Handling PII in Domo
The ability to properly identify and handle the storage of PII is a necessity for preserving privacy, especially when considering the HIPPA and GDPR types of regulations. Domo's policy for PII is buyer-be-aware. This means that they are neither for nor against PII, but strongly suggest that raw PII is not stored in Vault without first masking or redacting. Domo has provided methods for redacting or masking data. Additionally, there are specific HIPPA-compliant server configurations available upon request and regional server configurations where solutions for jurisdictional regulations requiring data to be physically stored in the jurisdiction are available. Data is always encrypted while at rest in Vault. The Bring Your Own Key (BYOK) option lets the customer control their encryption keys and includes a rolling generation of data keys and a built-in kill switch user interface. Under BYOK, not even people from Domo's internal operations can get at the...