BISS SOO Attachment D - ETDM Accomplishments to Date.docx

DOCX document 2 MB Posted

Attached to
Enterprise Test Data Management Federal contract opportunity
Solicitation number
CORHQ-24-R-0686
Issued by
Federal Deposit Insurance Corporation

About this file

This file is an accomplishments report detailing Enterprise Test Data Management (ETDM) progress at the FDIC, included as Attachment D to a Statement of Objectives. It documents that the IRI Voracity suite was acquired in 2023 as FDIC's default test data software and has received Authority to Operate (ATO). Key accomplishments include installation on four Windows 2019 servers, establishment of governance processes for data obfuscation, creation of reusable master set files, support for the RMS Supervision360 application with masked data from 9 applications, and replacement of a legacy Test Data Generator.

The document outlines three detailed process flows: the overall data masking process (26 steps), the refresh process (13 steps), and the extension process (8 steps). Each process involves multiple stakeholders including Requestors, Data Stewards, Security/Privacy teams, EDMS (Enterprise Data Management Services), and DBAs. The workflows cover the complete lifecycle of requesting, approving, implementing, and maintaining masked test data, with emphasis on security review, proper approvals, and validation of masked datasets. All processes utilize ServiceNow tickets for requests and ARCS for access management.

View the file

Other files for this federal contract opportunity

Show all 16

On GovTribe

Work with this file on GovTribe

  • Download the original file
  • Contacts named in this file
  • Similar government files
  • Ask GovTribe AI about this file

Text version

CONTROLLED//FDIC BUSINESS

Attachment E – ETDM Accomplishments to Date Background: The IRI Suite was acquired in 2023 as the default test data software for FDIC. By exception, additional tools might be acquired to meet test data management requirements. Below are some accomplishments to date:

· Installed and configured the IRI Voracity suite on four Windows 2019 servers for generation of obfuscated data for FDIC applications. IRI Voracity has been ATOed by the FDIC CIO.

Established the governance and process of providing obfuscated data for FDIC applications, including obtaining system owner approval, Privacy concurrence of transformation rules and data staging and delivery.

Comment by Wong, Renee L.: Is the governance and process a document/PowerPoint that can be shared? Comment by Burns, Bernard J.: yes -- for Process Data Masking Process 20230525 v3.pdf and Data Masking Process Word Doc 20230525 v3.pdf. for Governance Data Masking Governance Doc v1.pdf

· Created reusable master set files in IRI Voracity to maintain referential integrity for test data across systems and tables.

· Enabling the design and development of the RMS Supervision360 application by providing masked data based on transformation rules from 9 applications. This task falls under a Medium effort.

· Replacing a legacy custom-built Test Data Generator (TDG) application with the third-part IRI Voracity application suite. This task falls under a Medium effort.

image1.emf

Microsoft_Word_Document.docx image2.emf

Data Masking Governance Doc v1.pdf image3.emf

Data Masking Process 20230525 v3.pdf

Data Masking Overall Process Flow Diagram Steps ID Responsibility Step Details

1 Requestor Identify schemas, tables, and columns to be masked - Will be worked with the Data Steward

2 Requestor Schemas, Tables, and Columns document - Document will contain a table of the Schema name, Table name, and Column Name of the columns to be masked and that will be copied as is

3 Requestor Request approval to access data sources from Steward

4 Data Steward Review request to access data source

5 Requestor Review schemas, tables, and columns with Security/Privacy

6 Security/Privacy Review schemas, tables, and columns with Requestor

7 Requestor Submit masking request - Will use Service Now ticket to submit request

- Include schemas, tables, and columns

- Include approval from Data Steward

- Include information about how long the data should be used

8 EDMS Review masking request

9 EDMS Submit ARCS request to gain read only access to data source

10 Requestor Data Steward

Requestor and/or Steward reviews ARCS request

11 EDMS Develop masking plan

12 EDMS Schemas, Tables, Columns, and Masking document - Document will contain a table of the Schema name, Table name, Column Name, and Masking method of the columns to be masked and that will be copied as is

13 EDMS Provide masking plan to security

14 Security/Privacy Review masking plan

15 EDMS

Requestor

EDMS hosts meeting with Requestor to confirm request

16 EDMS Develop masking job

17 EDMS Request destination schema be created - Service now request to DBA to create new schema (copy metadata only and not data)

18 DBA Create destination schema

19 EDMS Submit ARCS request for read/write access to destination schema

20 DBA DBA reviews ARCS request

21 EDMS Perform masking

22 EDMS

Security/Privacy

Validate dataset and compare/review - EDMS, Requestor, Data Steward, and Security/Privacy all review the dataset and compare the original data to the masked data to confirm that the data was properly masked

23 EDMS Release dataset

24 Requestor Submit ARCS request for read or read/write access to destination schema

25 DBA DBA reviews ARCS request

26 Requestor Use masked dataset

Data Masking Refresh Process Flow Diagram Steps

1 Requestor Identify need to refresh masked dataset

3 Requestor Submit masking request - Will use Service Now ticket to submit

- Include schemas, tables, and columns to be refreshed

4 EDMS Review masking request

5 EDMS Develop masking plan

6 EDMS Schemas, Tables, Columns, and Masking document - Document will contain a table of the

7 EDMS Provide masking plan to security

8 Security/Privacy Review masking plan

9 EDMS

10 EDMS Develop masking job

11 EDMS Perform masking

12 EDMS

compare the original data to the masked

13 EDMS Release dataset

Data Masking Extension Process Flow Diagram Steps

1 Requestor Identify need to extend time of use for dataset

3 Requestor Submit extension request - Will use Service Now ticket to submit extended

4 EDMS Review extension request

5 EDMS Provide extension request to security

6 Security/Privacy Review extension request

7 EDMS

EDMS host meeting with Requestor to confirm request

8 EDMS Extend time of use on dataset image4.emf

Data Masking Process Word Doc 20230525 v3.pdf

Data Masking Overall Process Flow Diagram Steps

1 Requestor Identify schemas, tables, and columns to be masked - Will be worked with the Data Steward

3 Requestor Request approval to access data sources from Steward

4 Data Steward Review request to access data source

5 Requestor Review schemas, tables, and columns with Security/Privacy

6 Security/Privacy Review schemas, tables, and columns with Requestor

7 Requestor Submit masking request - Will use Service Now ticket to submit

- Include schemas, tables, and columns

- Include approval from Data Steward

8 EDMS Review masking request

9 EDMS Submit ARCS request to gain read only access to data source

10 Requestor

Requestor and/or Steward reviews ARCS request

11 EDMS Develop masking plan

12 EDMS Schemas, Tables, Columns, and Masking document - Document will contain a table of the

13 EDMS Provide masking plan to security

14 Security/Privacy Review masking plan

15 EDMS

16 EDMS Develop masking job

17 EDMS Request destination schema be created - Service now request to DBA to create new schema (copy metadata only and not data)

18 DBA Create destination schema

19 EDMS Submit ARCS request for read/write access to destination schema

20 DBA DBA reviews ARCS request

21 EDMS Perform masking

22 EDMS

compare the original data to the masked

23 EDMS Release dataset

24 Requestor Submit ARCS request for read or read/write access to destination schema

25 DBA DBA reviews ARCS request

26 Requestor Use masked dataset

Data Masking Refresh Process Flow Diagram Steps

1 Requestor Identify need to refresh masked dataset

3 Requestor Submit masking request - Will use Service Now ticket to submit refreshed

4 EDMS Review masking request

5 EDMS Develop masking plan

6 EDMS Schemas, Tables, Columns, and Masking document - Document will contain a table of the

7 EDMS Provide masking plan to security

8 Security/Privacy Review masking plan

9 EDMS

10 EDMS Develop masking job

11 EDMS Perform masking

12 EDMS

compare the original data to the masked

13 EDMS Release dataset

Data Masking Extension Process Flow Diagram Steps

1 Requestor Identify need to extend time of use for dataset

3 Requestor Submit extension request - Will use Service Now ticket to submit extended

4 EDMS Review extension request

5 EDMS Provide extension request to security

6 Security/Privacy Review extension request

7 EDMS

EDMS host meeting with Requestor to confirm request

8 EDMS Extend time of use on dataset

File details come from the government source that posted it. Updated .