https://www.engineeringnews.co.za

Unified database security software to help prevent intrusions

21st June 2013

By: Schalk Burger

Creamer Media Senior Deputy Editor

  

Font size: - +

Cloud-service providers, database-hosting companies, large enterprises and small service providers can deploy unified database security software to prevent intrusions and Structured Query Language (SQL) injection attacks into databases, says Israeli database security company GreenSQL founder and CTO David Maman.

The company’s unified database security software parses the protocols and the syntax of connections into a database and analyses the patterns of activity to monitor and manage access to sensitive information. The system determines activity patterns, enabling companies to classify more easily the suspicious patterns that must be blocked. The software also contains preconfigured patterns and policies of known attack patterns.

“GreenSQL’s Database Activity Monitoring enables management to see exactly when and which sensitive records their external consultants have been exposed to and what actions they took.”

The software also enables companies to mask their data and enforces a separation of duties among different users, reducing the risk from third-party service providers and administrators.

The GreenSQL unified database security system can be downloaded and deployed within an hour. It protects against SQL injection attacks and internal and external threats by monitoring database activity and dynamically masking data in real time, Maman says.

“The database security policy automatically detects SQL injection attempts and, to ease administration, it automatically detects the operating environment and database session identifiers – the user, database, source IP and application. By sending activity-monitoring logs to remote commercial databases, GreenSQL simplifies auditing and compliance reporting,” he adds.

Various database security systems must generally be deployed to enable a company to conduct database audits, mask data and monitor access and activity. This often increases costs and deployment times.

GreenSQL offers a free version of its database security system from its website, with clients receiving the masking, performance management and auditing functions as part of its full service, Maman notes.

The company’s unified database security system was developed, initially, as an open-source project to protect open-source MySQL databases in 2006, with the first release in 2007 of the basic database security solution, he says.

In less than three years time, the program was downloaded more than 100 000 times and Maman then founded the company with partners in 2009, which developed the GreenSQL database security system – built anew based on the team’s knowledge of database security in the open-source community.

“Database security is often a complex exercise and the many fractal systems are unwieldy to manage and implement. We focused, therefore, on developing a simple solution that even small enterprises and businesses can use, but which provides the enterprise-grade auditing, masking and management required by large companies.”

GreenSQL’s unified database security system enables companies to comply with increasingly rigorous corporate governance on the security of sensitive data, he says.

“The system provides complete compliance with regulations, such as the public company accounting reform Sarbanes-Oxley Act, the administrative simplification standard Health Insurance Portability and Accountability Act and the Payment Card Industry Data Security Standard,” concludes Maman.

Story highlights:

* Unified database security software parses the protocols and the syntax of connections into a database to analyse the patterns of activity to monitor and manage access to sensitive information.
* Database Activity Monitoring enables management to see exactly when and which sensitive records their external consultants have been exposed to and what actions they took.

Edited by Martin Zhuwakinyu
Creamer Media Senior Deputy Editor

Comments

Showroom

John Deere (Pty) Ltd
John Deere (Pty) Ltd

In 1958 John Deere Construction made its first introduction to the industry with their model 64 bulldozer.

VISIT SHOWROOM 
Weir Minerals Africa and Middle East
Weir Minerals Africa and Middle East

Weir Minerals Europe, Middle East and Africa is a global supplier of excellent minerals solutions, including pumps, valves, hydrocyclones,...

VISIT SHOWROOM 

Latest Multimedia

sponsored by

Photo of Martin Creamer
On-The-Air (12/04/2024)
12th April 2024 By: Martin Creamer
Magazine round up | 12 April 2024
Magazine round up | 12 April 2024
12th April 2024

Option 1 (equivalent of R125 a month):

Receive a weekly copy of Creamer Media's Engineering News & Mining Weekly magazine
(print copy for those in South Africa and e-magazine for those outside of South Africa)
Receive daily email newsletters
Access to full search results
Access archive of magazine back copies
Access to Projects in Progress
Access to ONE Research Report of your choice in PDF format

Option 2 (equivalent of R375 a month):

All benefits from Option 1
PLUS
Access to Creamer Media's Research Channel Africa for ALL Research Reports, in PDF format, on various industrial and mining sectors including Electricity; Water; Energy Transition; Hydrogen; Roads, Rail and Ports; Coal; Gold; Platinum; Battery Metals; etc.

Already a subscriber?

Forgotten your password?

MAGAZINE & ONLINE

SUBSCRIBE

RESEARCH CHANNEL AFRICA

SUBSCRIBE

CORPORATE PACKAGES

CLICK FOR A QUOTATION







sq:0.063 0.107s - 157pq - 2rq
Subscribe Now