{"id":13851,"date":"2020-07-01T15:16:56","date_gmt":"2020-07-01T19:16:56","guid":{"rendered":"http:\/\/www.iri.com\/blog\/?p=13851"},"modified":"2026-10-05T17:20:40","modified_gmt":"2026-10-05T21:20:40","slug":"darkshield-introduction","status":"publish","type":"post","link":"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/","title":{"rendered":"Introduction to IRI DarkShield"},"content":{"rendered":"<h2 style=\"text-align: left;\"><b><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">What is DarkShield?<\/span><\/span><\/b><\/h2>\n<p><a href=\"https:\/\/www.iri.com\/products\/darkshield\"><i><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">IRI DarkShield<\/span><\/span><\/span><\/i><\/a><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\"> is a data masking tool for classifying, searching, and de-identifying Personally Identifiable Information (PII) and other sensitive data in structured, semi-structured, and unstructured sources. You can define and run <\/span><\/span><\/span>DarkShield jobs through a GUI, CLI, or API.<\/p>\n<p><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">DarkShield supports data on-premises or in the cloud. <\/span><span style=\"vertical-align: inherit;\">Supported sources include <\/span><\/span><\/span><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-rpc-api\/\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">free-floating text<\/span><\/span><\/span><\/a><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">, <\/span><\/span><\/span><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-files-rpc-api\/\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">files<\/span><\/span><\/span><\/a><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">, and <\/span><\/span><\/span><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-files-rpc-api\/\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">documents<\/span><\/span><\/span><\/a><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">, <\/span><\/span><\/span><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/iri-darkshield-nosql-rpc-api\/\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">various NoSQL DBs<\/span><\/span><\/span><\/a><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\"> , and any <\/span><\/span><\/span><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/iri-darkshield-rdb-rpc-api\/\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">relational database<\/span><\/span><\/span><\/a><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\"> connected through a JDBC driver.\u00a0<\/span><\/span><\/span><\/p>\n<p><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">As one of several data masking tools in the <\/span><\/span><\/span><a href=\"https:\/\/www.iri.com\/products\/voracity\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">IRI Voracity<\/span><\/span><\/span><\/a><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\"> platform and <\/span><\/span><\/span><a href=\"https:\/\/www.iri.com\/products\/iri-data-protector\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">IRI Data Protector Suite<\/span><\/span><\/span><\/a><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\"> , DarkShield supports a wide range of data formats <\/span><\/span><\/span>and silos.<span id='easy-footnote-1-13851' class='easy-footnote-margin-adjust'><\/span><span class='easy-footnote'><a href='https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/#easy-footnote-bottom-1-13851' title='Consider your use case. IRI FieldShield or RowGen may be a better fit for your &lt;a href=&quot;https:\/\/www.iri.com\/solutions\/test-data&quot;&gt;relational database test data&lt;\/a&gt; requirements. IRI CellShield EE may be easier for your &lt;a href=&quot;https:\/\/www.iri.com\/blog\/data-protection\/iri-data-masking-tools-for-excel\/&quot;&gt;Excel&lt;\/a&gt; users to operate. See the tool comparison &lt;a href=&quot;https:\/\/tinyurl.com\/WhichIRIshield&quot;&gt;matrix&lt;\/a&gt;.'><sup>1<\/sup><\/a><\/span><\/p>\n<p>In addition, the data classes and masking functions defined for DarkShield jobs are also used in IRI FieldShield and IRI CellShield EE. This helps secure sensitive data consistently across different data silos and formats.<\/p>\n<h2><b><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">How Does It Work?<\/span><\/span><\/b><b><\/b><\/h2>\n<p>You can configure, run, and share most DarkShield jobs through the Eclipse-based IRI Workbench GUI. For more information about the DarkShield front end, see:<\/p>\n<p><a href=\"https:\/\/www.iri.com\/products\/workbench\/darkshield-gui\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">https:\/\/www.iri.com\/products\/workbench\/darkshield-gui<\/span><\/span><\/span><\/a><\/p>\n<p>Under the hood, DarkShield runs one or more Remote Procedure Call (RPC) API engines, depending on the data source or sources involved. These engines perform the searching and masking operations through a server in your infrastructure called the <strong>Plankton Server<\/strong>. The server accepts HTTP(S) requests containing instructions for finding and masking PII.<\/p>\n<p>In practice, you host the DarkShield API server either on-premises or on a cloud server that you manage. IRI does not maintain or manage these services, and PII does not leave your environment.<\/p>\n<p>DarkShield sends its PII search methods to the applicable API in instructional JSON payloads called <em>Search Contexts<\/em>. In contrast, <em>Mask Contexts<\/em> provide instructions for masking the PII identified during a search.<\/p>\n<p>Within IRI Workbench, <a href=\"https:\/\/www.iri.com\/blog\/data-protection\/iri-data-classification\/\"><span style=\"font-weight: 400;\">Data Classes<\/span><\/a> containing <a href=\"https:\/\/www.iri.com\/blog\/data-protection\/data-matchers\/\"><span style=\"font-weight: 400;\">Data Matchers<\/span><\/a> and <a href=\"https:\/\/www.iri.com\/blog\/data-protection\/location-matchers\/\"><span style=\"font-weight: 400;\">Location Matchers<\/span><\/a> define the Search Contexts.\u00a0In turn, Masking Rules paired with Data Classes create the Mask Contexts. <span style=\"font-weight: 400;\">The consistent application of deterministic <\/span><a href=\"https:\/\/www.iri.com\/solutions\/data-masking\/static-data-masking\"><span style=\"font-weight: 400;\">data masking functions<\/span><\/a> helps<span style=\"font-weight: 400;\"> preserve data and referential integrity across all target silos.<\/span><\/p>\n<p>Additionally, provided alongside the Search and Mask Contexts are additional contexts that provide instructions on where to read data from (FileSearchContext, NoSqlSearchContext, RdbSearchContext) and where to write masked data to (FileMaskContext, NoSqlMaskContext, RdbMaskContext).<\/p>\n<p>Pairing search methods with masking functions provides more granular control over how sensitive data is protected. For example, you can configure a DarkShield job to redact detected credit card numbers while applying a consistent pseudonym replacement to names wherever they are found.<\/p>\n<h2><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter wp-image-19473\" src=\"https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/DarkShield-V7-1-650x1024.png\" alt=\"IRI DarkShield Version 7 architecture with user interfaces, data classes, masking rules, REST API, and audit logging\" width=\"459\" height=\"723\" srcset=\"https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/DarkShield-V7-1.png 650w, https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/DarkShield-V7-1-190x300.png 190w, https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/DarkShield-V7-1-768x1209.png 768w, https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/DarkShield-V7-1-975x1536.png 975w, https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/DarkShield-V7-1-1300x2048.png 1300w\" sizes=\"(max-width: 459px) 100vw, 459px\" \/><\/h2>\n<h2><b>Getting Started<\/b><\/h2>\n<p><span style=\"font-weight: 400;\">You can license DarkShield as a standalone product, or as part of a bundle with IRI FieldShield or IRI CellShield EE in the <\/span><a href=\"https:\/\/www.iri.com\/products\/voracity\"><i><span style=\"font-weight: 400;\">IRI Voracity<\/span><\/i><\/a><span style=\"font-weight: 400;\"> data management platform. Licensing and pricing options are on <\/span><a href=\"https:\/\/www.iri.com\/products\/darkshield\/platforms-pricing\"><span style=\"font-weight: 400;\">this<\/span><\/a><span style=\"font-weight: 400;\"> page. <\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><\/p>\n<p>After licensing or evaluation begins, IRI will send you download and installation instructions.\u00a0<span style=\"font-weight: 400;\">At installation time, you will need to register a provided version of the IRI CoSort engine, <\/span><i><span style=\"font-weight: 400;\">sortcl<\/span><\/i><span style=\"font-weight: 400;\">, to enable masking jobs. <img loading=\"lazy\" decoding=\"async\" class=\"alignright wp-image-17234\" src=\"\/blog\/wp-content\/uploads\/2020\/07\/Darkshield-API-208x300.png\" alt=\"DarkShield API interface showing search and mask endpoints for creating, destroying, searching, and masking data contexts\" width=\"300\" height=\"433\" srcset=\"https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/Darkshield-API-208x300.png 208w, https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/Darkshield-API.png 234w\" sizes=\"(max-width: 300px) 100vw, 300px\" \/><\/span><\/p>\n<p>At runtime, the DarkShield API runs on a web server called <strong>Plankton<\/strong>, which listens for requests. These HTTP(S) payloads can contain instructions for finding and masking PII in the form of Search Contexts and Mask Contexts. Additionally, they can also contain instructions specifying where to access and read data from and where to write the masked results.<\/p>\n<p>You can install DarkShield either as the backend engine (API) only or together with IRI Workbench (GUI). Before running any jobs, you must first start the DarkShield server.<span style=\"font-weight: 400;\"> <span id='easy-footnote-2-13851' class='easy-footnote-margin-adjust'><\/span><span class='easy-footnote'><a href='https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/#easy-footnote-bottom-2-13851' title='\u00a0If you are running DarkShield from Workbench, open the DarkShield API configuration dialog in preferences and paste the local or remote folder location of the DarkShield API distribution (e.g., C:\\IRI\\DarkShield\\API\\plankton-1.5.1). Click the &lt;i&gt;Start Server button&lt;\/i&gt;, and then &lt;i&gt;Apply (and Close)&lt;\/i&gt;. You should see startup messages for the API server in the Workbench console window confirming the DarkShield API is configured correctly for use and management in Workbench.'><sup>2<\/sup><\/a><\/span> <\/span><\/p>\n<p>You can start the DarkShield server through the:<\/p>\n<ol start=\"1\">\n<li>Shell or batch startup script in the DarkShield API distribution <em>bin<\/em> directory;<\/li>\n<li>Workbench <em>Window &gt; Preferences &gt; IRI &gt; DarkShield<\/em> properties dialog; <strong>or<\/strong><\/li>\n<li>DarkShield API Status view in your workspace<\/li>\n<\/ol>\n<h2><b>Connecting to Different Sources<\/b><\/h2>\n<p>Whether called directly or used through IRI Workbench, DarkShield uses different API plugins to access and manipulate different source types. These include streaming text (strings), standalone or embedded files, documents and images, NoSQL databases, and relational databases.<\/p>\n<p>For file sources, DarkShield supports several formats, including:<\/p>\n<ul>\n<li>.doc, .docx, .xls, .xlsx, .ppt<\/li>\n<li>.csv, .tsv, and fixed-length files<\/li>\n<li>JSON and XML<\/li>\n<li>DICOM, JPG, PNG, GIF, and TIF<\/li>\n<li>Parquet<\/li>\n<li>HL7v2 and X12<\/li>\n<\/ul>\n<p>For local deployments, DarkShield can access files stored on the local machine or LAN. In addition, from IRI Workbench, DarkShield can access files stored in cloud sources such as Azure Blob Storage, Google Cloud Storage, S3 Buckets, OneDrive, and SharePoint Online.<\/p>\n<p><span style=\"font-weight: 400;\">Read the articles on the <\/span><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-files-rpc-api\/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=darkshield-files-rpc-api\"><span style=\"font-weight: 400;\">DarkShield-Files plug-in<\/span><\/a><span style=\"font-weight: 400;\"> (RPC API for files) or the <\/span><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/finding-and-masking-pii-in-files-with-the-darkshield-files-wizard\/\"><span style=\"font-weight: 400;\">New File Search\/Masking Job \u2026 wizard<\/span><\/a><span style=\"font-weight: 400;\"> in IRI Workbench to learn how to find and mask PII across many different file formats and silos at once.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">For NoSQL databases, the DarkShield NoSQL wizard currently supports these sources:<\/span><\/p>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Cassandra<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">Elasticsearch<\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\">MongoDB<\/span><\/li>\n<\/ul>\n<p>For more details, r<span style=\"font-weight: 400;\">ead the blog articles on the <\/span><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/iri-darkshield-nosql-rpc-api\/\"><span style=\"font-weight: 400;\">NoSQL plugin<\/span><\/a><span style=\"font-weight: 400;\"> or the <\/span><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/finding-and-masking-nosql-dbs-with-the-darkshield-gui\/\"><span style=\"font-weight: 400;\">NoSQL wizard<\/span><\/a><span style=\"font-weight: 400;\"> for DarkShield to learn more about setting up connections to those sources. You can also use the DarkShield API with glue code to search and mask PII in at least seven additional NoSQL databases. Sample projects are available <\/span><a href=\"https:\/\/github.com\/TeamIRI\/darkshield-api-demos\"><span style=\"font-weight: 400;\">here<\/span><\/a><span style=\"font-weight: 400;\">.<\/span><\/p>\n<p><span style=\"font-weight: 400;\">For relational database sources, DarkShield supports any instance that you can access through a JDBC connection. <span id='easy-footnote-3-13851' class='easy-footnote-margin-adjust'><\/span><span class='easy-footnote'><a href='https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/#easy-footnote-bottom-3-13851' title=' The JDBC driver(s) must be located in the API distribution \/lib subfolder, which happens automatically when running a DarkShield job.'><sup>3<\/sup><\/a><\/span><\/span><span style=\"font-weight: 400;\"> See the JDBC sections of <\/span><a href=\"https:\/\/www.iri.com\/services\/training\/courseware#db-connections\"><span style=\"font-weight: 400;\">these articles<\/span><\/a><span style=\"font-weight: 400;\"> for database-specific connection guidance. \u00a0You can also read about <\/span><span style=\"font-weight: 400;\">the DarkShield <\/span><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/iri-darkshield-rdb-rpc-api\/\"><span style=\"font-weight: 400;\">RDB plugin<\/span><\/a><span style=\"font-weight: 400;\"> or <\/span><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/finding-and-masking-pii-in-relational-databases-with-the-darkshield-rdb-wizard\/\"><span style=\"font-weight: 400;\">RDB wizard<\/span><\/a><span style=\"font-weight: 400;\"> to learn\u00a0<\/span>more about working with relational database sources.<\/p>\n<h2><b>Classifying PII<\/b><\/h2>\n<p>Data classification is the process of defining and labeling specific types of data, such as email addresses, ID numbers, and last names, into unique abstract categories called <strong>Data Classes<\/strong> or <strong>Data Class Groups<\/strong>.\u00a0These classifications use certain location attributes or characteristics of the data itself.<\/p>\n<p>To begin, DarkShield requires you to classify data in IRI Workbench, usually as a one-time setup, so it can find and mask the data you are looking for. The Data Classification process begins when you create a project and choose to configure a <strong>Data Class and Rule Library (.dcrlib file)<\/strong>.<\/p>\n<p>Once configured, this library stores the Data Classes you define, along with the search methods and masking functions assigned to them, for use in search and masking jobs. The library can also be <a href=\"https:\/\/www.iri.com\/blog\/iri\/iri-workbench\/sharing-iri-data-management-jobs-via-git\/\"><span style=\"font-weight: 400;\">shared<\/span><\/a> where appropriate.<\/p>\n<p><span style=\"font-weight: 400;\">To learn more about the Data Classification process, please refer to this <\/span><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/iri-data-classification\/\"><span style=\"font-weight: 400;\">article<\/span><\/a><span style=\"font-weight: 400;\">.<\/span><\/p>\n<h2><b>Applying Masking Functions<\/b><\/h2>\n<p>For masking, DarkShield applies masking functions through <strong>Masking Rules<\/strong>. You create and store these rules in the Data Class and Rule Library, which resides in an IRI Project folder. As a result, you can reuse and modify the rules as needed.<\/p>\n<p>When defining a DarkShield job in any of the DarkShield masking wizards, you can pair Masking Rules with Data Classes. These rules can support masking PII using <a href=\"https:\/\/www.iri.com\/solutions\/data-masking\/static-data-masking\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\">various techniques<\/span><\/span><\/a><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"> such as:<\/span><\/span><\/p>\n<ol>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">NSA Suite B and FIPS-compliant encryption and decryption algorithms, including format-preserving encryption<\/span><\/span><\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">MD5, SHA-1 and SHA-2 hashing<\/span><\/span><\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">Deletion\/removal<\/span><\/span><\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">Full or partial string <\/span><\/span><\/span><a href=\"https:\/\/www.iri.com\/solutions\/data-masking\/static-data-masking\/redact\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">editing<\/span><\/span><\/span><\/a><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><a href=\"https:\/\/www.iri.com\/solutions\/data-masking\/static-data-masking\/pseudonymize\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">Pseudonymization<\/span><\/span><\/span><\/a><\/li>\n<\/ol>\n<h2><b><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">Auditing Jobs<\/span><\/span><\/b><\/h2>\n<p>After running a search-only, search and mask, or mask-only job, DarkShield produces a number of artifacts for PII discovery, compliance auditing, and operational monitoring.<\/p>\n<p><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">For example, search and masking logs are produced in machine-readable delimited <span id='easy-footnote-4-13851' class='easy-footnote-margin-adjust'><\/span><span class='easy-footnote'><a href='https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/#easy-footnote-bottom-4-13851' title='The delimited log file is for file-related search results only. JSON logs cover all sources plus masking.'><sup>4<\/sup><\/a><\/span> <\/span><\/span><\/span><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">and JSON formats. These outputs are suitable for reporting or export to analytic tools like <\/span><\/span><\/span><a href=\"https:\/\/www.iri.com\/ftp9\/pdf\/DarkShield\/DelmitedDarkShieldSearchLogSample.pdf\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">Excel<\/span><\/span><\/span><\/a><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\"> , <\/span><\/span><\/span><a href=\"https:\/\/www.iri.com\/blog\/business-intelligence\/datadog-security-analytics-darkshield\/\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">Datadog<\/span><\/span><\/span><\/a><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\"> , <\/span><\/span><\/span><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-splunk-es\/\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">Splunk ES<\/span><\/span><\/span><\/a><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\"> , and <\/span><\/span><\/span><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/splunk-phantom-playbook-masking\/\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">Phantom<\/span><\/span><\/span><\/a><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\"> playbooks.<\/span><\/span><\/span><\/p>\n<p>In addition, DarkShield also produces interactive, aggregate dashboard charts that can be used to visualize results and take action without requiring a SIEM tool, such as the \u201cheat map\u201d shown below.<\/p>\n<p><img loading=\"lazy\" decoding=\"async\" class=\"aligncenter wp-image-17235\" src=\"\/blog\/wp-content\/uploads\/2020\/07\/DS-Aggregrate-Result-300x208.png\" alt=\"DarkShield Aggregate Results Report showing top sources of sensitive data discovered during a PII search\" width=\"470\" height=\"326\" srcset=\"https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/DS-Aggregrate-Result-300x208.png 300w, https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/DS-Aggregrate-Result.png 512w\" sizes=\"(max-width: 470px) 100vw, 470px\" \/><\/p>\n<p><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">See <\/span><\/span><\/span><a href=\"https:\/\/www.iri.com\/products\/workbench\/darkshield-gui\/audit-logs\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">this article<\/span><\/span><\/span><\/a><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\"> for details on the HTML5 charts you can customize from IRI Workbench.<\/span><\/span><\/span><\/p>\n<h2><b><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">Advanced Topics<\/span><\/span><\/b><\/h2>\n<p>For more information about DarkShield, see these additional resources:<\/p>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><strong><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">Video: <\/span><\/span><\/strong><a href=\"https:\/\/www.youtube.com\/watch?v=FZtZ7dV5U24&amp;list=PL7nHBVSFkLEBsSYTQ_BLETXyUbB6Pe_2O&amp;index=4&amp;ab_channel=IRITheCoSortCo\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">PDF configuration options<\/span><\/span><\/span><\/a><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><strong><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/named-entity-recognition-ner-in-iri-darkshield\/\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">Named Entity Recognition (NER)<\/span><\/span><\/a><\/strong><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><strong><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">DarkShield Wizards<\/span><\/span><\/strong>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"3\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">Files wizard <\/span><\/span><\/span><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/finding-and-masking-pii-in-files-with-the-darkshield-files-wizard\/\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">article<\/span><\/span><\/span><\/a><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\"> and <\/span><\/span><\/span><a href=\"https:\/\/www.youtube.com\/watch?v=-feeDkpalmw&amp;list=PL7nHBVSFkLEBsSYTQ_BLETXyUbB6Pe_2O&amp;ab_channel=IRITheCoSortCo\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">video<\/span><\/span><\/span><\/a><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"3\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">NoSQL wizard <\/span><\/span><\/span><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/finding-and-masking-nosql-dbs-with-the-darkshield-gui\/\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">article<\/span><\/span><\/span><\/a><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\"> and <\/span><\/span><\/span><a href=\"https:\/\/www.youtube.com\/watch?v=-p6PzR0r-Cc&amp;list=PL7nHBVSFkLEBsSYTQ_BLETXyUbB6Pe_2O&amp;index=2&amp;ab_channel=IRITheCoSortCo\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">video<\/span><\/span><\/span><\/a><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"3\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">RDB wizard <\/span><\/span><\/span><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/finding-and-masking-pii-in-relational-databases-with-the-darkshield-rdb-wizard\/\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">article<\/span><\/span><\/span><\/a><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\"> and <\/span><\/span><\/span><a href=\"https:\/\/www.youtube.com\/watch?v=m4BI0UQbpzI&amp;list=PL7nHBVSFkLEBsSYTQ_BLETXyUbB6Pe_2O&amp;index=3&amp;ab_channel=IRITheCoSortCo\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">video<\/span><\/span><\/span><\/a><\/li>\n<\/ul>\n<\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><strong><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">DarkShield RPC API calls<\/span><\/span><\/strong>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"3\"><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-rpc-api\/\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">Base API<\/span><\/span><\/span><\/a><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\"> (for text)<\/span><\/span><\/span><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"3\"><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-files-rpc-api\/?utm_source=rss&amp;utm_medium=rss&amp;utm_campaign=darkshield-files-rpc-api\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">Files API<\/span><\/span><\/span><\/a><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"3\"><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/iri-darkshield-nosql-rpc-api\/\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">NoSQL API<\/span><\/span><\/span><\/a><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"3\"><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/iri-darkshield-rdb-rpc-api\/\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">RDB API<\/span><\/span><\/span><\/a><\/li>\n<\/ul>\n<\/li>\n<\/ul>\n<ul>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><strong><a href=\"https:\/\/www.iri.com\/blog\/data-protection\/load-balancing-authenticating-darkshield-via-nginx\/\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">Load Balancing &amp; User Authentication<\/span><\/span><\/a><\/strong><\/li>\n<li style=\"font-weight: 400;\" aria-level=\"1\"><strong><a href=\"https:\/\/www.iri.com\/blog\/test-data\/generating-test-data-in-pdf-and-images\/\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">Putting Test Data in Images and PDFs<\/span><\/span><\/a><\/strong><\/li>\n<\/ul>\n<p><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\"><span style=\"vertical-align: inherit;\">In general, you can find additional DarkShield resources here: <\/span><\/span><\/span><span style=\"vertical-align: inherit;\"><a href=\"https:\/\/www.iri.com\/services\/training\/courseware#iri-darkshield\"><span style=\"font-weight: 400;\"><span style=\"vertical-align: inherit;\">https:\/\/www.iri.com\/services\/training\/courseware#iri-darkshield<\/span><\/span><\/a><\/span><span style=\"font-weight: 400;\"><br \/>\n<\/span><\/p>\n<h2>Frequently Asked Questions<\/h2>\n<h3>What types of data sources does IRI DarkShield support?<\/h3>\n<p>IRI DarkShield can find and mask sensitive data in structured, semi-structured, and unstructured sources. Supported sources include free-floating text, files and documents, NoSQL databases, and relational databases accessible through a JDBC connection. DarkShield can work with data stored on-premises or in supported cloud environments.<\/p>\n<h3>How does DarkShield find and mask PII?<\/h3>\n<p>DarkShield uses Search Contexts to define how PII and other sensitive data should be found. In IRI Workbench, Search Contexts are derived from Data Classes containing Data Matchers and Location Matchers. Mask Contexts specify how discovered data should be protected using Masking Rules paired with those Data Classes.<\/p>\n<h3>What data masking techniques does DarkShield support?<\/h3>\n<p>DarkShield Masking Rules support techniques including NSA Suite B and FIPS-compliant encryption and decryption algorithms, format-preserving encryption, MD5, SHA-1 and SHA-2 hashing, deletion or removal, full or partial string editing, and pseudonymization.<\/p>\n<h3>Can DarkShield protect data without sending PII outside the organization?<\/h3>\n<p>Yes. The DarkShield API server can be hosted on-premises or on a cloud server managed by the customer. IRI does not maintain or manage those services, so PII does not need to leave the customer&#8217;s environment.<\/p>\n<p>If you have questions about IRI DarkShield or other IRI data masking tools, or if you are interested in a demonstration or free trial, please email <a href=\"mailto:info@iri.com\">info@iri.com<\/a>.<\/p>\n","protected":false},"excerpt":{"rendered":"<p>What is DarkShield? IRI DarkShield is a data masking tool for classifying, searching, and de-identifying Personally Identifiable Information (PII) and other sensitive data in structured, semi-structured, and unstructured sources. You can define and run DarkShield jobs through a GUI, CLI, or API. DarkShield supports data on-premises or in the cloud. Supported sources include free-floating text,<\/p>\n<div><a class=\"btn-filled btn\" href=\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/\" title=\"Introduction to IRI DarkShield\">Read More<\/a><\/div>\n","protected":false},"author":112,"featured_media":17240,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_acf_changed":false,"_exactmetrics_skip_tracking":false,"_exactmetrics_sitenote_active":false,"_exactmetrics_sitenote_note":"","_exactmetrics_sitenote_category":0,"footnotes":""},"categories":[8,91,29,2255],"tags":[1433,1081,14,546,1388,520,850,149],"class_list":["post-13851","post","type-post","status-publish","format-standard","has-post-thumbnail","hentry","category-data-protection","category-iri-workbench","category-test-data","category-archived-articles","tag-dark-data-masking","tag-data-classification","tag-data-masking","tag-iri-cosort","tag-iri-darkshield","tag-iri-fieldshield","tag-iri-workbench","tag-pii"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO Premium plugin v23.4 (Yoast SEO v23.4) - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>IRI DarkShield: Data Discovery and Masking Overview<\/title>\n<meta name=\"description\" content=\"Discover how IRI DarkShield finds, classifies, and masks PII across structured, semi-structured, and unstructured data sources on-premises or in the cloud.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Introduction to IRI DarkShield\" \/>\n<meta property=\"og:description\" content=\"Discover how IRI DarkShield finds, classifies, and masks PII across structured, semi-structured, and unstructured data sources on-premises or in the cloud.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/\" \/>\n<meta property=\"og:site_name\" content=\"IRI\" \/>\n<meta property=\"article:published_time\" content=\"2020-07-01T19:16:56+00:00\" \/>\n<meta property=\"article:modified_time\" content=\"2026-10-05T21:20:40+00:00\" \/>\n<meta property=\"og:image\" content=\"https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/Introduction-to-IRI-DarkShield.png\" \/>\n\t<meta property=\"og:image:width\" content=\"768\" \/>\n\t<meta property=\"og:image:height\" content=\"368\" \/>\n\t<meta property=\"og:image:type\" content=\"image\/png\" \/>\n<meta name=\"author\" content=\"Dmitry Kulakov and Adam Lewis\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Dmitry Kulakov and Adam Lewis\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"9 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/#article\",\"isPartOf\":{\"@id\":\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/\"},\"author\":{\"name\":\"Dmitry Kulakov and Adam Lewis\",\"@id\":\"https:\/\/www.iri.com\/blog\/#\/schema\/person\/6434d748d01ce766d6a2ff576d747cfb\"},\"headline\":\"Introduction to IRI DarkShield\",\"datePublished\":\"2020-07-01T19:16:56+00:00\",\"dateModified\":\"2026-10-05T21:20:40+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/\"},\"wordCount\":1683,\"publisher\":{\"@id\":\"https:\/\/www.iri.com\/blog\/#organization\"},\"image\":{\"@id\":\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/Introduction-to-IRI-DarkShield.png\",\"keywords\":[\"dark data masking\",\"data classification\",\"data masking\",\"IRI CoSort\",\"IRI DarkShield\",\"IRI FieldShield\",\"IRI Workbench\",\"PII\"],\"articleSection\":[\"Data Masking\/Protection\",\"IRI Workbench\",\"Test Data\",\"Archived Articles\"],\"inLanguage\":\"en-US\"},{\"@type\":\"WebPage\",\"@id\":\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/\",\"url\":\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/\",\"name\":\"IRI DarkShield: Data Discovery and Masking Overview\",\"isPartOf\":{\"@id\":\"https:\/\/www.iri.com\/blog\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/Introduction-to-IRI-DarkShield.png\",\"datePublished\":\"2020-07-01T19:16:56+00:00\",\"dateModified\":\"2026-10-05T21:20:40+00:00\",\"description\":\"Discover how IRI DarkShield finds, classifies, and masks PII across structured, semi-structured, and unstructured data sources on-premises or in the cloud.\",\"breadcrumb\":{\"@id\":\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/#primaryimage\",\"url\":\"https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/Introduction-to-IRI-DarkShield.png\",\"contentUrl\":\"https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/Introduction-to-IRI-DarkShield.png\",\"width\":768,\"height\":368,\"caption\":\"IRI DarkShield for sensitive data discovery, classification, and masking across enterprise data sources\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/www.iri.com\/blog\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Introduction to IRI DarkShield\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/www.iri.com\/blog\/#website\",\"url\":\"https:\/\/www.iri.com\/blog\/\",\"name\":\"IRI\",\"description\":\"Total Data Management Blog\",\"publisher\":{\"@id\":\"https:\/\/www.iri.com\/blog\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/www.iri.com\/blog\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\/\/www.iri.com\/blog\/#organization\",\"name\":\"IRI\",\"url\":\"https:\/\/www.iri.com\/blog\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/www.iri.com\/blog\/#\/schema\/logo\/image\/\",\"url\":\"https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2019\/02\/iri-logo-total-data-management-small-1.png\",\"contentUrl\":\"https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2019\/02\/iri-logo-total-data-management-small-1.png\",\"width\":750,\"height\":206,\"caption\":\"IRI\"},\"image\":{\"@id\":\"https:\/\/www.iri.com\/blog\/#\/schema\/logo\/image\/\"}},[{\"@type\":[\"Person\"],\"@id\":\"https:\/\/www.iri.com\/blog\/#\/schema\/person\/6434d748d01ce766d6a2ff576d747cfb\",\"name\":\"Dmitry Kulakov\",\"image\":{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/www.iri.com\/blog\/#\/schema\/person\/image\/\",\"inLanguage\":\"en_US\",\"url\":\"\",\"caption\":\"Dmitry Kulakov\"}},{\"@type\":[\"Person\"],\"@id\":\"https:\/\/www.iri.com\/blog\/#\/schema\/person\/6434d748d01ce766d6a2ff576d747cfb\",\"name\":\"Adam Lewis\",\"image\":{\"@type\":\"ImageObject\",\"@id\":\"https:\/\/www.iri.com\/blog\/#\/schema\/person\/image\/\",\"inLanguage\":\"en_US\",\"url\":\"\",\"caption\":\"Adam Lewis\"}}]]}<\/script>\n<!-- \/ Yoast SEO Premium plugin. -->","yoast_head_json":{"title":"IRI DarkShield: Data Discovery and Masking Overview","description":"Discover how IRI DarkShield finds, classifies, and masks PII across structured, semi-structured, and unstructured data sources on-premises or in the cloud.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/","og_locale":"en_US","og_type":"article","og_title":"Introduction to IRI DarkShield","og_description":"Discover how IRI DarkShield finds, classifies, and masks PII across structured, semi-structured, and unstructured data sources on-premises or in the cloud.","og_url":"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/","og_site_name":"IRI","article_published_time":"2020-07-01T19:16:56+00:00","article_modified_time":"2026-10-05T21:20:40+00:00","og_image":[{"width":768,"height":368,"url":"https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/Introduction-to-IRI-DarkShield.png","type":"image\/png"}],"author":"Dmitry Kulakov and Adam Lewis","twitter_card":"summary_large_image","twitter_misc":{"Written by":"Dmitry Kulakov and Adam Lewis","Est. reading time":"9 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/#article","isPartOf":{"@id":"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/"},"author":{"name":"Dmitry Kulakov and Adam Lewis","@id":"https:\/\/www.iri.com\/blog\/#\/schema\/person\/6434d748d01ce766d6a2ff576d747cfb"},"headline":"Introduction to IRI DarkShield","datePublished":"2020-07-01T19:16:56+00:00","dateModified":"2026-10-05T21:20:40+00:00","mainEntityOfPage":{"@id":"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/"},"wordCount":1683,"publisher":{"@id":"https:\/\/www.iri.com\/blog\/#organization"},"image":{"@id":"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/#primaryimage"},"thumbnailUrl":"https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/Introduction-to-IRI-DarkShield.png","keywords":["dark data masking","data classification","data masking","IRI CoSort","IRI DarkShield","IRI FieldShield","IRI Workbench","PII"],"articleSection":["Data Masking\/Protection","IRI Workbench","Test Data","Archived Articles"],"inLanguage":"en-US"},{"@type":"WebPage","@id":"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/","url":"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/","name":"IRI DarkShield: Data Discovery and Masking Overview","isPartOf":{"@id":"https:\/\/www.iri.com\/blog\/#website"},"primaryImageOfPage":{"@id":"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/#primaryimage"},"image":{"@id":"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/#primaryimage"},"thumbnailUrl":"https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/Introduction-to-IRI-DarkShield.png","datePublished":"2020-07-01T19:16:56+00:00","dateModified":"2026-10-05T21:20:40+00:00","description":"Discover how IRI DarkShield finds, classifies, and masks PII across structured, semi-structured, and unstructured data sources on-premises or in the cloud.","breadcrumb":{"@id":"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/#primaryimage","url":"https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/Introduction-to-IRI-DarkShield.png","contentUrl":"https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/Introduction-to-IRI-DarkShield.png","width":768,"height":368,"caption":"IRI DarkShield for sensitive data discovery, classification, and masking across enterprise data sources"},{"@type":"BreadcrumbList","@id":"https:\/\/www.iri.com\/blog\/data-protection\/darkshield-introduction\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/www.iri.com\/blog\/"},{"@type":"ListItem","position":2,"name":"Introduction to IRI DarkShield"}]},{"@type":"WebSite","@id":"https:\/\/www.iri.com\/blog\/#website","url":"https:\/\/www.iri.com\/blog\/","name":"IRI","description":"Total Data Management Blog","publisher":{"@id":"https:\/\/www.iri.com\/blog\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/www.iri.com\/blog\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/www.iri.com\/blog\/#organization","name":"IRI","url":"https:\/\/www.iri.com\/blog\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/www.iri.com\/blog\/#\/schema\/logo\/image\/","url":"https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2019\/02\/iri-logo-total-data-management-small-1.png","contentUrl":"https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2019\/02\/iri-logo-total-data-management-small-1.png","width":750,"height":206,"caption":"IRI"},"image":{"@id":"https:\/\/www.iri.com\/blog\/#\/schema\/logo\/image\/"}},[{"@type":["Person"],"@id":"https:\/\/www.iri.com\/blog\/#\/schema\/person\/6434d748d01ce766d6a2ff576d747cfb","name":"Dmitry Kulakov","image":{"@type":"ImageObject","@id":"https:\/\/www.iri.com\/blog\/#\/schema\/person\/image\/","inLanguage":"en_US","url":"","caption":"Dmitry Kulakov"}},{"@type":["Person"],"@id":"https:\/\/www.iri.com\/blog\/#\/schema\/person\/6434d748d01ce766d6a2ff576d747cfb","name":"Adam Lewis","image":{"@type":"ImageObject","@id":"https:\/\/www.iri.com\/blog\/#\/schema\/person\/image\/","inLanguage":"en_US","url":"","caption":"Adam Lewis"}}]]}},"jetpack_featured_media_url":"https:\/\/www.iri.com\/blog\/wp-content\/uploads\/2020\/07\/Introduction-to-IRI-DarkShield.png","_links":{"self":[{"href":"https:\/\/www.iri.com\/blog\/wp-json\/wp\/v2\/posts\/13851"}],"collection":[{"href":"https:\/\/www.iri.com\/blog\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.iri.com\/blog\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.iri.com\/blog\/wp-json\/wp\/v2\/users\/112"}],"replies":[{"embeddable":true,"href":"https:\/\/www.iri.com\/blog\/wp-json\/wp\/v2\/comments?post=13851"}],"version-history":[{"count":30,"href":"https:\/\/www.iri.com\/blog\/wp-json\/wp\/v2\/posts\/13851\/revisions"}],"predecessor-version":[{"id":19480,"href":"https:\/\/www.iri.com\/blog\/wp-json\/wp\/v2\/posts\/13851\/revisions\/19480"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/www.iri.com\/blog\/wp-json\/wp\/v2\/media\/17240"}],"wp:attachment":[{"href":"https:\/\/www.iri.com\/blog\/wp-json\/wp\/v2\/media?parent=13851"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.iri.com\/blog\/wp-json\/wp\/v2\/categories?post=13851"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.iri.com\/blog\/wp-json\/wp\/v2\/tags?post=13851"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}