Governance. Risk. Compliance. Cybersecurity.

Cybersecurity

Tokenisation

Replacing sensitive data (e.g. PAN) with a non-sensitive token that has no exploitable meaning outside the token vault.

Used heavily in PCI DSS scope reduction and increasingly in healthcare data handling. Tokens may be format-preserving or random; security depends on the strength of the vault and detokenisation controls.