Unified Data Access Governance in a Data Mesh
Publication date: February 13, 2023 (Diagram history)
PrivaceraCloud provides federated computation governance for consistent data access control, governed data sharing, and compliance across AWS services and external on-premises data sources.
Unified Data Access Governance in a Data Mesh Using PrivaceraCloud on AWS
The following steps describe the architecture:
-
Data flows into AWS through batch processing, real-time data, or change data capture (CDC).
-
The producer domain manages data sources. Raw data is stored in Amazon S3 and processed using Amazon EMR, AWS Glue, DynamoDB, and Amazon RDS.
-
Metadata is managed through multiple services. AWS Glue provides data cataloging for discovery and governance.
-
The consumer domain uses processed data sets from multiple producer domains based on business needs. Consumers build a data mart using Amazon Redshift and Athena.
-
Consumers search and filter data sets recorded in the central data catalog by name, contents, sensitivity, or custom labels.
-
PrivaceraCloud delivers unified data access governance as a fully managed SaaS solution. Built on the attribute-based access control (ABAC) policy model of Apache Ranger, it applies governance to Amazon S3, AWS Glue, Amazon EMR, Amazon RDS, DynamoDB, Athena, and Amazon Redshift.
Further reading
For additional information, refer to the following resources:
Diagram history
To be notified about updates to this reference architecture diagram, subscribe to the RSS feed.
| Change | Description | Date |
|---|---|---|
Initial publication | Reference architecture diagram first published. | February 13, 2023 |
Note
To subscribe to RSS updates, you must have an RSS plugin enabled for the browser you are using.