Skip to content

Commit b3f5ae8

Browse files
committed
edit pass: confidential-computing-solutions
1 parent f42e759 commit b3f5ae8

File tree

1 file changed

+40
-36
lines changed

1 file changed

+40
-36
lines changed
Lines changed: 40 additions & 36 deletions
Original file line numberDiff line numberDiff line change
@@ -1,6 +1,6 @@
11
---
22
title: Perform secure multiparty data collaboration on Azure
3-
description: Learn how Azure Confidential Clean Rooms enables multiparty collaborations while keeping your data safe from other collaborators.
3+
description: Learn how Azure Confidential Clean Room enables multiparty collaborations while keeping your data safe from other collaborators.
44
author: mathapli
55
ms.service: azure
66
ms.subservice: confidential-computing
@@ -9,70 +9,74 @@ ms.date: 10/28/2024
99
ms.author: mathapli
1010
---
1111

12-
# Azure Confidential Clean Rooms
12+
# Azure Confidential Clean Room
1313

14-
> [!NOTE]
15-
> Azure Confidential Clean Rooms is currently in Gated Preview. Please fill the form at https://aka.ms/ACCRPreview and we will reach out to you with next steps.
14+
Azure Confidential Clean Room offers a secure and compliant environment that helps organizations overcome the challenges of using privacy-sensitive data for AI model development, inferencing, and data analytics. Built on top of [confidential containers in Azure Container Instances](../confidential-computing/confidential-containers.md), this service secures the data and the model from exfiltration outside the clean room boundary. The service is currently in preview.
1615

17-
Azure Confidential Clean Rooms, aka ACCR, offers a secure and compliant environment that helps organizations overcome the challenges of using privacy-sensitive data for AI model development, inferencing, and data analytics. Built on top of [Confidential containers or C-ACI](../confidential-computing/confidential-containers.md), this service secures the data and the model from exfiltration outside the clean room boundary.
1816
Organizations can safely collaborate and analyze sensitive data, within the sandbox, without violating compliance standards or risking data breaches by using advanced privacy-enhancing technologies like secure governance & audit, secure collaboration (TEE), verifiable trust, differential privacy, and controlled access.
1917

20-
## Who should use Azure Confidential Clean Rooms?
21-
Azure Confidential Clean Rooms could be a great choice for you if you have these scenarios:
18+
## Who should use Azure Confidential Clean Room?
2219

23-
- Data analytics and inferencing: Organizations looking to build insights on second-party data while ensuring data privacy can use ACCR. ACCR is useful when data providers are concerned about data exfiltration. ACCR ensures that data is only used for agreed purposes and safeguards against unauthorized access or egress (as it's a sandboxed environment).
24-
- Data privacy ISVs: Independent Software Vendors (ISVs) who provide secure multiparty data collaboration services can use ACCR as an extensible platform. It allows them to add enforceable tamperproof contracts with governance and audit capabilities, and uses [Confidential containers or C-ACI](../confidential-computing/confidential-containers.md) underneath to ensure data is encrypted during processing so that their customers' data remains secure.
25-
- ML fine tuning: ACCR provides a solution to organizations that require data from various sources to train or fine-tune machine learning models but face data sharing regulations. It allows any party to audit and confirm that data is being used only for the agreed purpose, such as ML modeling.
26-
- ML inferencing: Organizations can use ACCR in machine learning (ML) inferencing to enable secure, collaborative data analysis without compromising privacy or data ownership. ACCR acts as secure environment where multiple parties can combine sensitive data and apply ML models for inferencing while keeping raw data inaccessible to others.
20+
Azure Confidential Clean Room could be a great choice for you if you have these scenarios:
2721

28-
### Industries that can successfully utilize ACCR
29-
- Healthcare- In the healthcare industry, Azure Confidential Clean Rooms enable secure collaboration on sensitive patient data. For example, healthcare providers can use clean rooms to train and fine-tune AI/ML models for predictive diagnostics, personalized medicine, and clinical decision support. By using confidential computing, healthcare organizations can protect patient privacy while collaborating with other institutions to improve healthcare outcomes.
30-
ACCR can also be used for ML inferencing where partner hospitals can utilize power of these models for early detection.
31-
- Advertising- In the advertising industry, Azure Confidential Clean Rooms facilitates secure data sharing between advertisers and publishers. ACCR enables targeted advertising and campaign effectiveness measurement without exposing sensitive user data.
32-
- Banking, Financial Services and Insurance (BFSI) - The BFSI sector can use Azure Confidential Clean Rooms to securely collaborate on financial data, ensuring compliance with regulatory requirements. This enables financial institutions to perform joint data analysis and develop risk models, fraud detection models, lending scenarios among others without exposing sensitive customer information.
33-
- Retail- In the retail industry, Azure Confidential Clean Rooms enables secure collaboration on customer data to enhance personalized marketing and inventory management. Retailers can use clean rooms to analyze customer behavior and preferences to create personalized marketing campaigns without compromising data privacy.
22+
- Data analytics and inferencing: Organizations looking to build insights on second-party data while ensuring data privacy can use Azure Confidential Clean Room. Azure Confidential Clean Room is useful when data providers are concerned about data exfiltration. Azure Confidential Clean Room ensures that data is only used for agreed purposes and safeguards against unauthorized access or egress (as it's a sandboxed environment).
23+
- Data privacy ISVs: Independent Software Vendors (ISVs) who provide secure multiparty data collaboration services can use Azure Confidential Clean Room as an extensible platform. It allows them to add enforceable tamperproof contracts with governance and audit capabilities, and uses [Confidential containers or C-ACI](../confidential-computing/confidential-containers.md) underneath to ensure data is encrypted during processing so that their customers' data remains secure.
24+
- ML fine tuning: Azure Confidential Clean Room provides a solution to organizations that require data from various sources to train or fine-tune machine learning models but face data sharing regulations. It allows any party to audit and confirm that data is being used only for the agreed purpose, such as ML modeling.
25+
- ML inferencing: Organizations can use Azure Confidential Clean Room in machine learning (ML) inferencing to enable secure, collaborative data analysis without compromising privacy or data ownership. Azure Confidential Clean Room acts as secure environment where multiple parties can combine sensitive data and apply ML models for inferencing while keeping raw data inaccessible to others.
26+
27+
### Industries that can successfully utilize Azure Confidential Clean Room
28+
29+
- Healthcare: In the healthcare industry, Azure Confidential Clean Room enables secure collaboration on sensitive patient data. For example, healthcare providers can use clean rooms to train and fine-tune AI/ML models for predictive diagnostics, personalized medicine, and clinical decision support. By using confidential computing, healthcare organizations can protect patient privacy while collaborating with other institutions to improve healthcare outcomes.
30+
Azure Confidential Clean Room can also be used for ML inferencing where partner hospitals can utilize power of these models for early detection.
31+
- Advertising: In the advertising industry, Azure Confidential Clean Room facilitates secure data sharing between advertisers and publishers. Azure Confidential Clean Room enables targeted advertising and campaign effectiveness measurement without exposing sensitive user data.
32+
- Banking, Financial Services and Insurance (BFSI): The BFSI sector can use Azure Confidential Clean Room to securely collaborate on financial data, ensuring compliance with regulatory requirements. This enables financial institutions to perform joint data analysis and develop risk models, fraud detection models, lending scenarios among others without exposing sensitive customer information.
33+
- Retail: In the retail industry, Azure Confidential Clean Room enables secure collaboration on customer data to enhance personalized marketing and inventory management. Retailers can use clean rooms to analyze customer behavior and preferences to create personalized marketing campaigns without compromising data privacy.
3434

3535
## Benefits
3636

37-
:::image type="content" source="./media/confidential-clean-rooms/accr-benefits.png" alt-text="Diagram of Azure Confidential Clean Rooms benefits, showing zero trust, no data duplication of container workloads, and managed governance.":::
37+
:::image type="content" source="./media/confidential-clean-rooms/accr-benefits.png" alt-text="Diagram of Azure Confidential Clean Room benefits, showing zero trust, no data duplication of container workloads, and managed governance.":::
3838

39-
Azure Confidential Clean Rooms (ACCR) provides a secure and compliant environment for multi-party data collaboration. Built on [Confidential containers or C-ACI](../confidential-computing/confidential-containers.md), ACCR ensures that sensitive data remains protected throughout the collaboration process. Here are some key benefits of using Azure Confidential Clean Rooms:
39+
Azure Confidential Clean Room provides a secure and compliant environment for multi-party data collaboration. Built on [Confidential containers or C-ACI](../confidential-computing/confidential-containers.md), Azure Confidential Clean Room ensures that sensitive data remains protected throughout the collaboration process. Here are some key benefits of using Azure Confidential Clean Room:
4040

4141
- Secure collaboration and governance:
42-
ACCR allows collaborators to create tamper-proof contracts. ACCR also enforces all the constraints which are part of the contract. Governance ensures validity of constraints before allowing data to be released into clean rooms and drives transparency among collaborators by generating tamper-proof audit trails. ACCR uses the open-sourced [confidential consortium framework](https://microsoft.github.io/CCF/main/overview/what_is_ccf.html) to enable these capabilities.
42+
Azure Confidential Clean Room allows collaborators to create tamper-proof contracts. Azure Confidential Clean Room also enforces all the constraints which are part of the contract. Governance ensures validity of constraints before allowing data to be released into clean rooms and drives transparency among collaborators by generating tamper-proof audit trails. Azure Confidential Clean Room uses the open-sourced [confidential consortium framework](https://microsoft.github.io/CCF/main/overview/what_is_ccf.html) to enable these capabilities.
4343
- Compliance:
44-
Confidential computing can address some of the regulatory and privacy concerns by providing a secure environment for data collaboration. This capability is beneficial for industries such as financial services, healthcare, and telecom, which deal with highly sensitive data and personally identifiable information (PII).
44+
Confidential computing can address some of the regulatory and privacy concerns by providing a secure environment for data collaboration. This capability is beneficial for industries such as financial services, healthcare, and telecom, which deal with highly sensitive data and personal data.
4545
- Enhanced data security:
46-
ACCR is built using confidential computing to provide a hardware-based, trusted execution environment (TEE). This environment is sandboxed and allows only authorized workloads to execute and prevents unauthorized access to data or code during processing, ensuring that sensitive information remains secure.
47-
- Verifiable trust at each step with the help of cryptographic remote attestation forms the cornerstone of Azure Confidential Clean Rooms.
46+
Azure Confidential Clean Room is built using confidential computing to provide a hardware-based, trusted execution environment (TEE). This environment is sandboxed and allows only authorized workloads to execute and prevents unauthorized access to data or code during processing, ensuring that sensitive information remains secure.
47+
- Verifiable trust at each step with the help of cryptographic remote attestation forms the cornerstone of Azure Confidential Clean Room.
48+
49+
- Cost-effective:
50+
By providing a secure and compliant environment for data collaboration, Azure Confidential Clean Room reduces the need for costly and complex data protection measures. This makes it a cost-effective solution for organizations looking to use sensitive data for analysis and insights.
4851

49-
- Cost-effective:
50-
By providing a secure and compliant environment for data collaboration, ACCR reduces the need for costly and complex data protection measures. This makes it a cost-effective solution for organizations looking to use sensitive data for analysis and insights.
52+
:::image type="content" source="./media/confidential-clean-rooms/accr-illustration.png" alt-text="Diagram of Azure Confidential Clean Room benefits, showing all steps of clean room creation.":::
5153

52-
:::image type="content" source="./media/confidential-clean-rooms/accr-illustration.png" alt-text="Diagram of Azure Confidential Clean Rooms benefits, showing all steps of clean room creation.":::
54+
## Onboarding to Azure Confidential Clean Room
5355

56+
Azure Confidential Clean Room is currently in Gated Preview. To express your interest in joining the gated preview, follow these steps:
5457

55-
## Onboarding to Azure Confidential Clean Rooms
56-
ACCR is currently in Gated Preview. To express your interest in joining the gated preview, follow these steps:
57-
- Fill and submit the form at https://aka.ms/ACCR-Preview-Onboarding.
58-
- Once you submit, further steps will be shared with you on onboarding.
59-
- For further questions on onboarding reach out to [email protected].
58+
- Fill and submit [the form](https://aka.ms/ACCR-Preview-Onboarding).
59+
- Once you submit, further steps will be shared with you on onboarding.
60+
- For further questions on onboarding reach out to the [Azure Confidential Clean Room management team](mailto:[email protected]).
6061
- After reviewing details, we'll reach out to you with detailed steps for onboarding.
6162

6263
## Frequently asked questions
6364

6465
- Question: Where is the location Microsoft published side cars?
66+
6567
Answer: The Microsoft published side cars are available at: mcr.microsoft.com/cleanroom. The code repository for the sidecars is present [here](https://github.com/Azure/azure-cleanroom/).
6668

6769
- Question: Is there a sampleclean room application to try out?
68-
Answer: You can find the clean room sample application [here](https://github.com/Azure-Samples/azure-cleanroom-samples). Please feel free to try out the sample after signing up for the Preview and receiving our response.
70+
71+
Answer: You can find the clean room sample application on [GitHub](https://github.com/Azure-Samples/azure-cleanroom-samples). Please feel free to try out the sample after signing up for the Preview and receiving our response.
6972

7073
- Question: Can more than two collaborators participate in a collaboration?
74+
7175
Answer: Yes, more than two collaborators can become part of collaboration. This allows multiple data providers to share data in the clean room.
7276

73-
If you have questions about Azure Confidential Clean Rooms, reach out to <[email protected]>.
77+
If you have questions about Azure Confidential Clean Room, reach out to the [support team](mailto:[email protected]).
7478

75-
## Next steps
79+
## Related content
7680

77-
- [Deploy Confidential container group with Azure Container Instances](/azure/container-instances/container-instances-tutorial-deploy-confidential-containers-cce-arm)
78-
- [Microsoft Azure Attestation](/azure/attestation/overview)
81+
- [Deploy confidential container group with Azure Container Instances](/azure/container-instances/container-instances-tutorial-deploy-confidential-containers-cce-arm)
82+
- [Microsoft Azure Attestation](/azure/attestation/overview)

0 commit comments

Comments
 (0)