Company
Date Published
Author
Michael Plank
Word count
632
Language
American English
Hacker News points
None

Summary

Dynatrace is enhancing data security for its SaaS customers by implementing dedicated storage and unique encryption keys for each tenant, thereby ensuring robust data separation and compliance with security standards, especially for clients in highly regulated sectors. Utilizing a multitenancy architecture, Dynatrace efficiently manages data ingestion and processing while ensuring secure data separation through multiple layers of security controls, such as unique encryption keys that are rotated annually. This approach is integrated with a rigorous secure development lifecycle that includes penetration testing, threat modeling, and a bug bounty program to detect and prevent potential vulnerabilities. Currently, these enhanced security features are available by default to Dynatrace SaaS customers on AWS and Azure, with plans to extend them to Google Cloud customers. The system assigns each tenant a dedicated storage unit on AWS S3 or Azure, encrypted with a unique key managed by Dynatrace, ensuring that data security requirements are met seamlessly without requiring user intervention.