Sensitive Data Scanner | Datadog
Discover, classify, and redact sensitive data to build a modern compliance strategy at scale
Observability

Sensitive Data Scanner

Discover, classify, and redact sensitive data to build a modern compliance strategy at scale

Feature Overview

Datadog’s Sensitive Data Scanner helps businesses meet security and compliance goals by discovering, classifying, and redacting sensitive data across logs, traces, RUM, and events — in real-time and at scale. Datadog scans sensitive data at or prior to ingestion, and hashes or redacts this data following built-in or user-defined rules to help businesses stay compliant with GDPR, HIPAA, CCPA, and more.


Build a scalable and holistic data security and compliance strategy

  • Define exactly which data you want to scan using filters, across logs, APM spans, RUM events, and other telemetry data
  • Proactively scan your data in real-time and at scale to support a holistic loss prevention strategy
  • Scan and redact sensitive data before it leaves your environment via Observability Pipelines
Configure Sensitive Data Scanner to build a scalable and holistic compliance strategy
Configure Sensitive Data Scanner to build a scalable and holistic compliance strategy

Get a comprehensive understanding of sensitive data across cloud environments

  • Discover where sensitive data lives across cloud environments, such as AWS S3 and RDS instances
  • Quickly and easily prioritize sensitive data matches in the cloud and kickstart remediation efforts as needed
  • Correlate sensitive data issues with Cloud Security Management for contextualized vulnerability assessment
Get a comprehensive understanding of sensitive data across cloud environments
Get a comprehensive understanding of sensitive data across cloud environments

Classify sensitive data based on its content, source, or designated risk level

  • Standardize data classification across dev, ops, and security teams and across different cloud platforms and hybrid environments
  • Accelerate classification through out-of-the-box rules that capture common patterns, such as credit card numbers, API keys, tokens, AWS secret keys, and others
  • Inform data governance policies with searchable tags on risk level, data source and priority

Redact sensitive data and monitor user activity to support data security initiatives

  • Scrub sensitive data with predefined scanners from Datadog’s Data Scanner Library or custom scanners
  • Use audit events to keep a full record of user activity on the Datadog platform with Datadog Audit Trail
  • Manage who can access sensitive data by combining sensitive data scanning with Datadog’s fully integrated role-based access control (RBAC) permissions and restriction queries

Quickly detect sensitive data issues with dashboards and alerts

  • Save time by scanning and tagging new hosts, containers, and applications as soon as they are spun up
  • Tag sensitive data to allow teams to create real-time alerts and build dashboards
  • Reduce false positives with the help of industry-standard detection techniques, such as the Luhn algorithm to scan and redact credit card information
Automatically discover sensitive data across your cloud environment
Automatically discover sensitive data across your cloud environment

Recognized by G2 for Log Analysis and Log Monitoring

Product Brief: Sensitive Data Scanner

Learn how to scale data security and compliance across your telemetry

What's Next

Get started today with a 14-day free-trial of Sensitive Data Scanner


Learn more

Request a Demo

View documentation View pricing