata leakage preventionen
dc.subject.keyworddomain specific languagesen
dc.subject.keywordlog analysisen
dc.subject.keywordcloud securityen
dc.titleA system for identification of potentially sensitive data in the clouden
dc.typeG2 Pro gradu, diplomityöfi
dc.type.ontasotMaster's thesisen
dc.type.ontasotDiplomityöfi
local.aalto.electroniconlyyes
local.aalto.openaccessyes

Files

Original bundle

Now showing 1 - 1 of 1
Loading...
Thumbnail Image
Name:
master_Nemeš_Nikola_2022.pdf
Size:
2.29 MB
Format:
Adobe Portable Document Format