On this page
Principle – Data Protection
Summary
Safeguard data through consistent backup, retention, and recovery practices aligned to business risk.
Intent
Ensure data integrity, regulatory compliance, and recoverability across platform services.
Scope and Applicability
Applies to persistent data, backups, snapshots, and retention policies across the platform.
Principles
- Align data protection tiers to workload criticality and RPO/RTO expectations.
- Automate backup workflows and validate restore procedures.
- Protect data in transit and at rest with approved controls.
Per-Domain Implementation
OpenShift
- Enforce standardized backup and restore tooling for cluster workloads.
Networking
- Ensure data protection services are reachable and resilient in network design.
Storage
- Provide storage tiers with clear backup and retention capabilities.
Security
- Govern access to protected data and backup systems.
Platform
- Define platform-wide backup policy baselines and evidence expectations.
AI
- Apply backup/retention to AI-relevant artifacts (datasets, embeddings/vector stores, and model registries) and validate restores.
Exceptions
Exceptions require documented risk acceptance and compensating controls.