SlideShare uma empresa Scribd logo
1 de 20
Baixar para ler offline
w w w. e xa t e . c o m
API DATA PROTECTION IN GATEWAYS
2022 SERIES OF EVENTS
New York
JULY
(HYBRID)
Australia
SEPTEMBER
(HYBRID)
Singapore
APRIL
(VIRTUAL)
Helsinki & North
MARCH
(VIRTUAL)
Paris
DECEMBER
(HYBRID)
London
OCTOBER
(HYBRID)
Hong Kong
AUGUST
(VIRTUAL)
JUNE (VIRTUAL)
India
MAY
(VIRTUAL)
APRIL (VIRTUAL)
Dubai & Middle East
JUNE
(VIRTUAL)
Check out our API Conferences
www.a pida ys .globa l
Want to talk at one of our conferences?
apidays.typeform.com/to/ILJeAaV8
Our vision is to be the
global standard for the
secure and trusted
exchange of data
PETER LANCOS
CEO & CO-FOUNDER
SONAL RATTAN
CTO & CO-FOUNDER
By 2025, less than 50%
of enterprise APIs will
be managed
Multimillion-dollar
security incidents
Privacy being the
differentiator
API security will be a key focus area for most organisations
API DATA SECURITY
Gartner: APIs are now
the most frequent attack vector
Data in Motion of organisations
had a security
incident involving
APIs
91%
APIs: FROM THE SOLUTION TO THE PROBLEM
of people would not do
business with a company
if they had concerns
about its data security
practices
87%
Regulatory Risk Reputation Risk
COVID has accelerated
the adoption of digital
technologies by 7 years
Pace of Digital
Transformation
of countries are demanding
protection for consumers and
have or are implementing Data
Protection and Privacy
Legislation
80%
Source: UNCTAD Source: McKinsey Source: Forbes
94% of companies provide Privacy Metrics to their Boards
Digital Risk
THE MACRO CONDITIONS DRIVING DATA PRIVACY
US DATA PRIVACY REGULATION AT A GLANCE
• US PRIVACY ACT OF 1974:
Rights and restrictions on data held by government agencies
• GRAMM-LEACH-BILILEY ACT (GBLA):
Protects financial nonpublic personal information
• HEALTH INSURANCE PORTABILITY AND ACCOUNTABILITY ACT (HIPPA)
Healthcare and health insurance personal data protection
• CHILDREN’S ONLINE PRIVACY PROTECTION ACT (COPPA)
Protects the personal information of those 12 and younger
US
PRIVACY
ACT
HIPAA GBLA COPPA
1974 1996 1999 2000
California Consumer
Privacy Act (CCPA)
Massachusetts Data
Privacy Law
Colorado Privacy Act
Connecticut Data Privacy
Act
Virginia Consumer Data
Protection Act
Utah Consumer Data
Protection Act
Michigan - Consumer Privacy
Act
New Jersey Disclosure and
Accountability Transparent
Act
Ohio Personal
Privacy Act
STATE DATA REGULATIONS
Statute/Bill In Legislative Process
- Signed
- Active Bills
- Inactive
Settles data breach suit for
$1.2 million
“Taking appropriate measures to safeguard clients’
personal information is not just part of a good
business model, it is the law.
This settlement should send a
clear message to companies that
skimp on data security as a cost-
saving measure.” - Acting
Attorney General Matthew Platkin
DATA PROTECTION IS LAW
YOU ALSO NEED TO CONTROL WHAT
THE DATA IS BEING USED FOR
Twitter will pay a $150 million penalty for data
privacy misrepresentations:
• In 2019, Twitter admitted to using users' phone numbers,
which were submitted in order to enable two-step
verification, for advertising purposes.
• This violated both EU and US laws.
How do you make the your API
programs scalable without
exposing the organisation to
greater risk?
Are your API consumers and
producers compliant with all
global data distribution
regulations?
Do you know who is accessing
data and why?
DEMAND FOR
DATA
1
2
3
5
Are you having to create
different APIs or Interfaces to
service different access
patterns?
DIGITAL INITIATIVES ARE INCEASING THE DEMAND FOR DATA ACCESS
API Consumer
API Producer
API Gateway
SO YOU ACQUIRE A GATEWAY…
API Gateway
US Partners SaaS Products
UK Customers Cloud Services
EU Accounts
Accounts Customer
US Customer
Order Balance
EU Customer
LUX Accounts
…AND IT BECOMES POPULAR…
…THEN THERE’S THE MESH…
API Consumer
API Producer
API Gateway
Data Governance & Compliance
Data Governance & Compliance
WHAT IF YOUR GATEWAY SOLVED THIS?
US Partners SaaS Products
UK Customers Cloud Services
Accounts Customer Order Balance
API Gateway
Data Governance & Compliance
Data Governance & Compliance
SET THE PATTERN, SIMPLIFY, RE-USE
Locate and classify your API
traffic
Fast
Continually test for risks
during the life cycle
Test
Automatically solve data risks
Solve
Learn about your data risks
Analyse
F.A.S.T
“By 2022, API abuses will move from an infrequent to the most frequent attack vector, resulting in data breaches for
enterprise web applications” - Mark O’Neill, Gartner
CONTINOUS DATA PRIVACY
THE GATEWAYS ARE DOING MORE TO ENABLE MORE DATA IN
MOTION
Cost Reduction
API Data Protection Innovation
As and industry we recognise that we need to be able to be faster and easier to find and
consume data. This means being able to reuse data
By doing it at the gateways there are several benefits
THE FUTURE
w w w. e xa t e . c o m

Mais conteúdo relacionado

Semelhante a apidays New York 2022 - API Data Protection in Gateways, Sonal Rattan, eXate

Sean gately internet of things
Sean gately   internet of thingsSean gately   internet of things
Sean gately internet of things
ProductCamp SoCal
 
Information Security vs. Data Governance vs. Data Protection: What Is the Rea...
Information Security vs. Data Governance vs. Data Protection: What Is the Rea...Information Security vs. Data Governance vs. Data Protection: What Is the Rea...
Information Security vs. Data Governance vs. Data Protection: What Is the Rea...
PECB
 
How To Build A Winning MarTech Stack In 2023
How To Build A Winning MarTech Stack In 2023How To Build A Winning MarTech Stack In 2023
How To Build A Winning MarTech Stack In 2023
Search Engine Journal
 

Semelhante a apidays New York 2022 - API Data Protection in Gateways, Sonal Rattan, eXate (20)

New regulations and the evolving cybersecurity technology landscape
New regulations and the evolving cybersecurity technology landscapeNew regulations and the evolving cybersecurity technology landscape
New regulations and the evolving cybersecurity technology landscape
 
Eric van Tol - Businesscases & Verdienmodellen
Eric van Tol - Businesscases & VerdienmodellenEric van Tol - Businesscases & Verdienmodellen
Eric van Tol - Businesscases & Verdienmodellen
 
Rebooting IT Infrastructure for the Digital Age
Rebooting IT Infrastructure for the Digital AgeRebooting IT Infrastructure for the Digital Age
Rebooting IT Infrastructure for the Digital Age
 
Sean gately internet of things
Sean gately   internet of thingsSean gately   internet of things
Sean gately internet of things
 
Information Security vs. Data Governance vs. Data Protection: What Is the Rea...
Information Security vs. Data Governance vs. Data Protection: What Is the Rea...Information Security vs. Data Governance vs. Data Protection: What Is the Rea...
Information Security vs. Data Governance vs. Data Protection: What Is the Rea...
 
The Golden Age of Wearables:
 Personal Networks, Smart Things & Intimate Know...
The Golden Age of Wearables:
 Personal Networks, Smart Things & Intimate Know...The Golden Age of Wearables:
 Personal Networks, Smart Things & Intimate Know...
The Golden Age of Wearables:
 Personal Networks, Smart Things & Intimate Know...
 
Y20151003 IoT 資訊安全_趨勢科技分享
Y20151003 IoT 資訊安全_趨勢科技分享Y20151003 IoT 資訊安全_趨勢科技分享
Y20151003 IoT 資訊安全_趨勢科技分享
 
The Cloudification of Capital Markets
The Cloudification of Capital MarketsThe Cloudification of Capital Markets
The Cloudification of Capital Markets
 
Chris Swan's presentation from the London Tech Entrepreneurs' Meetup
Chris Swan's presentation from the London Tech Entrepreneurs' MeetupChris Swan's presentation from the London Tech Entrepreneurs' Meetup
Chris Swan's presentation from the London Tech Entrepreneurs' Meetup
 
The digital transformation of retail
The digital transformation of retailThe digital transformation of retail
The digital transformation of retail
 
apidays London 2023 - API Programs - Security by Design, Privacy by Default, ...
apidays London 2023 - API Programs - Security by Design, Privacy by Default, ...apidays London 2023 - API Programs - Security by Design, Privacy by Default, ...
apidays London 2023 - API Programs - Security by Design, Privacy by Default, ...
 
How To Build A Winning MarTech Stack In 2023
How To Build A Winning MarTech Stack In 2023How To Build A Winning MarTech Stack In 2023
How To Build A Winning MarTech Stack In 2023
 
L18 Big Data and Analytics
L18 Big Data and AnalyticsL18 Big Data and Analytics
L18 Big Data and Analytics
 
2017 Security Report Presentation
2017 Security Report Presentation2017 Security Report Presentation
2017 Security Report Presentation
 
NIIT and Denodo: Business Continuity Planning in the times of the Covid-19 Pa...
NIIT and Denodo: Business Continuity Planning in the times of the Covid-19 Pa...NIIT and Denodo: Business Continuity Planning in the times of the Covid-19 Pa...
NIIT and Denodo: Business Continuity Planning in the times of the Covid-19 Pa...
 
Cloud Revolution Conitnues
Cloud Revolution ConitnuesCloud Revolution Conitnues
Cloud Revolution Conitnues
 
Fines in the Millions Levied Every Year Coming Soon! The Business Case for ...
Fines in the Millions Levied Every Year Coming Soon! The Business Case for ...Fines in the Millions Levied Every Year Coming Soon! The Business Case for ...
Fines in the Millions Levied Every Year Coming Soon! The Business Case for ...
 
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
Apidays Singapore 2024 - Building Digital Trust in a Digital Economy by Veron...
 
Frukostseminarium om molntjänster
Frukostseminarium om molntjänsterFrukostseminarium om molntjänster
Frukostseminarium om molntjänster
 
Business with Big data
Business with Big dataBusiness with Big data
Business with Big data
 

Mais de apidays

Mais de apidays (20)

Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, AdobeApidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
Apidays New York 2024 - Scaling API-first by Ian Reasor and Radu Cotescu, Adobe
 
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
Apidays New York 2024 - Accelerating FinTech Innovation by Vasa Krishnan, Fin...
 
Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...Apidays New York 2024 - The value of a flexible API Management solution for O...
Apidays New York 2024 - The value of a flexible API Management solution for O...
 
Apidays New York 2024 - The secrets to Graph success, by Leah Hurwich Adler, ...
Apidays New York 2024 - The secrets to Graph success, by Leah Hurwich Adler, ...Apidays New York 2024 - The secrets to Graph success, by Leah Hurwich Adler, ...
Apidays New York 2024 - The secrets to Graph success, by Leah Hurwich Adler, ...
 
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
Apidays New York 2024 - The Good, the Bad and the Governed by David O'Neill, ...
 
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
Apidays New York 2024 - Passkeys: Developing APIs to enable passwordless auth...
 
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
Apidays New York 2024 - APIs in 2030: The Risk of Technological Sleepwalk by ...
 
Apidays New York 2024 - API Discovery - From Crawl to Run by Rob Dickinson, G...
Apidays New York 2024 - API Discovery - From Crawl to Run by Rob Dickinson, G...Apidays New York 2024 - API Discovery - From Crawl to Run by Rob Dickinson, G...
Apidays New York 2024 - API Discovery - From Crawl to Run by Rob Dickinson, G...
 
Apidays Singapore 2024 - Building with the Planet in Mind by Sandeep Joshi, M...
Apidays Singapore 2024 - Building with the Planet in Mind by Sandeep Joshi, M...Apidays Singapore 2024 - Building with the Planet in Mind by Sandeep Joshi, M...
Apidays Singapore 2024 - Building with the Planet in Mind by Sandeep Joshi, M...
 
Apidays Singapore 2024 - Connecting Cross Border Commerce with Payments by Gu...
Apidays Singapore 2024 - Connecting Cross Border Commerce with Payments by Gu...Apidays Singapore 2024 - Connecting Cross Border Commerce with Payments by Gu...
Apidays Singapore 2024 - Connecting Cross Border Commerce with Payments by Gu...
 
Apidays Singapore 2024 - Privacy Enhancing Technologies for AI by Mark Choo, ...
Apidays Singapore 2024 - Privacy Enhancing Technologies for AI by Mark Choo, ...Apidays Singapore 2024 - Privacy Enhancing Technologies for AI by Mark Choo, ...
Apidays Singapore 2024 - Privacy Enhancing Technologies for AI by Mark Choo, ...
 
Apidays Singapore 2024 - Blending AI and IoT for Smarter Health by Matthew Ch...
Apidays Singapore 2024 - Blending AI and IoT for Smarter Health by Matthew Ch...Apidays Singapore 2024 - Blending AI and IoT for Smarter Health by Matthew Ch...
Apidays Singapore 2024 - Blending AI and IoT for Smarter Health by Matthew Ch...
 
Apidays Singapore 2024 - OpenTelemetry for API Monitoring by Danielle Kayumbi...
Apidays Singapore 2024 - OpenTelemetry for API Monitoring by Danielle Kayumbi...Apidays Singapore 2024 - OpenTelemetry for API Monitoring by Danielle Kayumbi...
Apidays Singapore 2024 - OpenTelemetry for API Monitoring by Danielle Kayumbi...
 
Apidays Singapore 2024 - Connecting Product and Engineering Teams with Testin...
Apidays Singapore 2024 - Connecting Product and Engineering Teams with Testin...Apidays Singapore 2024 - Connecting Product and Engineering Teams with Testin...
Apidays Singapore 2024 - Connecting Product and Engineering Teams with Testin...
 
Apidays Singapore 2024 - The Growing Carbon Footprint of Digitalization and H...
Apidays Singapore 2024 - The Growing Carbon Footprint of Digitalization and H...Apidays Singapore 2024 - The Growing Carbon Footprint of Digitalization and H...
Apidays Singapore 2024 - The Growing Carbon Footprint of Digitalization and H...
 
Apidays Singapore 2024 - API Monitoring x SRE by Ryan Ashneil and Eugene Wong...
Apidays Singapore 2024 - API Monitoring x SRE by Ryan Ashneil and Eugene Wong...Apidays Singapore 2024 - API Monitoring x SRE by Ryan Ashneil and Eugene Wong...
Apidays Singapore 2024 - API Monitoring x SRE by Ryan Ashneil and Eugene Wong...
 
Apidays Singapore 2024 - A nuanced approach on AI costs and benefits for the ...
Apidays Singapore 2024 - A nuanced approach on AI costs and benefits for the ...Apidays Singapore 2024 - A nuanced approach on AI costs and benefits for the ...
Apidays Singapore 2024 - A nuanced approach on AI costs and benefits for the ...
 
Apidays Singapore 2024 - Modernizing Securities Finance by Madhu Subbu
Apidays Singapore 2024 - Modernizing Securities Finance by Madhu SubbuApidays Singapore 2024 - Modernizing Securities Finance by Madhu Subbu
Apidays Singapore 2024 - Modernizing Securities Finance by Madhu Subbu
 
Apidays Singapore 2024 - How APIs drive business at BNP Paribas by Quy-Doan D...
Apidays Singapore 2024 - How APIs drive business at BNP Paribas by Quy-Doan D...Apidays Singapore 2024 - How APIs drive business at BNP Paribas by Quy-Doan D...
Apidays Singapore 2024 - How APIs drive business at BNP Paribas by Quy-Doan D...
 
Apidays Singapore 2024 - Harnessing Green IT by Jai Prakash and Timothée Dufr...
Apidays Singapore 2024 - Harnessing Green IT by Jai Prakash and Timothée Dufr...Apidays Singapore 2024 - Harnessing Green IT by Jai Prakash and Timothée Dufr...
Apidays Singapore 2024 - Harnessing Green IT by Jai Prakash and Timothée Dufr...
 

Último

Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Victor Rentea
 

Último (20)

CNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In PakistanCNIC Information System with Pakdata Cf In Pakistan
CNIC Information System with Pakdata Cf In Pakistan
 
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost SavingRepurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
Repurposing LNG terminals for Hydrogen Ammonia: Feasibility and Cost Saving
 
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
Web Form Automation for Bonterra Impact Management (fka Social Solutions Apri...
 
Six Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal OntologySix Myths about Ontologies: The Basics of Formal Ontology
Six Myths about Ontologies: The Basics of Formal Ontology
 
Vector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptxVector Search -An Introduction in Oracle Database 23ai.pptx
Vector Search -An Introduction in Oracle Database 23ai.pptx
 
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWEREMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
EMPOWERMENT TECHNOLOGY GRADE 11 QUARTER 2 REVIEWER
 
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot ModelMcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
Mcleodganj Call Girls 🥰 8617370543 Service Offer VIP Hot Model
 
DBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor PresentationDBX First Quarter 2024 Investor Presentation
DBX First Quarter 2024 Investor Presentation
 
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
Biography Of Angeliki Cooney | Senior Vice President Life Sciences | Albany, ...
 
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemkeProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
ProductAnonymous-April2024-WinProductDiscovery-MelissaKlemke
 
presentation ICT roal in 21st century education
presentation ICT roal in 21st century educationpresentation ICT roal in 21st century education
presentation ICT roal in 21st century education
 
AWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of TerraformAWS Community Day CPH - Three problems of Terraform
AWS Community Day CPH - Three problems of Terraform
 
Strategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a FresherStrategies for Landing an Oracle DBA Job as a Fresher
Strategies for Landing an Oracle DBA Job as a Fresher
 
Boost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdfBoost Fertility New Invention Ups Success Rates.pdf
Boost Fertility New Invention Ups Success Rates.pdf
 
FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024FWD Group - Insurer Innovation Award 2024
FWD Group - Insurer Innovation Award 2024
 
WSO2's API Vision: Unifying Control, Empowering Developers
WSO2's API Vision: Unifying Control, Empowering DevelopersWSO2's API Vision: Unifying Control, Empowering Developers
WSO2's API Vision: Unifying Control, Empowering Developers
 
Artificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : UncertaintyArtificial Intelligence Chap.5 : Uncertainty
Artificial Intelligence Chap.5 : Uncertainty
 
[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf[BuildWithAI] Introduction to Gemini.pdf
[BuildWithAI] Introduction to Gemini.pdf
 
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
Modular Monolith - a Practical Alternative to Microservices @ Devoxx UK 2024
 
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ..."I see eyes in my soup": How Delivery Hero implemented the safety system for ...
"I see eyes in my soup": How Delivery Hero implemented the safety system for ...
 

apidays New York 2022 - API Data Protection in Gateways, Sonal Rattan, eXate

  • 1. w w w. e xa t e . c o m API DATA PROTECTION IN GATEWAYS
  • 2. 2022 SERIES OF EVENTS New York JULY (HYBRID) Australia SEPTEMBER (HYBRID) Singapore APRIL (VIRTUAL) Helsinki & North MARCH (VIRTUAL) Paris DECEMBER (HYBRID) London OCTOBER (HYBRID) Hong Kong AUGUST (VIRTUAL) JUNE (VIRTUAL) India MAY (VIRTUAL) APRIL (VIRTUAL) Dubai & Middle East JUNE (VIRTUAL) Check out our API Conferences www.a pida ys .globa l Want to talk at one of our conferences? apidays.typeform.com/to/ILJeAaV8
  • 3. Our vision is to be the global standard for the secure and trusted exchange of data PETER LANCOS CEO & CO-FOUNDER SONAL RATTAN CTO & CO-FOUNDER
  • 4. By 2025, less than 50% of enterprise APIs will be managed Multimillion-dollar security incidents Privacy being the differentiator API security will be a key focus area for most organisations API DATA SECURITY
  • 5. Gartner: APIs are now the most frequent attack vector Data in Motion of organisations had a security incident involving APIs 91% APIs: FROM THE SOLUTION TO THE PROBLEM
  • 6. of people would not do business with a company if they had concerns about its data security practices 87% Regulatory Risk Reputation Risk COVID has accelerated the adoption of digital technologies by 7 years Pace of Digital Transformation of countries are demanding protection for consumers and have or are implementing Data Protection and Privacy Legislation 80% Source: UNCTAD Source: McKinsey Source: Forbes 94% of companies provide Privacy Metrics to their Boards Digital Risk THE MACRO CONDITIONS DRIVING DATA PRIVACY
  • 7. US DATA PRIVACY REGULATION AT A GLANCE • US PRIVACY ACT OF 1974: Rights and restrictions on data held by government agencies • GRAMM-LEACH-BILILEY ACT (GBLA): Protects financial nonpublic personal information • HEALTH INSURANCE PORTABILITY AND ACCOUNTABILITY ACT (HIPPA) Healthcare and health insurance personal data protection • CHILDREN’S ONLINE PRIVACY PROTECTION ACT (COPPA) Protects the personal information of those 12 and younger US PRIVACY ACT HIPAA GBLA COPPA 1974 1996 1999 2000
  • 8. California Consumer Privacy Act (CCPA) Massachusetts Data Privacy Law Colorado Privacy Act Connecticut Data Privacy Act Virginia Consumer Data Protection Act Utah Consumer Data Protection Act Michigan - Consumer Privacy Act New Jersey Disclosure and Accountability Transparent Act Ohio Personal Privacy Act STATE DATA REGULATIONS Statute/Bill In Legislative Process - Signed - Active Bills - Inactive
  • 9. Settles data breach suit for $1.2 million “Taking appropriate measures to safeguard clients’ personal information is not just part of a good business model, it is the law. This settlement should send a clear message to companies that skimp on data security as a cost- saving measure.” - Acting Attorney General Matthew Platkin DATA PROTECTION IS LAW
  • 10. YOU ALSO NEED TO CONTROL WHAT THE DATA IS BEING USED FOR Twitter will pay a $150 million penalty for data privacy misrepresentations: • In 2019, Twitter admitted to using users' phone numbers, which were submitted in order to enable two-step verification, for advertising purposes. • This violated both EU and US laws.
  • 11. How do you make the your API programs scalable without exposing the organisation to greater risk? Are your API consumers and producers compliant with all global data distribution regulations? Do you know who is accessing data and why? DEMAND FOR DATA 1 2 3 5 Are you having to create different APIs or Interfaces to service different access patterns? DIGITAL INITIATIVES ARE INCEASING THE DEMAND FOR DATA ACCESS
  • 12. API Consumer API Producer API Gateway SO YOU ACQUIRE A GATEWAY…
  • 13. API Gateway US Partners SaaS Products UK Customers Cloud Services EU Accounts Accounts Customer US Customer Order Balance EU Customer LUX Accounts …AND IT BECOMES POPULAR…
  • 15. API Consumer API Producer API Gateway Data Governance & Compliance Data Governance & Compliance WHAT IF YOUR GATEWAY SOLVED THIS?
  • 16. US Partners SaaS Products UK Customers Cloud Services Accounts Customer Order Balance API Gateway Data Governance & Compliance Data Governance & Compliance SET THE PATTERN, SIMPLIFY, RE-USE
  • 17. Locate and classify your API traffic Fast Continually test for risks during the life cycle Test Automatically solve data risks Solve Learn about your data risks Analyse F.A.S.T “By 2022, API abuses will move from an infrequent to the most frequent attack vector, resulting in data breaches for enterprise web applications” - Mark O’Neill, Gartner CONTINOUS DATA PRIVACY
  • 18. THE GATEWAYS ARE DOING MORE TO ENABLE MORE DATA IN MOTION
  • 19. Cost Reduction API Data Protection Innovation As and industry we recognise that we need to be able to be faster and easier to find and consume data. This means being able to reuse data By doing it at the gateways there are several benefits THE FUTURE
  • 20. w w w. e xa t e . c o m