Siberson
Partnership Contact Request a Demo

How does Siberson Veriket Data Discovery itself protect the sensitive data it processes?

Siberson Veriket Data Discovery is purpose-built to handle sensitive data without becoming the next leak vector. Built-in safeguards include:

  • Encryption at rest — AES-256 for the inventory store, customer-managed keys (CMK) supported on both On-Prem and SaaS.

  • Encryption in transit — TLS 1.2/1.3 between agents, console, and connectors; mutual TLS available for high-assurance deployments.

  • Content snippet redaction — content snippets shown in findings are configurable: full / partial / hashed / suppressed by data type or analyst role.

  • Role-based access control — granular scopes (per-business-unit, per-data-type, per-region) with built-in separation of duties.

  • Tamper-evident audit trail — every administrative action and every finding access is logged to a write-once store.

  • Data sovereignty — On-Prem keeps everything in the customer's network; SaaS pins data to a customer-selected region with no cross-region replication.

Last updated: 2026-04-29