Governance Gaps

Identified during live discovery — May 28, 2026. Critical items require immediate action.

#GapSeverityLocationResolved
1 Full_SSN__c and SSN__c confirmed in bronze/PUA — no FTI isolation or CMK Critical bronze/PUA/Claim__c.parquet Open
2 ICON IB4 Base Period Wages (FTI) in unsecured path, no classification Critical doesdatarepo/ICON Open
3 45 GB Tax Production SQL backup stored flat, no access controls Critical doesdatarepo/DOESSQLTAXPROD Open
4 DUTAS daily pipeline writes FTI directly to bronze non-FTI container Critical bronze/UI/UI-Tax (active pipeline) Open
5 dutas-backup-data container holds ~4.5 GB of DUTAS master files — FTI, unclassified, no isolation Critical sadoesdwtest/dutas-backup-data Open
6 SIDES extracts in finalextract — FTI, unclassified High does-onpremdata/finalextract Open
7 Personal/sandbox folders mixed into bronze layer High bronze/UI/UI-Tax/Dave-test; bronze/UI/UI-Benefits/Jeremy Open
8 Call center recordings unclassified, no retention schedule High doesdatarepo/CallCenterRecordings Open
9 No catalog container exists anywhere in the lake High All containers Open
10 Updated_Equifax_integration notebook — data sharing obligations unknown High syn-mdlware-test notebook Open
11 JungleLasers third-party project running in DOES environment — no governance oversight High jr-junglelasers workspace Open
12 syn-mdlware-uibs and syn-mdlware-kpmg inaccessible — contents unknown Medium IP firewall blocking access Open
13 No gold layer exists in any container Medium All containers Open
14 KPMG source parquet files (indemphistory, indeeo, indrace) not located Medium Unknown path Open
15 Production subscription inaccessible — doesmdlwareprod not inventoried Medium Production subscription Open
16 No dataset owners assigned to any discovered datasets Medium All datasets Open
17 jrtestpool Spark pool in DeleteError state Low syn-mdlware-test Open
18 SkillsNation data in separate ML storage account — not in lake inventory Low mlmdlwaretest0039626174/skillsnation-does Open
19 Personal notebooks in shared workspace — no naming or access controls Low tom_notebook1, Andrews Claimants, gus_claims_info Open