Database Security & Auditing
Database Security & Auditing

As Risks Rise, Independent Research Firms Recommends Comprehensive Strategy for Database Security

With organizations facing both increasingly sophisticated cyber attacks and rising levels of internal data theft, several highly respected research companies have issued reports calling for stronger measures to defend enterprises’ most valuable IT assets - their data.

According to survey reports, only 21% of enterprises are pursuing advanced security measures, whilst the others remain soft targets for hackers.  The consequences are high and reports state that “A single intrusion that compromises private data such as credit card numbers or financial data can cause immense damage to an organization, whether big or small".

Security experts and research firms urges database security professionals and information security and risk management to craft a comprehensive security strategy that:

  • Aligns database security policies with information security policies
  • Ensures well-defined and formalized database security procedures
  • Enforces role separation
  • Applies advanced security measures such as database auditing, monitoring, database encryption, data masking, and vulnerability assessment to all critical databases that store private data.                                         

After detailing the foundation of database security based on preventive and detective controls, five specific recommendations are made:

  • Protect all critical databases, not just one or two.
  • Standardize on one or two DBMSes (database management systems).
  • Patch databases regularly.
  • Centralize database security administration wherever possible.
  • Apply effective Database Auditing.
  • Protect non-production databases also.

"Database security professionals should not skimp when it comes to securing databases. Database security is the last line of defence; therefore, organizations should focus on it to ensure protection from attacks,"

Examination of numerous security incidents has shown that timely examination of audit data could have helped detect unauthorized activity early and reduced the resulting financial impact.  Using the Oracle Audit Vault platform we can deliver a serviced based solution, across a number of Database technologies that will quickly and efficiently enhance your overall Database Security strategy!

Please contact us for more information on how we can help you accomplish your Database Auditing goals!!