Data Classification Toolkit for Windows Server 2008 R2

Im Rahmen der kostenlose Serie “Compliance Solution Accelerators” ist eine für die Datensicherheit unterstützendes Tool erschienen.

Die freien Tools und Dokumente aus der Serie “Compliance Solution Accelerators” helfen Unternehmen das Risiko und die mit der “Sicherheit” verbundenen Kosten zu reduzieren. IT Governance, Risk und Compliance (GRC) sind wichtige Bestandteile in einer übergreifenden Sicherheits- und Datenschutzbetrachtung. Es ist unwichtig, ob Sie nur eine private cloud implementieren oder sich für Office 365 interessieren, IT GRC kann Ihnen helfen, die wichtigen GRC Fragen zu beantworten und bei der Implementiereung zu unterstützen.

 

.
The Solution Accelerators IT GRC team has released a new tool, the Data Classification Toolkit for Windows Server 2008 R2.The Data Classification Toolkit for Windows Server 2008 R2is designed to help enable an organization to identify, classify, and protect data on their file servers. The out-of-the-box classification and rule examples help organizations build and deploy their policies to protect critical information in a cost-effective manner. This release includes sample classification rules for PCI DSS and NIST 800-53.

.

Note:Use of the Microsoft Data Classification Toolkit for Windows Server 2008 R2 does not constitute advice from an auditor, accountant, attorney or other compliance professional, and does not guarantee fulfillment of your organization’s legal or compliance obligations. Conformance with these obligations requires input and interpretation by your organization’s compliance professionals.

.

Included in the Download

The Data Classification Toolkit for Windows Server 2008 R2 includes the following components:

  • Microsoft Data Classification Toolkit.msi – Microsoft Data Classification Toolkit for Windows Server 2008 R2 Installer
  • Data Classification Toolkit for WS2008R2 – Release Notes.rtf – Microsoft Data Classification Toolkit for Windows Server 2008 R2 Release Notes

In More Detail

Successful data classification programs require proper planning around these key critical areas:

  • Identification of applicable IT GRC authority documents
  • Definition of appropriate classification policies
  • Implementation and evidence of appropriate controls
.

Folgende weitere Informationen sind erhältlich. Leider ist der Inhalt nicht auf deutsch übersetzt.

.

Intended Use of this Solution Accelerator

The Microsoft Data Classification Toolkit for Windows Server 2008 R2(the “software”) is intended to help organizations simplify their ability to search, identify, and apply rules to data they specify. The software provides sample search expressions and rules that can be used to assist with compliance activities conducted by your organization’s IT professionals, auditors, accountants, attorneys, and other compliance professionals. The software does not replace those professionals. The software ships with some authority document citations, but these citations do not verify or guarantee fulfillment of your organization’s compliance obligations under applicable laws, regulations or industry standards. The software has not been certified as compliant with any standards, including the Payment Card Industry Data Security Standard (PCI-DSS) and the National Institute of Standards and Technology Special Publication (NIST 800-53). It is the responsibility of your organization to handle data in accordance with legal and compliance obligations based on guidance from your organization’s compliance professionals. Reports and any other information provided by or generated from the software do not constitute auditing, accounting, legal or other professional advice. You must consult compliance professionals to confirm compliance with specific governance, risk, and compliance (GRC) authority documents. The software is provided on an ‘as is’ basis, and Microsoft has no responsibility with respect to its use.

.

Implementing your organization’s policies using the Data Classification Toolkit for Windows Server 2008 R2

The following steps provide an overview of how to install and configure the Data Classification Toolkit. Additional information can be found in the User Guide and the Data Classification Toolkit for WS2008R2 – Reference.xlsx workbook, both of which are included with the download:

  1. Create or designate a server running Windows Server 2008 R2 SP1 File Classification Infrastructure to be used in customizing configuration packages.
  2. Review the contents of the ‘Data Classification Toolkit for WS2008R2 – Reference.xlsx’ with the appropriate IT professionals, auditors, accountants, attorneys or other compliance professionals in your organization to define or review your organization’s data classification and protection policies.
  3. Identify the predefined file classification configuration package example .xml files that most closely match your file classification requirements.
  4. Import one or more predefined file classification configuration packages into the server identified in Step 1 using the Import-FileClassificationPackage cmdlet.
  5. Customize File Classification Infrastructure on the server using File Server Resource Manager to match your organization’s policies.
  6. Review the results of the policy as implemented. If it meets your requirements, proceed to Step 7. If not, return to Step 5 and adjust the configuration.
  7. Export the configuration to a package .xml file using the Export‑FileClassificationPackage cmdlet.
  8. Import the customized package .xml file created in the previous step to the appropriate target servers running Windows Server 2008 R2 SP1 File Classification Infrastructure in your environment using the Import-FileClassificationPackage cmdlet.

For additional information about the Data Classification Toolkit for Windows Server 2008 R2, see Microsoft Data Classification Toolkit for Windows Server 2008 R2.

 

 

 

 

 

The short URL of the present article is: http://wp.me/p1MQAv-oQ

Tagged with:

Filed under: CloudInfrastructure