Use Case 1: Sensitive Data Discovery and Protection in Cloud Storage

Identify and safeguard sensitive data across SharePoint, Google Drive, OneDrive, Box, Dropbox, and more with automated scanning and flexible remediation options like labeling, alerting, viewing external file shares, revoking access, etc.

Use Case 1: Sensitive Data Discovery and Protection in Cloud Storage

The Problem

Cloud storage platforms like SharePoint, Google Drive, and OneDrive enable seamless collaboration, but they often house sensitive data such as PII, PHI, and financial information. Without proper oversight, files can be publicly shared or left accessible to users who shouldn't have access, increasing the risk of data breaches and compliance violations.

Key challenges include:

  • Lack of visibility into sensitive data stored in cloud storage.
  • Identifying who has access to sensitive files.
  • Difficulty enforcing remediation actions like revoking access, redacting content, or deleting files at scale.

Strac’s Solution

Strac provides an agentless, API-driven platform to automatically scan and classify sensitive data stored in cloud storage apps. Using advanced machine learning and OCR models, Strac identifies sensitive content in real-time and offers a suite of remediation actions.

Key Features:

    Comprehensive Scanning:
  • Identify sensitive data such as PII, PHI, and PCI within documents, spreadsheets, and other file types.
  • Leverage Strac’s ML and OCR models to detect sensitive information, even in unstructured content or images.
  1. Access Auditing:
    • Determine who has access to sensitive files and evaluate if the access is appropriate.
    • Automatically flag files that are publicly shared or have overly permissive settings.
  2. Flexible Remediation Options:
    • Access Remediation: Revoke permissions for unauthorized users.
    • Redaction: Automatically redact sensitive information in files.
    • Labeling: Apply classification labels for better organization and visibility.
    • Blocking and Deletion: Revoke access or delete files with critical exposure risks.
  3. Bulk Remediation:
    • Perform remediation actions across multiple files at once, streamlining admin workflows.
  4. Detailed Reporting:
    • Generate compliance-ready reports highlighting sensitive data discovered, remediated, and protected.

Customer Case Study

A financial services company with over 2,000 employees in the USA leverages Strac to identify and protect sensitive data stored in SharePoint, Google Drive, and OneDrive. They faced challenges in monitoring and remediating sensitive files shared internally and externally, risking compliance with PCI and SOC 2 regulations.

With Strac, they:

  • Scanned over 50,000 files monthly for sensitive data such as customer account details and PII.
  • Remediated publicly shared files by automatically revoking access or redacting sensitive content.
  • Used bulk remediation to efficiently manage sensitive files across departments.
  • Achieved audit readiness for SOC 2 compliance with comprehensive reporting.

Quote from the InfoSec Director:

"Strac transformed how we approach sensitive data protection in cloud storage. The visibility and automation it provides are game-changers for compliance and risk reduction. More notably features like accurate detection, remediation like labeling, showing who has access to what files and finally able to bulk remediate, i.e. remove access" - Director, Information Security