M11 · Data Security & Sovereignty¶
Stage E — Cloud · Persona: Leaders + Builders · Duration: 120 min · Format: live + hands-on · Prereqs: M10
Objective¶
Establish how the company keeps its data on its own infrastructure and secures access — and capture it as a signed policy.
Why it matters¶
This is both protection and positioning. Data sovereignty is the Analytica AI OS's core promise; a company that signs a clear policy is genuinely OS-ready and can speak to it with partners, regulators, and the Utopia AI Fund.
Learning outcomes¶
By the end, the company can: - Articulate where its data lives and why it stays on its own infrastructure. - Apply access control, secrets management, and least privilege. - State its data-residency stance and any compliance obligations. - Sign off on a security & data-residency policy.
Agenda¶
- Why sovereignty — the OS promise, plainly (20)
- Threats & basics: access control, secrets, backups (30)
- Data residency & compliance for this company (30)
- Draft the policy together (30)
- Review & sign (10)
Deliverable¶
Signed security & data-residency policy → deliverable.md. Completes the OS prerequisites.
Gate contribution¶
Gate 4 (Ready) — the gating sign-off for M12.