Discover · Classify · Protect

Know exactly where your personal data lives.

Netrik discovers, classifies and helps protect PII across your databases and file stores — combining a 2,000+ pattern library with a locally hosted LLM that reads context, not just format. Read-only by design, and nothing leaves your network.

netrik · scan console
The Netrik console showing configured data sources, scan activity and PII findings

Read-only

The scanner never needs write access to a source.

On your infrastructure

On-premises, private cloud or VPC. Air-gapped supported.

Local LLM

Context analysis runs inside your perimeter, not a vendor API.

2,000+

Built-in PII detection patterns

3

Detection modes: Regex, LLM, Hybrid

6

Regulatory frameworks mapped

Zero

Bytes of scan data leaving your network

The challenge

Data silos are where personal data goes missing.

Sensitive data spreads across legacy systems and modern cloud databases faster than any team can track it. A scanner limited to one environment — or one that requires moving data to work — leaves exactly the gaps that matter. Effective discovery has to be database-agnostic and give one view across the whole estate.

Where sensitive data ends up

  • Legacy relational systems nobody has audited in years
  • Modern cloud databases and warehouses added team by team
  • File servers, NAS and network shares holding KYC and contracts
  • Copies made for testing, reporting or analysis and never removed

What that costs you

  • Personal data in locations nobody has inventoried
  • No evidence trail when a regulator or auditor asks
  • Excess data retained well past its purpose
  • No way to prioritise which exposure to fix first
About us

Helping organisations protect what matters most — personal data.

Organisations collect and process more personal information every year. With tightening privacy regulation and a widening threat landscape, protecting PII has stopped being optional.

Who we are

A data security and privacy company specialising in PII scanning, data discovery and information risk management — giving enterprises complete visibility into where personal data lives, how it is used, and how to protect it.

Our mission

To help organisations protect personal data through visibility, intelligence and control — making discovery and protection simple, accurate and actionable, without disrupting business operations.

Trust & responsibility

Security, privacy and ethical responsibility are built into the product and the engagement. Solutions run inside your environment, so you stay in control of your data at every point.

Industries served

BankingIT servicesHealthcareInsuranceSaaS
Our products

Three capabilities, one platform.

Netrik is a single deployment inside your network. It answers three questions continuously: where is personal data right now, what changed since anyone last looked, and who is accountable for it.

Discover · Classify

PII Discovery & Classification

Find personal data wherever it has accumulated, then label it by type, sensitivity and the regulation that governs it.

  • Relational, NoSQL, file shares and object storage from one console
  • 2,000+ built-in detection patterns across global identifier formats
  • Regex, LLM or Hybrid detection, chosen per scan
  • Quick screening scan or full quantitative measurement
See the full feature set
Netrik scan results explorer showing findings by database and severity

Protect · Evidence

Database Monitoring & Alerts

Discovery is a snapshot. Scheduled rescans and alerting keep the picture current and leave an evidence trail behind it.

  • Recurring scans on the schedule your change rate demands
  • Alerts on newly discovered sensitive data and environment changes
  • Access rights review against least-privilege expectations
  • Signed, board-ready reports mapped to the clauses that apply
See the full feature set
Netrik report view showing grouped findings with masked values and confidence

Govern · Control

Data Governance

Turn a list of findings into something the business owns — classified, assigned and governed by policy rather than by memory.

  • Multi-level classification by sensitivity, data type and framework
  • Ownership and policy controls over each category
  • Retention and minimisation review on what should not be kept
  • Access rights analysed against least-privilege expectations
See the full feature set
Netrik breakdown of impacted databases, tables and identifier categories
The platform

One workflow, from connection to evidence.

Netrik replaces fragmented, manual privacy processes with a single automated path. The methodology is three pillars — discover, classify, protect — delivered through one workflow your team runs in four steps.

  1. 01

    Connect

    Point Netrik at a database or file repository using read-only credentials over your internal network or VPC peering.

  2. 02

    Discover

    The engine interrogates schemas, tables and files to locate candidate personal data across the selected sources.

  3. 03

    Classify

    Findings are categorised by identifier type, sensitivity and the regulations that apply to them.

  4. 04

    Result

    You get a report with the affected tables and columns, masked sample values, confidence and rows impacted.

Discover

Automated scanning of structured databases and unstructured file repositories, on-premises and in private cloud.

  • Schema and record-level interrogation
  • Scheduled and recurring scans
  • Quick and full scan strategies

Classify

Categorise what was found by identifier type, sensitivity and regulatory relevance so it can be acted on.

  • Identifier and sensitivity categories
  • Ownership and governance policies
  • Custom classification rules

Protect

Reduce exposure through masking, access review and continuous monitoring of the environments that hold PII.

  • Data masking and controlled exposure
  • Access rights and privilege review
  • Change monitoring and alerts
Detection engine

Patterns find it. Context confirms it.

Scanning on regular expressions alone produces either a flood of false positives or quiet misses on obfuscated data. Netrik pairs a large pattern library with an NLP layer that evaluates what surrounds a value before calling it sensitive.

Regex

Pattern-based detection of known formats

Over 2,000 built-in patterns covering global financial identifiers, healthcare records and regional PII. Fast, broad first-pass coverage across a whole source.

LLM

Context-based identification

A locally hosted language model reads the surrounding context to judge whether a value is genuinely sensitive — the verification tier that pattern matching cannot provide.

Hybrid

Pattern and context together

Patterns find candidates at speed, the model confirms them in context. This is the mode most teams run for a balance of coverage and precision.

Worked example

A column contains the value4242 4242 4242 4242. Regex flags it as a candidate payment card. The model then reads the column name, the neighbouring fields and the surrounding records to decide whether this is a stored card number or a test fixture, a reference code, or padding.

Pattern only

Every 16-digit string is reported. The analyst triages the noise.

Hybrid

Context decides. Fewer findings to review, each with a confidence score.

Zero data egress

The model runs inside your perimeter.

NLP inference happens on compute you allocate, on your own network. Scan data is never sent to an external AI service, and customer data is not used to train, fine-tune or improve the underlying model. Sessions stay isolated between customers.

Source access
Read-only
Internet required
No
Scanning strategy

Screen quickly, or measure completely.

Two scan modes for two different questions. Quick scanning answers “is there personal data here at all?” in minimal time. Full scanning answers “how much, of what kind, and where exactly?”

Quick / Incremental

Screening scan

Full / Detail

Measurement scan

Primary objective

Rapid PII identification
Comprehensive PII discovery

Initial processing

Up to 10,000 rows
Entire dataset

Scan termination

Stops once PII is detected
Continues until completion

Output

Qualitative report
Quantitative report

Processing effort

Lower
Higher

Typical use case

Rapid assessment and screening
Baseline, compliance and detailed assessment

PII coverage

Early detection
Complete dataset coverage

Quick scanning evaluates up to 10,000 records from the selected source. If nothing is found it continues incrementally through subsequent records until PII is identified, then stops and reports.

Product tour

The actual console, not a mockup.

From connecting a source to handing an auditor the evidence — these are the screens your team works in.

netrik · overview
One view of every configured source

One view of every configured source

Assets, scan activity, PII counts, compliance posture and licence state on a single operating screen.

Screen 1 of 8

Features

Everything the platform does.

Eight capabilities that take you from not knowing where personal data is, to having a monitored, governed and evidenced position on it — all running inside your own network.

AI-powered discovery

Scan databases and storage environments to identify and classify personally identifiable information automatically.

Scheduled scanning

Configure recurring scans so discovery stays current as data changes, rather than a one-off snapshot.

Masking and protection

Protect sensitive values through masking and controlled exposure to reduce unauthorised access and leakage.

Monitoring and alerts

Watch environments for changes, newly discovered sensitive data and emerging compliance risk, in real time.

Governance and classification

Centralised classification, ownership and policy controls to give the business visibility over its sensitive data.

Access rights management

Analyse user privileges, permissions and access patterns to support least-privilege on the data that matters.

Regulatory coverage

Map findings to the obligations that apply, across GDPR, the DPDP Act, CCPA/CPRA, POPIA, PCI DSS and LGPD.

Centralised risk view

A unified picture of sensitive data, exposure, access risk and compliance posture across the estate.

2,000+

Detection patterns

3

Detection modes

10,000

Rows in a quick scan

6

Frameworks mapped

Coverage

Database-agnostic, by design.

A single pane of glass over structured databases and unstructured file systems — so risk can be assessed across the whole organisation without migrating data or running a different tool per environment.

Relational databases

Deep interrogation of schemas, tables and records.

  • PostgreSQL
  • MySQL
  • Microsoft SQL Server
  • Oracle

NoSQL and cloud databases

Document and managed database services.

  • MongoDB
  • Managed cloud databases
  • Document stores

File repositories

Unstructured stores where KYC packs and contracts accumulate.

  • File servers
  • NAS
  • Network shares

Object storage

Bucket and blob storage across providers.

  • Object storage buckets
  • Archive tiers
PostgreSQL
MySQL
SQL Server
Oracle
MongoDB
Snowflake
BigQuery
Redshift
DynamoDB
Cassandra
Elasticsearch
Redis
Amazon S3
Azure Blob
Google Cloud Storage
Compliance mapping

Findings, mapped to the clause that asks for them.

Discovery is only useful if it answers a specific obligation. Netrik maps what it finds to the articles, sections and requirements your privacy and legal teams are actually working against.

Clause

Art. 5 — Principles

Discover PII, classify data, identify excessive or unnecessary data.

Art. 6 — Lawfulness

Identify data categories requiring processing-purpose and lawful-basis mapping.

Art. 9 — Special categories

Identify sensitive and special-category personal data.

Art. 25 — Protection by design

Support data discovery, minimisation and protection visibility.

Art. 30 — Records of processing

Support data inventory and processing-data mapping.

Art. 32 — Security of processing

Identify sensitive data exposure and support protection controls.

Art. 35 — DPIA

Support identification and assessment of high-risk personal-data processing.

Netrik supports compliance activities through discovery, classification, risk assessment, regulatory mapping and evidence generation. It does not by itself guarantee regulatory compliance. Exact applicability depends on your jurisdiction, processing activities, data categories, contractual obligations and scope, and should be validated by your privacy, legal or compliance function.

Deployment

It runs where your data already is.

Netrik installs into your environment rather than pulling data into someone else’s. Below is what the platform needs, so your infrastructure team can size it before the first conversation rather than after.

On-premises

Application and scanner deployed inside the corporate network, on hardware you control.

Private cloud / VPC

Deployed within your own private cloud or VPC environment, reachable over internal networking.

Air-gapped

No public internet access required when the native AI model is used — suitable for isolated environments.

Basic

Recommended

Deployment

On-premises / private cloud / VPC

Private network

Server

12 vCPU

24 vCPU

RAM

32 GB

128 GB

Storage

250 GB

1 TB + SSD

Operating system

RHEL 9.x / Ubuntu 22.04+

Latest supported enterprise OS

Network

1 Gbps

10 Gbps

IP address

Static IP recommended

Static IP

Hostname

Dedicated hostname

Dedicated hostname

DNS

Internal DNS resolution

Corporate DNS

Internet

Not required for local AI deployment

No public internet access

Before the first scan

  • Connectivity

    Network access to the target database and file repositories over VPC peering or a secure internal gateway.

  • Authentication

    Read-only database credentials for the discovery engine. Read/write only where the masking vault is integrated.

  • Compute

    Local compute allocated for LLM inference, so NLP parsing runs without data leaving the perimeter.

  • Configuration

    Scanning depth (sampling vs full-table) and the relevant pattern sets — GDPR, HIPAA, PCI DSS and others.

Actual sizing varies with data volume, number of sources, scan frequency, concurrent scans, file size and the AI model in use.

Pricing

Priced by hosts in scope, not by seat.

Every plan includes the full detection engine and the deliverables auditors ask for. What changes is how often you rescan, and how the platform is deployed.

Starter

One-time diagnostic scan

A single baseline assessment to find out what is actually in scope.

from$599up to 9 hosts
Up to 9 hosts
$599
Up to 99 hosts
$2,599
Up to 999 hosts
$9,999
  • Regex, LLM and Hybrid detection
  • Custom PII pattern library
  • Signed HTML compliance report
  • DPDP, GDPR, HIPAA and PCI DSS mapping
  • Installation support
  • Remote support
Get started
Most chosen

Standard

Revalidation scan

Rescan after remediation, with scheduled windows and 24×7 support.

from$799up to 9 hosts
Up to 9 hosts
$799
Up to 99 hosts
$3,799
Up to 999 hosts
$15,999
  • Regex, LLM and Hybrid detection
  • Custom PII pattern library
  • Signed HTML compliance report
  • DPDP, GDPR, HIPAA and PCI DSS mapping
  • Installation support
  • Remote support
  • Scheduled scan windows
  • Role-based access and audit logs
  • Custom PII classification
  • Board-ready custom reports
  • 24×7 SLA support
  • On-premises / air-gapped deployment(optional)
Get started

Enterprise

Unlimited scans per year

Continuous coverage across the estate, deployed how your security team requires.

from$1,999up to 9 hosts
Up to 9 hosts
$1,999
Up to 99 hosts
$10,999
Up to 999 hosts
$59,999
  • Regex, LLM and Hybrid detection
  • Custom PII pattern library
  • Signed HTML compliance report
  • DPDP, GDPR, HIPAA and PCI DSS mapping
  • Installation support
  • Remote support
  • Scheduled scan windows
  • Role-based access and audit logs
  • Custom PII classification
  • Board-ready custom reports
  • 24×7 SLA support
  • On-premises / air-gapped deployment

Prices are per engagement and scale with the number of hosts in scope. Platform access and custom deployment options are scoped during onboarding.

CIO Connection

A standing line to the people who own the risk.

Data protection stops being a tooling question somewhere around the board paper. CIO Connection is a programme for technology and risk leaders: briefings, checklists and benchmarks aimed at the decisions, not the dashboards.

Request an executive briefing

Executive briefings

A working session on what the DPDP Act and DPDP Rules actually require of your organisation, and where the obligations bite first.

Governance checklists

Practical checklists for data inventory, purpose limitation, retention and breach readiness — the artefacts an auditor asks to see.

Posture benchmarking

Where your data-protection position sits against the controls peers in your sector are being held to.

Board-ready reporting

Findings translated out of scanner output and into the risks, systems and obligations a board will act on.

FAQs

Answers to common questions

What security and compliance teams ask before a deployment. If something is not covered here, ask us directly.

Where is Netrik deployed?

Either on-premises, with the application and scanner inside your corporate network, or in a private cloud or VPC environment you control. Both are supported.

What types of data sources can Netrik scan?

Relational databases including MySQL, PostgreSQL and Microsoft SQL Server, plus Oracle and NoSQL databases; file servers and NAS; network shares; cloud databases; and object storage.

How does Netrik detect and classify PII?

Three approaches. Regex does pattern-based detection of known formats. LLM does context-based identification of sensitive information. Hybrid combines both for improved coverage — pattern matching finds candidates, context analysis confirms them.

Does Netrik modify or alter our data during scanning?

No. The scanning architecture uses read-only access to the data source. The scanner analyses data without requiring write access to the source database or repository.

Does our data leave our environment?

No. With a native or local AI deployment, scanning and AI-based classification occur entirely within your controlled environment. Scan data is not sent to an external AI service.

Is our data used to train the Netrik AI model?

No. Customer scan data is not used to train, fine-tune or improve the underlying AI model unless explicitly authorised under the applicable agreement and product configuration.

Are scan sessions isolated between customers?

Yes. Complete separation is maintained between customers, with no cross-customer data sharing or retention. With a local deployment, we do not have access to your data at all.

Can Netrik help with privacy and regulatory compliance?

Yes. Netrik supports compliance activities by mapping discovered and classified PII to applicable requirements under GDPR, the India DPDP Act, CCPA/CPRA, POPIA, PCI DSS and LGPD. It supports those activities; it does not by itself guarantee compliance.

What technical support is available?

Technical support covers product installation, configuration, connectivity, scanning and troubleshooting, according to your support plan.

How do we raise a support request?

Through the designated support email, the support portal, or another approved channel agreed during onboarding. A ticket reference is generated so the request can be tracked.

Our cybersecurity team

Certified people behind the platform.

Assessments and compliance consulting are delivered by certified practitioners. Every engagement is led by consultants holding globally recognised certifications, with hands-on experience across offensive security, governance, risk and compliance.

OSCPOffSecOffensive Security Certified Professional
CEHEC-CouncilCertified Ethical Hacker
CISMISACACertified Information Security Manager
CISSP logoCISSP(ISC)²Certified Information Systems Security Professional
CISAISACACertified Information Systems Auditor
CRISCISACACertified in Risk and Information Systems Control
ISO 27001ISMSLead Auditor / Lead Implementer

Our expertise areas

Information security

Control design, security architecture review and remediation planning for regulated environments.

Data privacy & governance

Discovery, classification, ownership and retention control over personal data at scale.

Regulatory compliance

DPDP Act, GDPR, ISO 27001, SOC 2, HIPAA and PCI DSS readiness and evidence generation.

Risk & audit management

Risk assessment, internal audit and third-party assurance across the supplier estate.

Get started

See what a scan finds in your own environment.

The most useful version of this conversation is the one run against a representative sample of your data, not a generic demo dataset.

Email the team
  1. 01Talk to a solutions engineer

    We come back within one business day to understand your environment and priorities.

  2. 02A walkthrough on your data

    A 30–45 minute demonstration scoped to a representative sample of your estate.

  3. 03Findings you can take upstairs

    A summary of key risks, affected systems and the regulatory obligations they touch.