Database Security: System Vulnerability and Abuse
Database Security: System Vulnerability and Abuse
Database Security: System Vulnerability and Abuse
AND ABUSE
Database Security
[email protected]
Unauthorized access
Database Security
Database Security: Protection of the data
against accidental or intentional loss,
destruction, or misuse
Increased difficulty due to Internet access and
client/server technologies
Human error
Software failure
Hardware failure
Theft and fraud
Loss of privacy or confidentiality
Loss of data integrity
Loss of availability (through, e.g. sabotage)
Database Recovery
Backup Facilities
Recovery facilities:!
Backup Facilities
Journalizing Facilities
Checkpoint Facility
Recovery Manager
Journalizing Facilities
Audit trail of transactions and database updates
Transaction log record of essential data for
each transaction processed against the
database
Database change log images of updated data
backup
COBIT FRAMEWORK
Types of Information
Systems Control
General control
Data Center
IT Change Management
IT operations
IT Change Management
Personnel Control
IT Operations
key areas:
data availability