- Home
- Resources
- Case studies
- Tier-1 bank divestiture
How a Tier-1 bank delivered file-level proof under regulatory examination.
A multi-billion dollar divestiture was at risk. Regulators wanted content-based evidence for every sensitive file, and the deadline was measured in weeks.
“We needed quality, flexibility, speed and proof, and we needed it in weeks, not months.”
Regulators wanted proof for every file
The bank was in the middle of a multi-billion dollar divestiture. Before it could close, NYDFS, the OCC, and the Federal Reserve required file-level evidence that Confidential Supervisory Information and Suspicious Activity Reports would not be transferred inappropriately. Policy statements were not enough.
A consulting firm proposed asking employees to find and delete sensitive files themselves. Across 19 million files, with a deadline in weeks, that was too slow and too risky.
Read every file, on-premises
The bank deployed DataXray on-premises, so no data left its environment. DataXray read the full content of every file, not the file name or metadata, and identified CSI, SAR, PII, and PCI at the file level.
The team built remediation workflows and an examiner-ready audit trail on top, connected to tools the bank already ran, including Collibra and Microsoft Purview.
The deal closed on schedule
Examiners received a record for every sensitive file showing how it was identified, reviewed, and disposed of, traced to its content.
Next, AI readiness
The bank kept DataXray for everyday governance. More than 330 million files are now under oversight, and the bank is extending the same capability to AI readiness across legal, privacy, records, and audit.