Understand the importance of preventing the unintended exposure of customer data in
Salesforce Government Cloud. Learn the compliance requirements for safeguarding customer data,
while maintaining security and compliance.
Required Editions
Available in: Enterprise and Unlimited Editions
Information spillage is the unintended exposure of sensitive data either from: (1) a classified information system to an unclassified information system; or (2) a higher classification or protection level to a lower classification or protection level environment.
To safeguard government data, the Federal Risk and Authorization Management Program (FedRAMP) and the Department of Defense (DoD) enforce security standards for cloud services that US federal agencies use. Immediate response actions include containment, eradication, and notification of authorities, along with efforts to prevent future spillages.
In Salesforce, spillage occurs when a user enters sensitive data into a field or uploads a file to Salesforce that exceeds the current system authorization level. If a spillage occurs, the customer is responsible for the remediation actions. Avoid including, collecting, processing, or storing data that exceeds the current authorization level of the cloud environment where your Salesforce instance is hosted.
Shield Platform Encryption mitigates spillage by ensuring that data associated with potential information spills is unrecoverable from Salesforce-managed backups.
We use three kinds of cookies on our websites: required, functional, and advertising. You can choose whether functional and advertising cookies apply. Click on the different cookie categories to find out more about each category and to change the default settings.
Privacy Statement
Required Cookies
Always Active
Required cookies are necessary for basic website functionality. Some examples include: session cookies needed to transmit the website, authentication cookies, and security cookies.
Functional Cookies
Functional cookies enhance functions, performance, and services on the website. Some examples include: cookies used to analyze site traffic, cookies used for market research, and cookies used to display advertising that is not directed to a particular individual.
Advertising Cookies
Advertising cookies track activity across websites in order to understand a viewer’s interests, and direct them specific marketing. Some examples include: cookies used for remarketing, or interest-based advertising.