Case study

Complete Control: Proactive Insider Threat Detection and the Power of Data Lineage

Plaid

Plaid Company Overview

Plaid is a data network that powers the tools millions of people rely on to live a healthier financial life. Plaid works with thousands of companies like Venmo, SoFi, and Betterment, several of the Fortune 500, and many of the largest banks to make it easy for people to connect their financial accounts to the apps and services they want to use. Plaid’s network covers more than 12,000 financial institutions across the US, Canada, UK and Europe. Headquartered in San Francisco, the company was founded in 2013 by Zach Perret and William Hockey.

Focused on democratizing financial services through technology, Plaid builds beautiful consumer experiences, developer-friendly infrastructure, and intelligent tools that give everyone the ability to create amazing products that solve big problems.

Challenges

Security that scales with cloud speed

Plaid's infrastructure is 100% AWS and built to move fast. Keeping security controls at the same pace requires visibility that cloud-native environments don't provide by default.

Detecting insider-driven data misuse in the cloud

Insider threats in cloud environments are among the hardest risks to catch. Without behavioral data lineage, most organizations find out about misuse after the damage is done.

Coverage across known and unknown threats

Not every risk has a name. Plaid needed broad-spectrum detection, covering threats they had already identified and the ones they hadn't anticipated yet.

Impact

Transformed visibility

They could see how sensitive data moved across systems, users, and endpoints.

Reduced investigation times

Cyberhaven’s data lineage feature shrunk manual forensic work into near instant answers and resolutions.

Increased confidence

Cyberhaven’s comprehensive visibility gave Plaid’s leadership deep insight into the prevalence and behavior of potential insider threats.

Cyberhaven created a transformational difference. We now have really substantial visibility.

David Seidman
Head of Platform Security, Plaid
The Impact

Unlocking Full Control and Rapidly Ruling Out Insider Risk

Cyberhaven created a meaningful deterrent. Attempted data exfiltration became surfaceable and actionable. This fundamentally shifted Plaid's insider risk posture, "It's a transformational difference. We now have really substantial visibility."

The message was clear: whether insider threat or data risk, “we will catch you.”

Using Cyberhaven’s Data Lineage capabilities, the Plaid team could quickly investigate any potential threats. Cyberhaven can determine if a document had or had not appeared on any computers. What would have taken hours of manual forensic work was reduced to minutes. Ruling out insider involvement without a doubt is a feature of Cyberhaven that’s critical for all data wielding companies, like Plaid.

We could basically just immediately say a document was not on our computers using Cyberhaven.”

— David Seidman, Head of Platform Security, Plaid

With clear, evidence-backed answers, Cyberhaven was able to unlock true visibility and control with data lineage.