Data Security Platforms
Research preview. Based on public sources, not deployment testing.
← All platforms

DataSunrise

Compare with…

DataSunrise combines database monitoring with discovery across databases, object stores and selected collaboration tools. Discovery, masking and blocking have different deployment paths. Confirm feature support for each source. [1] [2] [4]

Capabilities

Discovery & classification and Detection & response [1] [3]

Sources reviewed 4 sources

Data coverage

Read the scope beside each mark. Support for an environment does not establish every capability in every store.

Microsoft 365
Partial

The product catalog describes discovery for OneDrive and SharePoint. Exchange, Teams and permission-remediation depth are unconfirmed. [4]

AWS
Partial

The monitoring matrix names RDS, Aurora, Redshift, DynamoDB and S3. Feature parity across these sources is unconfirmed. [1]

Google Cloud
Partial

The catalog lists BigQuery and Google Cloud Storage alongside Cloud SQL in the monitoring matrix. Confirm which controls apply to each store. [1] [4]

Snowflake and Databricks
Partial

Snowflake is in the monitoring matrix and the product catalog also lists Databricks. Confirm discovery, monitoring and masking support separately for each. [1] [4]

On-prem shares
Partial

File and object discovery includes local and network storage. Confirm supported share protocols, permissions and content limits. [4]

SaaS apps
Partial

The catalog names Google Drive discovery and Salesforce masking. Confirm the exact workflow and edition for each app. [4]

How coverage is assessed

Deployment and cost

How it runs

The masking material distinguishes static and dynamic masking. [2] [3]

Static masking
The described workflow reads a source, masks selected columns and loads a target server.
Deployment
Confirm the query path and engine limitations for dynamic masking.
Monitoring and blocking
Passive collection provides visibility. Live blocking and dynamic masking require the appropriate proxy path.

Pricing and operating workload are not published in the reviewed sources.

Questions for the vendor

  1. Supply a per-engine matrix for discovery, activity monitoring, blocking and masking.
  2. Which deployment mode puts a component in the query path and how does failover work?
  3. Test whether privileged users and alternate connection paths can bypass dynamic masking.

Sources

  1. datasunrise.com
  2. datasunrise.com
  3. datasunrise.com
  4. datasunrise.com