Just ran into an issue today that could have been solved elegantly with more granular access controls. Had I been able to selectively unmask a portion of a given data element I would already be on my way to issue resolution instead of sourcing an already overburdened dev resource with permissions to work with unmasked data.
Great article, definitely Data Security is an existing issue in multiple companies, especially knowing which type of data needs to be secured and how to do it correctly.