Protecting sensitive customer data has become a central challenge as privacy laws and initiatives expand globally. GDPR empowers Europeans to control personal information held by organizations, while APEC’s Cross-Border Privacy Rules aim to build consumer trust as data moves between APEC economies by requiring privacy policies aligned to the APEC Privacy Framework. In the US, high-profile breaches and scandals have accelerated state-level regulation: Vermont now requires data brokers to register, disclose what they collect, provide opt-out mechanisms, notify people of breaches, and enable legal recourse for misuse. California’s Consumer Privacy Act was enacted with an effective date in 2020, and rising momentum may eventually drive a more uniform federal law.
Additional sector regulations include the NY DFS Cybersecurity Regulation (23 NYCRR 500), requiring regulated New York financial institutions to assess cybersecurity risk and maintain audit trails, with data retention reduced to three years versus a prior five-year standard. These overlapping requirements create compliance pressure: organizations must locate where user data resides, categorize vulnerability and risk, and demonstrate compliance across multiple regimes. Traditional Identity Governance and Administration, originally shaped by SOX-driven separation of duties, covers only part of the broader data compliance problem.
BigID addresses this gap through its Data Intelligence Platform, which discovers, categorizes, maps, and inventories identity-related data at scale across 60+ out-of-the-box data-source connectors. Using ML/AI capabilities such as classification, entity resolution/correlation, metadata capture, and identifiability scoring, it builds an indexed inventory and dashboards (including country-based and world-map views), supports exports for tools like OneTrust, and enables policies and workflows for access intelligence and remediation. The platform emphasizes privacy by hashing rather than storing personal data, offers data-flow visualization and access request reporting for audits, and integrates via microservices APIs with partners like AWS, Microsoft, ServiceNow, and others. Strengths include strong intelligence, connectors, and visualization; challenges include a smaller partner ecosystem, somewhat coarse-grained policies, and no current blockchain data-source support.
See All Locations
See All Locations