Play video
Good day, I'm James Watson, I'm the line of business owner for our privacy solutions here at EPI-USE Labs. Throughout the world, we're now seeing a large uptake in new privacy laws. Obviously GDPR is the most commonly understood regulation out there. There are currently, as we stand in 2023, an additional seven US states that have issued their own privacy laws. We have the PDPA over in Asia covering Singapore and Thailand. There is also New Zealand Australia is moving forward, and it does look like there will be a federal law within the United States at some point this year or next. So the privacy problem for clients is becoming quite a large issue, and we've spent years on the assumption that more data is more value. And being able to capture all of the information about your consumers within your industry allows you to better market, allows you to better cycle through, and sell and ultimately improve your business. Unfortunately, now the new privacy laws mean that that data that's been captured is our liability. And it requires a direct approach to be able to manage retention periods, the actual removal of data, potentially archiving. There is a number of different items that you may need to address. At EPI-USE Labs, we've got professional services consultants that are experienced in delivering this project. We have unique technology, which is based on an engine that's existed for more than twenty years dealing with SAP Data Management. And now we can bring that to bear within our privacy solutions where we have Data Disclose, Data Redact, Data Retain, dealing with the production data, and also Data Secure that allows you to consistently anonymize your non production system. So between our professional services and IP team, we can provide you a with full solution for your privacy needs under these regulations, whether that is the US, GDPR or PDPA. They all have the same base understandings of a legal retention period for the data that you hold in your systems.
icons__Data_disclose_icons 657
Rispetta le legislazioni sulla privacy dei dati, come il GDPR.
icons__Data_disclose_icons 653
Proteggi i dati sensibili negli ambienti SAP non di produzione
icons__Data_disclose_icons 654
Esegui ricerche immediate nel landscape SAP per individuare, recuperare e presentare l’impronta dei dati di un soggetto
icons__Data_disclose_icons 655
Modifica rapidamente e senza interruzioni i dati sul campo senza compromettere l'integrità referenziale
icons__Data_disclose_icons 656
Individua in modo attivo i soggetti dei dati da redigere, basandoti su regole flessibili

Il panorama globale della privacy sta cambiando rapidamente, in linea con le modalità di utilizzo e condivisione dei dati nel nostro mondo moderno. In tutti i recenti (e futuri) atti/regolamenti sulla privacy, vi sono regole coerenti che riguardano:

  • diritto dell'interessato ad accedere alle informazioni in tuo possesso
  • Il diritto dell'interessato di richiedere la rimozione e/o la correzione dei dati in suo possesso
  • la necessità di una gestione attiva delle informazioni di identificazione personale (PII)
  • Il consenso informato ed esplicito degli interessati sull'utilizzo dei loro dati.

Questi cambiamenti sono complessi per tutte le aziende che utilizzano piattaforme ERP di grandi dimensioni come SAP, a causa del modello di dati integrato utilizzato per fornire soluzioni ERP. In qualità di esperti del modello di dati SAP, forniamo soluzioni mirate per le sfide da affrontare per conformarsi alle leggi sulla privacy dei dati.

global_privacy_laws_map_animation_website_loop_08_12_25_3_iteration_2

In base alle ultime informazioni disponibili al dicembre 2025

Play video
The first challenge that most businesses face from a privacy point of view is actually understanding how much of the risk they're holding within their data. Most industries have spent, fifteen, twenty years customizing an SAP environment, making it correct for their business process, with no consideration as to how much data they're then proliferating into additional tables. So actually then understanding and mapping that data is quite a large challenge especially because the people that built them have likely retired, moved on, and gone through natural attrition. So it does create quite a large business challenge, and to be able to build your business case for an investment in a privacy solution you first need to know how much risk you are mitigating to be able to follow it through. So to help with that, EPI-USE Labs have utilized our data model mapping that we've been using for the last twenty years to manage SAP data to build a discovery program. Now unlike some of the other competitors on the market, EPI-USE Labs are utilizing SAP domain knowledge that we've built to understand the data dictionary within your system, and we're able to complete a key search of the data elements within that environment based on the list of PII data items that we've already identified. The output list is then validated against whether the data is actually populated because, of course, just because it's in the system doesn't mean you've actually populated it. And we'll then go through a workshop and detailed analysis process with one of our professional services consultants where we will analyze and understand how we can integrate that data back to a data subject for a customer, a vendor or an employee, but also understand what values are maintained and map out that PII challenge for your SAP system. We collect all that information into a single document that has both the business functional requirements from the workshop, as to what retention periods you would like and how data should be affected based on those retention periods - so whether it should be cleared or transformed to a new value, and the same for non-production, for a system copy that you're going to use for testing, you need to have the real data from Production to improve your DevOps process. But you can't have the real data because that is a PII risk, and you would have to have informed and explicit consent from every data subject in your environment to use that data as testing, and no company has entered those clauses into a contract so far to be able to say they're ready. So with that documentation, you have the business requirements of how data should be transformed and then also the technical specification of exactly which tables and fields grouped according to data type to be able to understand where the names, where the telephone numbers, where the bank details exist within the environment. Additionally we now have an enhanced discovery working with one of our strategic partners Soterion. They offer GRC solutions as an alternative to SAP GRC. They have pre-delivered rule sets that are able to analyse your segregation of duties risk. They also have specific rule-sets to review your access to privacy data, to be able to understand who can actually see sensitive data within your SAP system. We also have queries to be able to understand where there's cross legal jurisdictional access. So where somebody from the US is able to access European employee data or vice-versa. Through that analysis, we're able to provide a clear risk assessment of both the access to sensitive data, and where that data is within your environment. Both of these options come as a license free, there is no license cost upfront, there is some professional services cost for around about one and a half to two weeks elapsed time, so in a very short turnaround period we're able to provide you this documentation, which we've seen from some of our clients is being used as audit evidence and passed through to their auditors to be able to help them understand your data model and how you're compliant to the laws. So the data discovery and enhanced data discovery are available from your Account Executives, and we would be happy to discuss them with you. As well as the output of the document, we will also then give you a fixed price, fixed scope implementation cost if you were to choose EPI-USE Labs as your privacy partner to be able to manage that data moving forward.

Individua e mappa i dati SAP sensibili e valuta i rischi di accesso

Individua, identifica e mappa le tue informazioni di identificazione personale (PII) con il servizio di valutazione della privacy dei dati SAP di EPI-USE Labs.

Soluzione Data Privacy Suite per SAP

La nostra Data Privacy Suite per le soluzioni SAP sfrutta la nostra suite Data Sync Manager™, leader del settore, che offre una comprensione logica dell'ambiente SAP e fornisce funzionalità di sub-setting dei dati e di mascheramento sicuro basato su regole. Le soluzioni Data Secure, Data Disclose, Data Redact e Data Retain si basano su una solida base di tecnologia e proprietà intellettuale esistente per aiutarti a rispettare la legislazione globale sulla privacy dei dati come GDPR, CCPA e POPIA.

Play video
DSM_Data_Privacy_Suite_Graphics_IT_2026_Data_Secure
DSM_Data_Privacy_Suite_Graphics_IT_2026_Data_Disclose
DSM_Data_Privacy_Suite_Graphics_IT_2026_Data_Redact
DSM_Data_Privacy_Suite_Graphics_IT_2026_Data_retain

Come rispettare le leggi sulla privacy dei dati in SAP

SAP è uno dei sistemi più robusti al mondo, ma anche uno dei più complessi, poiché nel corso degli anni ha acquistato e integrato molti componenti e soluzioni diverse. La struttura di SAP rende particolarmente complicato affrontare la conformità alla privacy dei dati. È necessaria una conoscenza dettagliata del dominio per mappare e comprendere l'integrazione interfunzionale di più oggetti e sistemi SAP.

EPI-USE Labs è un partner SAP da oltre 30 anni e conosce a fondo la struttura dei dati SAP. Abbiamo sviluppato una conoscenza dettagliata delle diverse versioni di SAP, compresi i loro usi e le loro complessità, e la nostra mappatura dell'integrità è definita sia a livello di singolo campo che tra i sistemi. Dal 2000, aiutiamo i nostri clienti a rispettare le leggi sulla privacy dei dati, eliminando i dati non di produzione copiati dai sistemi di produzione. Con la nostra tecnologia di ridimensionamento affrontiamo anche la rimozione dei dati sensibili in produzione.

La nostra Data Privacy Suite per le soluzioni SAP sfrutta la nostra suite Data Sync Manager™, leader del settore e certificata da SAP per l'integrazione con RISE with SAP S/4HANA Cloud. Il nostro team globale di servizi professionali ha ottenuto le certificazioni CISSP, CIPPT e CIPPM. Grazie a un'ampia esperienza di progetto in diversi Paesi e settori, siamo in grado di fornirti una guida esperta sulle tue sfide in materia di privacy dei dati.

Perché non richiedere una valutazione dei dati oggi stesso?

SAP_Certi_Integration_RISE_w_SAP_S4HANACloud_R

Esplora i casi di successo dei clienti soddisfatti

Scopri come essere conformi alle leggi sulla privacy dei dati.

DSM-assessment
Prenota il tuo servizio di valutazione della privacy dei dati SAP

Riduci al minimo i rischi di esposizione dei tuoi dati sensibili, gestisci la sicurezza dei tuoi dati e rispetta la legislazione globale sulla privacy con il nostro servizio di valutazione della privacy dei dati SAP.

DSM-assessment
Blog sulla sicurezza dei dati

Offriamo spunti di riflessione da parte di professionisti della sicurezza dei dati che hanno lavorato per decenni con le più grandi aziende, università e società di consulenza del mondo, con un focus specifico sulle soluzioni SAP.

DSM-assessment
Scopri le risposte alle domande

Hai domande sul DSM e su come potrebbe funzionare nel tuo caso? Dai un'occhiata alle domande poste da altri clienti nelle risposte alle domande frequenti.

Contattaci

Conformità alla legislazione sulla privacy dei dati: Data Privacy Suite per le soluzioni SAP