Chapter FourteenManaging Data Access
A fundamental benefit of the data warehouse lies in the self‐serve ability of data and cross‐company access to information. More groups than just the centralized data team commonly have access to data warehouses. The data has been cleaned, standardized, and organized. It is self‐documenting. Anyone with a bit of SQL know‐how can query tables and extract the information they need. A warehouse improves the data literacy across an organization.
However, companies handle information that you may not want easily accessible, especially in health systems or anything similar that manages sensitive information. Many security regulations mandating data access rules now exist, such as GDPR, and many companies have industry‐standard compliance rules that they adhere to as well, like SOC and HIPAA. Whether it is personally identifiable information (PII) or financial information, sensitive data is much more prevalent throughout a product's journey and the data warehouse than one might think. It's crucial to ensure adequate restrictions on sensitive information in the data warehouse are in place.
Build data restrictions into your warehouse framework as it is built. Even at the start of building your warehouse, answer a few common‐sense questions:
- Where is sensitive data (PII and financial) currently handled?
- Will this sensitive data still be present in the data warehouse and then cleaned up?
- How will this information be removed or restricted from the ...
Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Read now
Unlock full access