What you can do with the Self-Service Portal

Table: What you can do with the Self-Service Portal describes the tasks that custodians and data owners can accomplish using the Self-Service Portal.

Table: What you can do with the Self-Service Portal

Task

Description

Entitlement Review

Review the user permissions on the resources that the custodians own, attest to the permissions, or suggest changes to the permissions.

Remediate Data Loss Prevention (DLP) incidents

Data Insight uses DLP FlexResponse plug-ins to fetch incidents on sensitive paths on the NAS devices that Data Insight monitors.

Security administrators create workflows to distribute incidents to custodians for the purpose of remediation. The custodians or data owners receive email alerts to remediate the resources that violate configured DLP policies. The custodians can then log in to the portal, view sensitive paths that are assigned to them and the policies that these files violate, and take configured actions on the incidents assigned to them

Once the custodians submit the request for remediation, the DLP engine executes the request, and sends a response back to the Data Insight Management Console.

Note:

Data Insight does not let you create an incident remediation workflow for sensitive paths that are imported into Data Insight using a CSV file because the workflow requires information about the DLP incident ID and severity for a path that violates a policy.

Confirm ownership of resources

Custodians are assigned the data resources that they own for the purpose of remediation from the Data Insight console. The Ownership Confirmation workflow enables custodians to verify that they indeed own the resources. Custodians can view the list of resources they own, and confirm or decline the ownership of these resources from the Self-Service Portal.

Classify files for retention based on the policies that they violate

The Records Classification workflow enables custodians to mark as files that violate certain policies as a record. The policies may be defined in DLP or can be imported in to Data Insight using a .csv file. The files that are marked as Record are automatically processed for archiving, if automatic action is enabled when creating the workflow. The number of years for which a file is archived depends on the retention category applied to the file.

See Using the Self-Service Portal to classify sensitive data.

More Information

Using the Self-Service Portal to review user entitlements

Using the Self-Service Portal to manage Data Loss Prevention (DLP) incidents

Using the Self-Service Portal to confirm ownership of resources