Search the practice set

275 questions, 991 terms and 600 topics in 30 areas.

60 results for “Regulatory & Data Protection Architecture”

Terminology · 15
term

Obligation Mapping

Translating each legal or regulatory requirement into the specific design constraints it imposes, so that compliance becomes a set of testable properties rather than a document.

Regulatory & Data Protection Architecture
term

Personally Identifiable Information

Data relating to an identifiable person — a category far broader than name and address, and the trigger for most regulatory obligation.

Security Architecture
term

Capital One's Data Centre Exit

A major US bank closed all eight of its data centres and moved fully to public cloud, treating governance automation as the enabling technology rather than a constraint.

Enterprise Architecture
term

Change Data Capture

Publishing a stream of a database's row-level changes by reading its replication log, without modifying the application that owns it.

Data Architecture
term

Control Plane and Data Plane

The separation between the machinery that makes changes to a system and the machinery that serves its traffic.

Cloud Architecture
term

Cross-Zone Data Transfer

Charges incurred when data moves between availability zones within a region — invisible on architecture diagrams and a recurring surprise on cloud bills.

Availability Zones
term

Data Lakehouse

A pattern that puts warehouse-style transactions, schema and governance on top of cheap open-format object storage.

Data Architecture
term

Data Mesh

An organisational approach that gives domain teams ownership of their analytical data as a product, with a self-serve platform and federated governance.

Data Architecture
term

Data Minimisation

Collecting and retaining only what a stated purpose requires, which reduces both regulatory exposure and breach impact at the same time.

Privacy by Design
term

Data Residency

A requirement that specific data be stored and sometimes processed only within a defined geography.

Security Architecture
term

Data Retention Policy

A defined rule for how long each class of data is kept, where, and what happens at the end of it.

Data Architecture
term

Data-Flow Diagram

A diagram of how data moves between processes, stores and external entities, with trust boundaries drawn on it.

Architecture Communication
term

Layered Architecture

Organising code into horizontal layers — presentation, application, domain, data — where each layer may only call the one beneath it.

Architecture Patterns
term

Netflix's Recommendation Architecture

Netflix splits personalisation into offline, nearline and online layers so that expensive computation happens ahead of time and the request path stays fast.

Data Architecture
term

Regulatory Constraint

A legal requirement that removes design options — and one that must be established early, because it is not negotiable and is expensive to retrofit.

Business Architecture
Topics · 36
topic

Regulatory & Data Protection Architecture

General material on designing under legal and regulatory obligation.

2 items
topic

Healthcare Data Protection

PHI handling, minimum necessary access, and audit expectations in clinical systems.

2 items
topic

Consent Architecture

Capturing, versioning and propagating consent to every system that acts on the data.

3 items
topic

Data Residency

Keeping data within a jurisdiction, including backups, logs and support access.

3 items
topic

Data Subject Rights

Access, correction, portability and erasure across systems that never planned for them.

3 items
topic

Regulatory Reporting Pipelines

Submissions with fixed deadlines, fixed formats, and a regulator who audits the lineage.

2 items
topic

Cross-Border Transfer

The legal mechanism that permits data to leave, and the architecture that respects it.

2 items
topic

Digital Sovereignty

Control over data, operations and the operator, beyond where the bytes physically sit.

2 items
topic

Erasure vs Immutability

Deletion obligations against event logs, backups and ledgers designed never to forget.

2 items
topic

Exit & Concentration Risk

Being able to leave a provider, and what the regulator asks when you cannot.

3 items
topic

Financial Services Regulation

Operational resilience, payment rules and supervisory expectations as design inputs.

2 items
topic

Geo-Restriction & Sanctions

Blocking access by jurisdiction, and the accuracy and evasion problems that come with it.

2 items
topic

Lawful Basis & Purpose Limitation

Why you may hold the data, and why that forbids the second use somebody proposed.

2 items
topic

PCI-DSS Scoping

Segmentation and tokenisation to shrink what is in scope, because scope is the cost.

3 items
topic

Privacy by Design

Data minimisation, default protection and purpose binding as structural decisions.

3 items
topic

Privacy-Enhancing Technologies

Differential privacy, secure enclaves and federated computation, and what each buys.

2 items
topic

Pseudonymisation

Separating identity from record, and the re-identification risk that remains.

2 items
topic

Records Retention & Legal Hold

Keeping what must be kept, deleting what must go, and freezing both on demand.

2 items
topic

Sector Cloud Rules

Regulator expectations for cloud use, exit plans and material outsourcing notification.

2 items
topic

Third-Party Risk

Assessing, contracting and monitoring the vendors your architecture now depends on.

2 items
topic

Data Architecture

General material on structuring, storing and governing data.

56 items
topic

Data Platform Architecture

General material on designing the analytical data estate end to end.

2 items
topic

Change Data Capture

Turning a database's replication log into a stream, and its coupling risk.

7 items
topic

Client Caching & Data Layer

Stale-while-revalidate, invalidation and optimistic updates on the client.

2 items
topic

Data Classification

Knowing which fields are regulated, because every control depends on it.

3 items
topic

Data Governance

Ownership, lineage, quality, catalogues and who may see what.

7 items
topic

Data Lakes & Lakehouses

Open formats on object storage with transactional metadata on top.

7 items
topic

Data Lifecycle & Retention

How long data is kept, where it ages to, and how it is actually deleted.

7 items
topic

Data Platform Tenancy

Multiple domains on shared storage and compute, with separable access and cost.

2 items
topic

Data Vault Modelling

Hubs, links and satellites, and the auditability and load parallelism they buy.

2 items
topic

Data Virtualisation

Querying across sources without moving data, and the performance ceiling that imposes.

2 items
topic

Data Warehousing

Dimensional modelling, star schemas and analytical workloads.

7 items
topic

Data-Flow Diagrams

Following the data across trust boundaries rather than the calls.

3 items
topic

Medallion Architecture

Bronze, silver and gold layers, and what each layer is allowed to guarantee.

3 items
topic

Multi-Region Architecture

Surviving a region, and the data consistency price of doing so.

7 items
topic

Regulatory Constraints

Non-negotiable requirements that remove design options entirely.

2 items