Data lineage explains where sensitive data travels
Knowing where a piece of data came from and where it has been copied to is what makes every other data control enforceable.
Without lineage, deleting on request, restricting a purpose or assessing a breach are all guesswork, because nobody can enumerate the copies. It is expensive to establish and it is the thing that turns data governance from a set of intentions into something you can actually act on.
More on Data security
- Classification should change handlingThe label throws the points
- Tokenisation changes what systems need to holdHand over the ticket, not the coat
- Data residency is not automatic securityThe line goes round the building
- Retention is a security controlWhat you no longer hold
- Data access logs need object contextRead a record. Which one?
- DLP can match data patterns but cannot reliably infer the business purpose of a transferIt reads the shape, not the reason
