department-of-veterans-affairs / abd-vro

To get Veterans benefits in minutes, VRO software uses health evidence data to help fast track disability claims.
Other
17 stars 6 forks source link

Implement an RDS retention policy #3125

Open meganhicks opened 1 week ago

meganhicks commented 1 week ago

What:

To stay compliant with our PIA and ensure we only store sensitive data temporarily, we need to implement a retention policy for RDS. I have spoken with the enablement team and partner teams, and we have conducted discovery work on how to achieve this and what we need to stay compliant. This ticket is to consolidate all this information and implement the policy.

AC:

Data older than 1 yr is automatically purged from the RDS storage The retention period should configurable and can be adjusted as needs change. Logging and monitoring mechanisms are in place to track the execution of the retention policy and any potential issues. Documentation is provided outlining the retention policy for BIE Kafka events and notated that it can be adjusted if future needs change The retention policy complies with any relevant data privacy and compliance regulations.