logo

NJP

Optimize Speed and Accuracy for ServiceNow Platform Security and Compliance with BigID

Import · Jun 06, 2023 · video

all right good morning um hope everyone is having a great start to their week um I'd like to welcome you as other folks roll in uh to our webinar uh with big ID this morning um my name is Aaron Bennett I'm a senior manager here in our corporate development Partnerships at servicenow and I'm very pleased to welcome the big ID team we have Jim Brown director of global partner management at bigid and Tim Tim Bain who's director of solutions Consulting and they're going to go over some key topics very relevant to the servicenow platform in you know data protection and classification and so um I look forward to just turning this over to them uh to get you started on you know sort of the information um Journey with big ID and how big ID works with servicenow so uh Jim Tim let me turn it over to you to get started hey thanks Aaron and uh thanks everyone for kicking off your week with big ID in service now um as Aaron said my name is Jim Brown and I have the pleasure of expanding the Strategic partnership between big ID and servicenow um over the last few decades I've been involved in a lot of Partnerships but I don't know that I've ever been as excited about the potential we have to deliver Superior outcomes together um we share a common Mission and that common mission is really around providing Enterprise wide platforms eliminating Point products for all and with big ID automating data Discovery providing enrichment necessary to optimize the workflows that servicenow drives around vulnerability security incident response irm Etc and with me today is Tim Bain who is our director of solutions Consulting and my partner and uh Tim has had roles in data management and data stewardship across several large Enterprises before he jumped onto the manufacturing side helping customers deploy best practices with Leading Edge Technologies like ours so again thanks for joining us today um just in brief what we'll cover is um the business Challenge and that just a quick intro into big ID for those of you that don't know us as well as an intro into our partnership with servicenow but then we'll really get into the meat of the topic today which is around our data classification and how we enable automation for the now platform um so business challenge really it's it's around at the macro level around Cloud security uh which is a con excuse me a critical concern as companies accelerate their digital Transformations um organizations are looking to the cloud to reduce operational costs they're looking to enhance user experience make it easier to collaborate with partners and data's at the center of making this happen but that data is distributed more than ever before and changing more often than ever before so a sound data protection strategy ensures that these digital assets are protected from cyber attacks and Insider threats data protection is also critical to ensure organizations meet their compliance mandates especially if you're in a regulated industry but beyond that data privacy concerns remain Paramount government standards and regulations like gdpr and CCPA or critical and must be met when it comes to Gathering storing and accessing sensitive data lack of adherence ends up driving um um excuse me damage to corporate reputations it drives potentially fines and loss of Revenue so it's critical that data privacy concerns are met in addition to data protection ultimately the question is how do I manage the security and privacy in my data while leveraging these valuable Assets in order to drive corporate agility the answer really is by understanding your data assets and then applying applying appropriate processes based on the data's context we'll dive into this in a little more detail in a bit but first let me just do the basics of introducing you to a big ID in a little more detail um if you don't know us bigid provides a modern data security platform that's designed to help organizations manage protect and get more value from their data and we've proven this in hundreds of customers to date we drive a data up approach so when it comes to security we're we start from the data level up to help organizations start there with what what it is they have what it represents and the risk associated with that data more well-funded more well recognized including uh recently winning the most disruptive cyber security software company in the 2023 dis disruptors Awards and we believe that one of the primary differentiators for us are open and diverse ecosystem of Partnerships within the leaders like service now so we know that we can't do it all alone and we want to leverage leaders in the spaces that we play so what we provide a broad variety of services around security posture management and excuse me um data security posture management and we even recently were recognized by CB insights as a leader in dspm we believe that all effective security privacy and government starts with a foundation of understanding your data so all the higher level functions are great but it all starts with that Foundation of understanding your data connecting to your data knowing your data and then taking action with your data and then ultimately automating those actions big ID provides one data Discovery and classification platform across your entire data enter Enterprise so whether it's on-prem structured unstructured data across multiple clouds or SAS environments big ID provides that one data Discovery and classification platform across that environment our platform goes well beyond cursory scans as well so as you move up this stack we leverage NLP and advanced ml techniques to not only classify the data providing correlation and cluster analysis this ensures that you have the full context of your data and its relationships we provide a shared and consistent understanding of the data you have so that different groups can make better decisions with one single source of Truth and with that context you can take appropriate actions and those actions whether it be finding and remediating risk managing data retention triggering workflows to mask or restrict access to sensitive data we enable that because we give you that context around your data and those actions often are taken within the context of a platform like servicenow this is where our partnership comes in so let me touch on that real quick and then we'll move into the detail so as a partner of big ID and we've had a variety of Integrations built together and we're in constant dialogue around the next areas to invest to provide Superior data security posture management that being said service now is more than a partner to us they're also an outspoken customer of big ID and we leverage this to develop new Integrations and use cases based on their internal Ingenuity and the ideas they have around our platform so we start there but then uh we develop the platform from there and our Integrations with them and we've grown to the point where servicenow had seen the Strategic opportunity that big ID presents and they've become an investor in big ID so needless to say our relationships a little deeper than than just just uh cursory integration and partnership we cover the Spectrum with them so with that as a backdrop let me turn it over to Tim to really get to the meat of why you guys are here around um securing and managing the the platform data thanks Jim so we've got a couple slides and then we'll do a quick demo on kind of about an entire life cycle and the interaction that we have with uh servicenow but where we interact with servicenow is really three-fold the first is the ability to connect to servicenow and do our data discovery on the data within servicenow that exists out there so this is where we're looking for sensitive or crown jewel data across the Enterprise and specifically in this case servicenow once we've gone through that data Discovery then we can interact and share that data Discovery back with servicenow in really two places the first one which we'll be demoing today is all about data classification within servicenow itself so that you can control access you can understand what sort of information is within the servicenow systems as well as well as mask that data as this means as necessary the next way is through what we call our Big Data app exchange which allows you to exchange the metadata or that data Discovery with the configuration management database so we can help give you context or insight as to that database server or that file server asset that you have within your cmdb as to really the sensitivity that exists within that database or within that file share so you get more than just an understanding of where it exists you understand what's on that system in a depth in in depth next slide please Jim so what this does is it creates an integration or interaction that really is building off of each other so that our data Discovery can help servicenow understand its data and classify that it can come back to Big ID then and help us understand and as it expands and as it moves back and forth through that interaction it allows us to secure that data moving forward it allows us to understand the context moving forward and being able to really create that two-way integration or that partnership between the two systems that exists out there making them better and now now I will take over sharing here and um share my application and give you context around the big idea and a demo of the the system that exists out there today so what I've done is I've shared big ID and this is our big ID application this is what you see as soon as you log into the system and you get an understanding of really the number of data systems that you're connected to in this case we have 21 systems or 13 that have sensitive data as well as what sort of information those attributes that we've discovered across the entire Enterprise and I'm going to start a big ID and then Circle back to service now but I'm going to start if you think about that almost layer cake looking Slide the gym head up really that base layer is the ability to connect to a variety of different data sources across the Enterprise now the value in this is you can use the same business rules the same Discovery techniques across all these different data sources whether it's on-prem whether it's structured whether it's unstructured whether it's big data whether it's Mainframe applications SAS applications including servicenow so you can see here we have two different connectors to servicenow where we can connect to the servicenow systems and do our deep data Discovery and what that data Discovery looks like is we go through a process of classification where we're looking for specific things that exist out there and in this case we're leveraging things like pattern matching and machine learning to find sensitive information or proprietary information like account numbers credit card numbers Social Security numbers emails and we help discover that information across the entire Enterprise and what that does is that builds this metadata catalog or registry of all of the information across those different Source systems now I filtered on our servicenow instance here and a handful of tables here that we've done some of that deep data Discovery and if I go into a table like the sys users table you can see information about that particular table what information we've discovered so those attributes that we've discovered in this case we found things like passwords we found things like email addresses lineage Goods so what sort of sensitive information have we discovered as well as we have a all the systems that are out there whether they're sensitive or not we can give you insight into what sort of information exists but I want to go back to this details Tab and highlight this tag at the top because this tag becomes very important as we talk about that data classification and that interaction with servicenow out there so these tags are custom tags that you can create based on those attributes that we've discovered now we've created a class of the sensitivity classifications called now classes you can see it's called now classes and and this is for our servicenow system that exists out there and what we've done is we've created three different levels of sensitivity within this these systems we've got limited access highly sensitive and public and I can just kind of bring this open so you can see the business role that we've created to be able to say hey we want limited access or we want to Mass this information in this case we're looking for passwords any place that we find passwords we're going to say that's a limited access system because that's the sensitive information that we've discovered this business rule can be customized to match your business rules in your cases and additional levels and additional classifications can be created with that so I want you to remember those attributes as well as as the sensitivity classifications as we switch over to servicenow now within the servicenow framework we have applications that can be added to your servicenow instance that will do this interaction or this integration between big ID that exists out here in this case we have our data classification application that you can see here recycling where we've set up these configurations as to where's my sensitivity classification where's my data sources where's the big ID system and then the login information to get there so once we've established that instance we can go through a sync scenario now I ran this earlier and I'll show you the results in a minute but this is where we start to talk about that two-way integration this is where we're pushing that sensitivity information or those classes back to Big ID we're creating that business rule and then we're taking the results of those business rules and that deep data Discovery and we're sending that back to servicenow through the the data classification so if I drill into the data classification Excuse me while you're here we had a quick question in the chat seems uh relevant to this section of the talk um so Akira asks how long does it take from scanning to the end of the procedure into servicenow vault once we've established those connections and we're able to interact so the scanning is the process that takes the longest and that can depend on how big your servicenow system is as to how long that might take but the actual integration between the two and sending information back to the back and forth is very quick uh we're talking a minute or less to be able to process that and you can schedule that and be able to process it and off hours but again it's very very quick because we're doing that metadata Exchange now after that metadata exchange which leads well into to this graphic that you see in front of you you can see where we've found all these different tables that exist out here the number of columns that exist and then where are all of the limited access the public access and the sensitivity if I switch back to Big ID you can see those business rules that exist there that's within the system itself and then I could drill into the system as well to understand you know these are all the columns that we have limited access that exists on that to be able to restrict access whether we're leveraging something like the vaults whether we're leveraging other systems that exist out there this allows us to create that integration to push that information there and give you insights associated with this now our cmdb which we'll we'll highlight in a different demo in the future runs in a very similar fashion and that we're able to share a two-way share that information moving forward I just wanted to highlight that that it is more than just the data classification within servicenow we also allow you to do this data classification including these classification roles across the entire Enterprise that exists out there but this allows you to Now understand you know what I have these data classes I've got these limited access I can bring my fault system on top of that so if I'm going to switch over to really kind of a screenshot here so that you can see what this this looks like from a masking type of scenario or within service now I have now those business rules around the data classification and now I can create those masking or Access Control scenarios around that different information you'll see here we've got the original data that is unmasked credit card numbers but now when you come back over we're masking everything really what that last four digits to be able to say we have this credit card in your system but I don't have the entire system that it exists out there as well as you could access or control who has access to these tables from the back end understanding that this is sensitive data that exists out there so this allows you to control and protect the servicenow system it's amazing how many times we find sensitive data within notes columns or comments within incidences that you need to be able to understand that that exists out there to be able to clean it to be able to secure it to not create a scenario or risky scenario where a breach might happen or the wrong data gets shared out and what big ID is very good at is being able to find that data so that we can control it we have the notion of really that data up approach find it that data so then you can control and access that data that exists out there okay so bringing that all in into summary and really looking at the big ID plus service now really creates this two plus two equals 10 scenario in that it'll allows your Enterprise to understand your data assets across the entire Enterprise understand it in depth leveraging the same business rules in a secure reliable scalable solution that can go across the entire Enterprise can give you insight into the context of your data into the deep details of your data and allow you to secure that data to understand that data across the Enterprise whether it's security use cases whether it's privacy use cases and allows you to deeply understand that data going forward foreign so to kind of finally wrap this up and really open it up for questions that exists out there um we'll leave up your our contact information where you can get more information about big ID and I see one more question coming in that um if you were to concl the question is if you were if we clone the environment to non-prod what happened with all the mass data so because we're not masking the data at rest we're leveraging servicenows masking capabilities um it would probably come over I'm not an expert in that that cloning process but big ID is not changing the data at all within servicenow what we're doing is we're interacting with servicenows capabilities to protect that data natively rather than trying to go in and create a new scenario where we'll mask or tokenize that data that exists out there all right we're at a pause Point here I want to make sure we uh we um gets anyone who's got a commitment at the bottom of the hour so I'm going to launch a quick poll and anyone who's interested in seeing a deeper dive into this integration um please uh please respond with a um contact me afterwards and uh we'll make sure that we get your information over to the big ID team so that you can see the you know the different offerings that big ID has for servicenow yeah I see a couple more questions in here in here Aaron that I'll go to answer while people are doing the poll um one of the questions is banking organizations are shy in sharing their data outside their environment what level of data security does servicenow plus big ID have is will will be visible outside the banking organizations so big idea is can be deployed in multiple Fashions one is a SAS type of model another one is on-prem to be able to have everything within that banking organizations and environment as well as the only thing we store within bigid is that is pointers or the metadata to where that exists so that kind of takes care of us storing any of that sensitive data that exists out there in fact banking institutions are one of our largest clients since that exists out there but this allows us to have multiple different ways to be able to comply with the banking or any other organization's security requirements as well as the their use cases that exist the next one is is how does a big ID identify passwords in the data so there's multiple ways that we can do that one is pattern matching where we look for things like password we look for other things like that we also have some machine learning algorithms that do a variety of data searches that look for things like keys they look for patterns around what a key or a secret might look like to identify passwords and that allows us to identify a lot of those clear text passwords that may exist out there by leveraging the data around that particular word or particular thing as well as leveraging the contents of that particular work all right let's check the chat real quick I think there is a couple of questions did you um already get you a curious question there Tim if we clone an environment to non-prod what will happen with the mass data yeah I got to that one um and then John asked if um if this or any other Solutions are available through the servicenow store uh yes yeah so this is exists on the servicenow store both our data classification and our metadata exchange with the cmdb all right we'll give people another minute to um pop any other questions into either the chat or in the Q a all right well any closing thoughts uh Jim or Tim now for my side you know appreciate the time this morning and more than anything we appreciate the partnership with servicenow as I said on the front end I think there's amazing potential together and I'm happy to be part of it okay Tim you want to go ahead and uh take that one live too so we can get it in the recording yeah absolutely so so we do have one more question that asked about big idea anonymizing the sensitive data uh that is sent back to servicenow um we don't anonymize the data we leverage servicenow to do that anonymization we can identify where that needs to happen and then servicenour leverages internal functionalities to do that anonymization we do have other partners that will anonymize that in at rest if that exists or if that is necessary and that can um so there's different ways that you could handle them excellent good stuff all right it looks like uh yeah it looks like uh everyone got what they needed out of the presentation today um for follow-ups please um note the emails on screen this this presentation will also be posted to the blog post on community and the presentation will be made available by YouTube in case um you know you want to share it with any colleagues or if you want to try out the apps in the App Store um you know if you didn't respond to the survey today and you want some assistance with that from the big ID team uh Partners at big eddie.com or Jim's email please reach out let us know um you know if you if you'd like to you know take a you know further step and see this in your environment so we really appreciate everyone's time today um I hope you have a great week ahead Tim Jim any other closing thoughts no thank you very much thanks everybody great great way to start the week guys uh thanks everyone have a great week take care thanks

View original source

https://www.youtube.com/watch?v=O5BBhsBBKz4