Forrester: - Making Leaders Successful Every Day |
Search Forrester.com |
|||||||||||
Global Navigation
Local Navigation |
||||||||||||
| Primary Analyst Photo | Document Information | Rate this Document |
|---|---|---|
![]() |
September 28, 2009 Your Enterprise Database Security Strategy 2010Stronger Measures Have Become Essential To Defend Against Growing Attacksby Noel Yuhanna with Mike Gilpin, Adam Knoll |
Average: 9
(4 ratings)
|
This is an excerpt
With increasingly sophisticated attacks and rising internal data theft, database security merits a stronger focus that goes beyond traditional authentication, authorization, and access control (AAA). A single intrusion that compromises private data such as credit card numbers, social security numbers, or other financial data can cause immense damage to an enterprise's reputation, not to mention initiating lawsuits and regulatory fines that can have long-term impact. Database security is the last line of defense, so it deserves greater focus on the protection of private data from both internal and external attacks than IT pros have traditionally given it. Database security professionals and information security and risk management professionals crafting a security strategy should: 1) align database security policies with information security policies; 2) ensure well-defined and formalized database security procedures; 3) enforce role separation; and 4) apply advanced security measures such as database auditing, monitoring, database encryption, data masking, and vulnerability assessment to all critical databases that store private data.
This is an excerpt
Price: US $499
Our Service Guarantee: If you are not completely satisfied with this document, notify Forrester within 24 hours of purchase for a full refund.
Already a Forrester Client?
Log in to read this document.
Information & Knowledge Management, Data Management, Security & Risk, Information Protection, Infrastructure Security, Authentication, Authorization, & Audit, Regulations & Legislation, Security Program Governance, Security Operations