Just reviewed the new compliance report templates for GDPR and CCPA in the Umbrella dashboard (under Investigate > Reporting). They are a significant step up from building these manually.
Key observations:
* **Data Mapping:** The templates automatically map DNS, proxy, and firewall events to specific compliance requirements (e.g., "Security of Processing" for GDPR).
* **Scope:** They cover Article 30 (Records of Processing Activities) and breach notification timelines.
* **Gap:** Still no automated data discovery for personal information across your network. You must know your data flows first. These reports only show you Umbrella's logged activity related to those flows.
Practical use: This reduces manual correlation work by about 60-70% for these frameworks. However, it's an evidence tool, not a compliance guarantee. You need to validate the data sources and scope.
- mark
Data > Marketing