SlideShare a Scribd company logo
1 of 8
Test Data Privacy:
Start Now to Comply with GDPR
Test data management is the part in the companies that has been overlooked by the companies in order to
meet the upcoming regulations and needs.
We all knows that the GDPR deadline is 25th may 2018 and the companies only left with two months to obey
the rules of EU data protection. Every business needs to follow these rules, does not matter whether the
company deals with customer data personally or through indirect communications, GDPR is applicable in all
the circumstances.
Test data management is a part that requires GDPR attention. However essential in bringing effectiveness to
data procedure and testing the excellence of deliverables, Test data management is open to vulnerabilities
around regulatory and companies’ standards, principally as present compliances are not as strict as GDPR.
Company’s needs to make sure that the consumer data always protected when production data is normally
being copied to non-production environment for testing. GDPR is all set to have complete implications for
the kind of data which can be used in non-production environments and companies must identify the nature
of the data, who is dealing with this data and must be capable to stop its use for only those tasks that are
allowed.
GDPR and Testing
By following the new rules of GDPR we cannot
copy the production data as is. If production is
located for software testing, then testing
managers need to use illegal techniques,
applying to all personal identifiable information,
and this process must be irreversible.
This process needs good documentation and
expertise in testing, data models, and adequate
test data profiling. As GDPR stresses the need to
safeguard data that gets transferred to countries
outside the EU, organisations must ensure a
purge mechanism to erase any requested data.
Main points to consider for test data & testing are
GDPR compliant
• Precise and proper documentation of private data
information in wholly testing environments
• Real data detection to recognize and extract sensitive
data information
• Executing the TDM procedure for the complete data life
cycle that comprises profiling, sub setting, masking,
provisioning and archiving data in test environments
• Confirming an irretrievable “on-the-fly” data masking
procedure on production data to a central source
• Approval and alerts in place for data transfers and access
outside the region, as this is restricted
Practices To Make Sure Your Data Is GDPR
Compliant
1. Awareness Throughout The Organisation:
The very first point that needs to consider is becoming GDPR
compliant. And be aware that EU data-handling corporations must be
GDPR compliant by May 25, 2018. With a composite and time-
consuming procedure ahead, to make sure every part of data is
protected in the accurate way, now is the time to address the
procedure. GDPR Compliance includes data security, IT & cyber-
security protection, and reformation business procedures to be GDPR
compliant.
2. Make your GDPR strategy Effective:
In this case the very first step is to form a strong team that
handles GDPR solutions and issues. Complete masking rules
are necessary to follow regulations of compliance.
After masking, the next is to devise a strategy on how to
handle both production and masked data according to your
testing needs.
The main objective here is to reduce dependencies on masked
production data over the next few years.
3. GDPR for people, process & technology:
Preferably, TDM must have a devoted GDPR team to know
and tackle tasks caused during the complete data life cycle –
through profiling, subset, masking, provisioning, and building
repositories of data.
Thru strict data version controls & a centralized data
permission for relevant test data stakeholders, the team
must be capable to accept a better framework.
GDPR compliance should be an ongoing process and
not one-time solution. Any new process, automation or
compliances should support both existing business as
usual processes and new challenges.

More Related Content

More from Alisha Henderson

More from Alisha Henderson (12)

A quick guide to application security testing services
A quick guide to application security testing servicesA quick guide to application security testing services
A quick guide to application security testing services
 
Understanding web application software testing predictions for the future
Understanding web application software testing predictions for the futureUnderstanding web application software testing predictions for the future
Understanding web application software testing predictions for the future
 
Understanding the importance of software performance testing and its types
Understanding the importance of software performance testing and its typesUnderstanding the importance of software performance testing and its types
Understanding the importance of software performance testing and its types
 
What is penetration testing and why is it important for a business to invest ...
What is penetration testing and why is it important for a business to invest ...What is penetration testing and why is it important for a business to invest ...
What is penetration testing and why is it important for a business to invest ...
 
Challenges of Testing EDI Based Applications
Challenges of Testing EDI Based Applications Challenges of Testing EDI Based Applications
Challenges of Testing EDI Based Applications
 
How AI Can Be Leveraged In All Aspects Of Testing
How AI Can Be Leveraged In All Aspects Of TestingHow AI Can Be Leveraged In All Aspects Of Testing
How AI Can Be Leveraged In All Aspects Of Testing
 
4 tips for application level performance testing ppt
4 tips for application level performance testing ppt4 tips for application level performance testing ppt
4 tips for application level performance testing ppt
 
Robotic process automation (rpa): A revolution in the software testing industry
Robotic process automation (rpa):  A revolution in the software testing industryRobotic process automation (rpa):  A revolution in the software testing industry
Robotic process automation (rpa): A revolution in the software testing industry
 
5 Reasons to Choose an Independent Software Testing Services Company
5 Reasons to Choose an Independent Software Testing Services Company5 Reasons to Choose an Independent Software Testing Services Company
5 Reasons to Choose an Independent Software Testing Services Company
 
Step by-step mobile testing approaches and strategies
Step by-step mobile testing approaches and strategiesStep by-step mobile testing approaches and strategies
Step by-step mobile testing approaches and strategies
 
Problems and challenges related to qa outsourcing
Problems and challenges related to qa outsourcingProblems and challenges related to qa outsourcing
Problems and challenges related to qa outsourcing
 
DevOps & Agile Software Testing tools
DevOps & Agile Software Testing toolsDevOps & Agile Software Testing tools
DevOps & Agile Software Testing tools
 

Recently uploaded

Recently uploaded (20)

Abortion Clinic In Stanger ](+27832195400*)[ 🏥 Safe Abortion Pills In Stanger...
Abortion Clinic In Stanger ](+27832195400*)[ 🏥 Safe Abortion Pills In Stanger...Abortion Clinic In Stanger ](+27832195400*)[ 🏥 Safe Abortion Pills In Stanger...
Abortion Clinic In Stanger ](+27832195400*)[ 🏥 Safe Abortion Pills In Stanger...
 
Abortion Pill Prices Turfloop ](+27832195400*)[ 🏥 Women's Abortion Clinic in ...
Abortion Pill Prices Turfloop ](+27832195400*)[ 🏥 Women's Abortion Clinic in ...Abortion Pill Prices Turfloop ](+27832195400*)[ 🏥 Women's Abortion Clinic in ...
Abortion Pill Prices Turfloop ](+27832195400*)[ 🏥 Women's Abortion Clinic in ...
 
Abortion Clinic In Pongola ](+27832195400*)[ 🏥 Safe Abortion Pills In Pongola...
Abortion Clinic In Pongola ](+27832195400*)[ 🏥 Safe Abortion Pills In Pongola...Abortion Clinic In Pongola ](+27832195400*)[ 🏥 Safe Abortion Pills In Pongola...
Abortion Clinic In Pongola ](+27832195400*)[ 🏥 Safe Abortion Pills In Pongola...
 
AzureNativeQumulo_HPC_Cloud_Native_Benchmarks.pdf
AzureNativeQumulo_HPC_Cloud_Native_Benchmarks.pdfAzureNativeQumulo_HPC_Cloud_Native_Benchmarks.pdf
AzureNativeQumulo_HPC_Cloud_Native_Benchmarks.pdf
 
Wired_2.0_CREATE YOUR ULTIMATE LEARNING ENVIRONMENT_JCON_16052024
Wired_2.0_CREATE YOUR ULTIMATE LEARNING ENVIRONMENT_JCON_16052024Wired_2.0_CREATE YOUR ULTIMATE LEARNING ENVIRONMENT_JCON_16052024
Wired_2.0_CREATE YOUR ULTIMATE LEARNING ENVIRONMENT_JCON_16052024
 
GraphSummit Milan - Neo4j: The Art of the Possible with Graph
GraphSummit Milan - Neo4j: The Art of the Possible with GraphGraphSummit Milan - Neo4j: The Art of the Possible with Graph
GraphSummit Milan - Neo4j: The Art of the Possible with Graph
 
Workshop - Architecting Innovative Graph Applications- GraphSummit Milan
Workshop -  Architecting Innovative Graph Applications- GraphSummit MilanWorkshop -  Architecting Innovative Graph Applications- GraphSummit Milan
Workshop - Architecting Innovative Graph Applications- GraphSummit Milan
 
[GRCPP] Introduction to concepts (C++20)
[GRCPP] Introduction to concepts (C++20)[GRCPP] Introduction to concepts (C++20)
[GRCPP] Introduction to concepts (C++20)
 
[GeeCON2024] How I learned to stop worrying and love the dark silicon apocalypse
[GeeCON2024] How I learned to stop worrying and love the dark silicon apocalypse[GeeCON2024] How I learned to stop worrying and love the dark silicon apocalypse
[GeeCON2024] How I learned to stop worrying and love the dark silicon apocalypse
 
Test Automation Design Patterns_ A Comprehensive Guide.pdf
Test Automation Design Patterns_ A Comprehensive Guide.pdfTest Automation Design Patterns_ A Comprehensive Guide.pdf
Test Automation Design Patterns_ A Comprehensive Guide.pdf
 
Anypoint Code Builder - Munich MuleSoft Meetup - 16th May 2024
Anypoint Code Builder - Munich MuleSoft Meetup - 16th May 2024Anypoint Code Builder - Munich MuleSoft Meetup - 16th May 2024
Anypoint Code Builder - Munich MuleSoft Meetup - 16th May 2024
 
Auto Affiliate AI Earns First Commission in 3 Hours..pdf
Auto Affiliate  AI Earns First Commission in 3 Hours..pdfAuto Affiliate  AI Earns First Commission in 3 Hours..pdf
Auto Affiliate AI Earns First Commission in 3 Hours..pdf
 
Automate your OpenSIPS config tests - OpenSIPS Summit 2024
Automate your OpenSIPS config tests - OpenSIPS Summit 2024Automate your OpenSIPS config tests - OpenSIPS Summit 2024
Automate your OpenSIPS config tests - OpenSIPS Summit 2024
 
Workshop: Enabling GenAI Breakthroughs with Knowledge Graphs - GraphSummit Milan
Workshop: Enabling GenAI Breakthroughs with Knowledge Graphs - GraphSummit MilanWorkshop: Enabling GenAI Breakthroughs with Knowledge Graphs - GraphSummit Milan
Workshop: Enabling GenAI Breakthroughs with Knowledge Graphs - GraphSummit Milan
 
Abortion Clinic In Johannesburg ](+27832195400*)[ 🏥 Safe Abortion Pills in Jo...
Abortion Clinic In Johannesburg ](+27832195400*)[ 🏥 Safe Abortion Pills in Jo...Abortion Clinic In Johannesburg ](+27832195400*)[ 🏥 Safe Abortion Pills in Jo...
Abortion Clinic In Johannesburg ](+27832195400*)[ 🏥 Safe Abortion Pills in Jo...
 
Novo Nordisk: When Knowledge Graphs meet LLMs
Novo Nordisk: When Knowledge Graphs meet LLMsNovo Nordisk: When Knowledge Graphs meet LLMs
Novo Nordisk: When Knowledge Graphs meet LLMs
 
Rapidoform for Modern Form Building and Insights
Rapidoform for Modern Form Building and InsightsRapidoform for Modern Form Building and Insights
Rapidoform for Modern Form Building and Insights
 
From Theory to Practice: Utilizing SpiraPlan's REST API
From Theory to Practice: Utilizing SpiraPlan's REST APIFrom Theory to Practice: Utilizing SpiraPlan's REST API
From Theory to Practice: Utilizing SpiraPlan's REST API
 
Abortion Pill Prices Mthatha (@](+27832195400*)[ 🏥 Women's Abortion Clinic In...
Abortion Pill Prices Mthatha (@](+27832195400*)[ 🏥 Women's Abortion Clinic In...Abortion Pill Prices Mthatha (@](+27832195400*)[ 🏥 Women's Abortion Clinic In...
Abortion Pill Prices Mthatha (@](+27832195400*)[ 🏥 Women's Abortion Clinic In...
 
Alluxio Monthly Webinar | Simplify Data Access for AI in Multi-Cloud
Alluxio Monthly Webinar | Simplify Data Access for AI in Multi-CloudAlluxio Monthly Webinar | Simplify Data Access for AI in Multi-Cloud
Alluxio Monthly Webinar | Simplify Data Access for AI in Multi-Cloud
 

Test Data Privacy: Start Now to Comply with GDPR

  • 1. Test Data Privacy: Start Now to Comply with GDPR
  • 2. Test data management is the part in the companies that has been overlooked by the companies in order to meet the upcoming regulations and needs. We all knows that the GDPR deadline is 25th may 2018 and the companies only left with two months to obey the rules of EU data protection. Every business needs to follow these rules, does not matter whether the company deals with customer data personally or through indirect communications, GDPR is applicable in all the circumstances. Test data management is a part that requires GDPR attention. However essential in bringing effectiveness to data procedure and testing the excellence of deliverables, Test data management is open to vulnerabilities around regulatory and companies’ standards, principally as present compliances are not as strict as GDPR. Company’s needs to make sure that the consumer data always protected when production data is normally being copied to non-production environment for testing. GDPR is all set to have complete implications for the kind of data which can be used in non-production environments and companies must identify the nature of the data, who is dealing with this data and must be capable to stop its use for only those tasks that are allowed.
  • 3. GDPR and Testing By following the new rules of GDPR we cannot copy the production data as is. If production is located for software testing, then testing managers need to use illegal techniques, applying to all personal identifiable information, and this process must be irreversible. This process needs good documentation and expertise in testing, data models, and adequate test data profiling. As GDPR stresses the need to safeguard data that gets transferred to countries outside the EU, organisations must ensure a purge mechanism to erase any requested data.
  • 4. Main points to consider for test data & testing are GDPR compliant • Precise and proper documentation of private data information in wholly testing environments • Real data detection to recognize and extract sensitive data information • Executing the TDM procedure for the complete data life cycle that comprises profiling, sub setting, masking, provisioning and archiving data in test environments • Confirming an irretrievable “on-the-fly” data masking procedure on production data to a central source • Approval and alerts in place for data transfers and access outside the region, as this is restricted
  • 5. Practices To Make Sure Your Data Is GDPR Compliant 1. Awareness Throughout The Organisation: The very first point that needs to consider is becoming GDPR compliant. And be aware that EU data-handling corporations must be GDPR compliant by May 25, 2018. With a composite and time- consuming procedure ahead, to make sure every part of data is protected in the accurate way, now is the time to address the procedure. GDPR Compliance includes data security, IT & cyber- security protection, and reformation business procedures to be GDPR compliant.
  • 6. 2. Make your GDPR strategy Effective: In this case the very first step is to form a strong team that handles GDPR solutions and issues. Complete masking rules are necessary to follow regulations of compliance. After masking, the next is to devise a strategy on how to handle both production and masked data according to your testing needs. The main objective here is to reduce dependencies on masked production data over the next few years.
  • 7. 3. GDPR for people, process & technology: Preferably, TDM must have a devoted GDPR team to know and tackle tasks caused during the complete data life cycle – through profiling, subset, masking, provisioning, and building repositories of data. Thru strict data version controls & a centralized data permission for relevant test data stakeholders, the team must be capable to accept a better framework.
  • 8. GDPR compliance should be an ongoing process and not one-time solution. Any new process, automation or compliances should support both existing business as usual processes and new challenges.