Onboarding IBM Guardium Exposure Manager

Gain complete visibility and control over data across AI applications, databases, and endpoints by enabling data classification, policy definition, agent deployment, and role management in IBM® Guardium® Exposure Manager.

After you log in to the IBM Guardium Exposure Manager application, complete the following onboarding steps:

  1. On the Welcome page of IBM Guardium Exposure Manager, click Next.
  2. Define data classification.
  3. Define policy scopes.
  4. Deploy agents.
  5. Invite your team.
Note: The onboarding steps are required only the first time you log in to IBM Guardium Exposure Manager.

Define data classification

In the Define data classification step of onboarding, select either of the following cards, click Next, and then follow the on-screen instructions.

  • Use existing classification engine
  • Discover and classify automatically

If you select Use existing classification engine, IBM Guardium Exposure Manager connects to Microsoft™ 365 Purview and uses the existing classification data. For more information, see Connecting Microsoft 365 Purview with IBM Guardium Exposure Manager.

If you select Discover and classify automatically, you can connect to any of the supported cloud providers to enable automatic discovery and classification. For more information, see the following topics:

After you complete defining data classification, click Next to define policy scopes.

After onboarding, go to Management hub > Connections to add or edit connections.

Define policy scopes

In the Define policy scopes step of onboarding, select the Projects card, click Next, and then follow the on-screen instructions.

You can use projects to define logical groups of data stores, services, and applications, and then apply a fine-grained data security policy to each group of projects. For more information about how to create and manage projects, see Creating projects.

IBM Guardium Exposure Manager automatically creates a default project for data stores and a default cohort for devices.

After you complete defining policy scopes, click Next to deploy agents.

Deploy agents

In the optional Deploy agents step of onboarding, click the Windows installer card, follow the on-screen instructions to install the Windows operating system installer, and then click Next.

This step is optional but IBM recommends downloading and installing the agent on at least one endpoint before proceeding.

After onboarding, go to Inventory > Devices to view registered devices. To download the installer or manage the agent, go to Management hub > Workforce agent.

Invite your team

In the optional Invite your team step of onboarding, complete the following steps to assign roles to users and ensure they have access to view and modify the data pipeline, reports, settings, pages, and other users:

  1. In the Email field, enter the IBM email address of a user.
  2. In the Assign roles list, select the role that you want to assign to the user.
  3. Click Add to add the user and assign the role to them.
Note: You can repeat steps 1 to 3 multiple times to add multiple users.

After you add all the required users with their assigned roles, click Next.

After onboarding, you can go to Access management > User management to invite additional users.

You successfully onboarded IBM Guardium Exposure Manager with a defined data classification, defined projects, default policy, default cohort, and users with assigned roles. You can access the menu items of IBM Guardium Exposure Manager with all the user interface sections.