Threat DS.A.HPmDF-kDAcDS.6

URI: DS.A.HPmDF-kDAcDS.6

Package: DataLifecycle

< prev | next >

Description: Encrypted data Data cannot be stored on Host by Process: service Process manages storage of an unencrypted copy of data Data, so if all flows of Data to Process are encrypted the stored copy cannot be created unless Process has a decryption key.

Threat Type: Primary Threat

Matching Pattern:

DS.A.HPmDF-kDAcDS.6
MP-HPmDF-kDAcDS

Finds a Host running a Process that CRUD creates locally stored Data from one or more incoming flows, not decryptable with keys from a vault, plus optionally the host and process managers.

        (empty)

        (empty)

CSG-DataAccessKey

Process Process has a key for encrypting or decrypting data Data.

CSG-DataStorageEncryption

The copy of Data stored on Host is encrypted.