Automatically Classify File Content

by Dynamic Access Control (DAC)
in Windows Server 2012

From the perspective of IT risk management, the importance controlling access privileges has increased massively. Besides regulatory requirements for IAM (Identity Access Management), for example using Central Access Policies (CAP) technologies, so-called "Identity and Access Intelligence" technologies are becoming increasingly important. These include the automatic analysis of access privileges, applied not only at the level of directories and shares, but in future also at the file level (Source KuppingerCole).

This need for improved control of access permissions has been addressed in Windows Server 2012 with the introduction of DAC (Dynamic Access Control) and FCI (File Classification Infrastructure). Now classification specifications can be attached to any file (metadata), as shown in the screenshot:

But what about the legacy of existing files? How do you fill the classification gaps in the file metadata?

