SlideShare a Scribd company logo
2
Most read
4
Most read
7
Most read
Oracle Database Security
Copyright © 2013, Oracle and/or its affiliates. All rights reserved.2
Billions of Database Records Breached Globally
97% of Breaches Were Avoidable with Basic Controls
98% records stolen
from databases
84% records breached
using stolen credentials
92% discovered
by third party
Copyright © 2013, Oracle and/or its affiliates. All rights reserved.3
Oracle Database Security Solutions
Defense-in-Depth for Maximum Security
Activity Monitoring
Database Firewall
Auditing and Reporting
DETECTIVE
Redaction and Masking
Privileged User Controls
Encryption
PREVENTIVE ADMINISTRATIVE
Sensitive Data Discovery
Configuration Management
Privilege Analysis
Copyright © 2013, Oracle and/or its affiliates. All rights reserved.4
 Transparent data encryption
 Prevents access to stored data
 Built-in two-tier key management
 Support for HSM/KMS
 Integration with critical Oracle
Database technologies
Oracle Advanced Security
Encryption is the Foundation
Preventive Control for Oracle Databases
Disk
Backups
Exports
Off-Site
Facilities
Applications
Copyright © 2013, Oracle and/or its affiliates. All rights reserved.5
 Replace sensitive app data
 Referential integrity preserved
 Extensible template library
 Automated masking policies
 Support for non-Oracle databases
Oracle Data Masking
Masking Data for Non-Production Use
Preventive Control for Oracle Databases
LAST_NAME SSN SALARY
ANSKEKSL 323—23-1111 60,000
BKJHHEIEDK 252-34-1345 40,000
LAST_NAME SSN SALARY
AGUILAR 203-33-3234 40,000
BENSON 323-22-2943 60,000
Production
Non-Production
Dev
Test
Production
Copyright © 2013, Oracle and/or its affiliates. All rights reserved.6
 Limit DBA access to app data
 Multi-factor authorization
 Enforce enterprise data
governance, least privilege
 Realms create protective zones
 Out-of-the-box application policies
Database Vault
Privileged User Controls
Preventive Control for Oracle Databases
Procurement
HR
Finance
select * from finance.customers
Application
DBA
Applications
Security
DBA
DBA
Copyright © 2013, Oracle and/or its affiliates. All rights reserved.7
Oracle Label Security
Label Based Access Control
Preventive Control for Oracle Databases
Transactions
Report Data
Reports
Confidential Sensitive
Sensitive
Confidential
Public
 Virtual information partitioning
 Apply labels to users and data
 Flexible classification labels
 Automatically enforced row level
access control
 Transparent to applications
Copyright © 2013, Oracle and/or its affiliates. All rights reserved.8
 Monitor database traffic
 Detect, block unauthorized activity
including SQL injection attacks
 Unique SQL grammar analysis
 Whitelists, blacklists enforce activity
 Scalable software appliance
Oracle Audit Vault and
Database Firewall
Database Activity Monitoring and Firewall
Detective Control for Oracle and non-Oracle Databases
Block
Log
Allow
Alert
SubstituteApps
Whitelist Blacklist
SQL
Analysis Policy
Factors
Users
Copyright © 2013, Oracle and/or its affiliates. All rights reserved.9
Audit, Report, and Alert in Real-Time
Detective Control for Oracle and non-Oracle Databases
Policies
Built-in
Reports
Alerts
Custom
Reports
!
Security
Analyst
OS &
Storage
Directories
Databases
Oracle
Database
Firewall
Custom
Audit Data &
Event Logs
SOC
DBA
 Secure centralized repository
 Detect, alert suspicious activities
 Out-of-the box custom and
compliance reporting
 Streamline database audits
 Built-in separation of duties
Oracle Audit Vault and
Database Firewall
Auditor
Copyright © 2013, Oracle and/or its affiliates. All rights reserved.10
 Scan Oracle for sensitive data
 Built-in, extensible definitions
 Create and maintain application
data models
 Protect data appropriately:
encrypt, redact, mask, audit…
Oracle Enterprise Manager
Discover Sensitive Data and Databases
Administrative Control for Oracle Databases
Copyright © 2013, Oracle and/or its affiliates. All rights reserved.11
 Discover and classify databases
 Scan for best practices, standards
 Detect unauthorized changes
 Automated remediation
 Patching and provisioning
Oracle Database Lifecycle Management
Configuration Management
Administrative Control for Oracle Databases
Discover
Scan & Monitor
Patch
Copyright © 2013, Oracle and/or its affiliates. All rights reserved.12
 Enterprise ready
 Security and compliance
 Simple and flexible
 Speed and scale
oracle.com/goto/database/security-customers
Oracle Database Security Customers
Customer Benefits
Customers Worldwide Rely on Oracle
Copyright © 2013, Oracle and/or its affiliates. All rights reserved.13
For More Information
www.oracle.com/database/security

More Related Content

PDF
rapportfinal
PPTX
What is quantum computing
PPTX
Drug interactions
PDF
Oracle RAC 19c and Later - Best Practices #OOWLON
PPTX
Recent changes in RNTCP Guidelines
PPTX
Chp2 - SOA
PPT
Basics Of Networking (Overview)
DOCX
Functional Design Document - Payroll V.2.2.docx
rapportfinal
What is quantum computing
Drug interactions
Oracle RAC 19c and Later - Best Practices #OOWLON
Recent changes in RNTCP Guidelines
Chp2 - SOA
Basics Of Networking (Overview)
Functional Design Document - Payroll V.2.2.docx

What's hot (20)

PDF
Oracle Security Presentation
PDF
AV/DF Advanced Security Option
PDF
Best Practices for implementing Database Security Comprehensive Database Secu...
PPTX
Introducing Oracle Audit Vault and Database Firewall
PPT
Active Directory Services
PDF
Presentation database security audit vault & database firewall
PDF
Backup and recovery in oracle
PPT
Database Security
PPTX
Backup & recovery with rman
PPT
Backups And Recovery
PPTX
Security of the database
PDF
Oracle Real Application Clusters (RAC) 12c Rel. 2 - Operational Best Practices
PPTX
Disaster Recovery Synapse
PPTX
OCI Overview
PDF
Oracle Active Data Guard: Best Practices and New Features Deep Dive
PPT
Oracle Architecture
PDF
Oracle 12c and its pluggable databases
PPTX
Basic oracle-database-administration
PPTX
Introduction to Oracle Database
PPTX
Oracle GoldenGate 21c New Features and Best Practices
Oracle Security Presentation
AV/DF Advanced Security Option
Best Practices for implementing Database Security Comprehensive Database Secu...
Introducing Oracle Audit Vault and Database Firewall
Active Directory Services
Presentation database security audit vault & database firewall
Backup and recovery in oracle
Database Security
Backup & recovery with rman
Backups And Recovery
Security of the database
Oracle Real Application Clusters (RAC) 12c Rel. 2 - Operational Best Practices
Disaster Recovery Synapse
OCI Overview
Oracle Active Data Guard: Best Practices and New Features Deep Dive
Oracle Architecture
Oracle 12c and its pluggable databases
Basic oracle-database-administration
Introduction to Oracle Database
Oracle GoldenGate 21c New Features and Best Practices
Ad

Similar to Oracle Database Security (20)

PPTX
Security Inside Out: Latest Innovations in Oracle Database 12c
PDF
Oracle-Security_Executive-Presentation
PDF
Oracle Database 11g Security and Compliance Solutions - By Tom Kyte
PDF
Security in oracle
PDF
security in oracle database
PPSX
Ppt dbsec-oow2013-avdf
PDF
Oracle database 12c security and compliance
PDF
Oracle Key Vault Data Subsetting and Masking
PDF
Bezpečná databáze a jak využít volně dostupný nástroj DBSAT
PPTX
Oracle 11g security - 2014
PPT
Irm11g overview
PDF
Azure Information Protection
PDF
Best Practices in Implementing Oracle Database Security Products
PPTX
Modern Data Security for the Enterprises – SQL Server & Azure SQL Database
PPTX
Securing data in Oracle Database 12c - 2015
PDF
The Benefits of Having a Data Privacy Vault Tech domain news.pdf
DOCX
Database security
PPTX
Introduction to Oracle Database Security.pptx
PDF
Microsoft 365 Security and Compliance
PDF
Engineered Systems - nejlepší cesta, jak zabezpečit váš dataAccelerate Cloud
Security Inside Out: Latest Innovations in Oracle Database 12c
Oracle-Security_Executive-Presentation
Oracle Database 11g Security and Compliance Solutions - By Tom Kyte
Security in oracle
security in oracle database
Ppt dbsec-oow2013-avdf
Oracle database 12c security and compliance
Oracle Key Vault Data Subsetting and Masking
Bezpečná databáze a jak využít volně dostupný nástroj DBSAT
Oracle 11g security - 2014
Irm11g overview
Azure Information Protection
Best Practices in Implementing Oracle Database Security Products
Modern Data Security for the Enterprises – SQL Server & Azure SQL Database
Securing data in Oracle Database 12c - 2015
The Benefits of Having a Data Privacy Vault Tech domain news.pdf
Database security
Introduction to Oracle Database Security.pptx
Microsoft 365 Security and Compliance
Engineered Systems - nejlepší cesta, jak zabezpečit váš dataAccelerate Cloud
Ad

Recently uploaded (20)

PDF
Chapter 3 Spatial Domain Image Processing.pdf
PDF
Unlocking AI with Model Context Protocol (MCP)
PDF
A comparative analysis of optical character recognition models for extracting...
PDF
Agricultural_Statistics_at_a_Glance_2022_0.pdf
PPTX
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
PPT
“AI and Expert System Decision Support & Business Intelligence Systems”
PDF
Reach Out and Touch Someone: Haptics and Empathic Computing
PDF
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
DOCX
The AUB Centre for AI in Media Proposal.docx
PPTX
Spectroscopy.pptx food analysis technology
PPTX
Programs and apps: productivity, graphics, security and other tools
PDF
Electronic commerce courselecture one. Pdf
PDF
Dropbox Q2 2025 Financial Results & Investor Presentation
PDF
Assigned Numbers - 2025 - Bluetooth® Document
PPTX
Cloud computing and distributed systems.
PDF
gpt5_lecture_notes_comprehensive_20250812015547.pdf
PDF
Per capita expenditure prediction using model stacking based on satellite ima...
PDF
MIND Revenue Release Quarter 2 2025 Press Release
PDF
Spectral efficient network and resource selection model in 5G networks
PDF
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf
Chapter 3 Spatial Domain Image Processing.pdf
Unlocking AI with Model Context Protocol (MCP)
A comparative analysis of optical character recognition models for extracting...
Agricultural_Statistics_at_a_Glance_2022_0.pdf
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
“AI and Expert System Decision Support & Business Intelligence Systems”
Reach Out and Touch Someone: Haptics and Empathic Computing
Architecting across the Boundaries of two Complex Domains - Healthcare & Tech...
The AUB Centre for AI in Media Proposal.docx
Spectroscopy.pptx food analysis technology
Programs and apps: productivity, graphics, security and other tools
Electronic commerce courselecture one. Pdf
Dropbox Q2 2025 Financial Results & Investor Presentation
Assigned Numbers - 2025 - Bluetooth® Document
Cloud computing and distributed systems.
gpt5_lecture_notes_comprehensive_20250812015547.pdf
Per capita expenditure prediction using model stacking based on satellite ima...
MIND Revenue Release Quarter 2 2025 Press Release
Spectral efficient network and resource selection model in 5G networks
Blue Purple Modern Animated Computer Science Presentation.pdf.pdf

Oracle Database Security

  • 2. Copyright © 2013, Oracle and/or its affiliates. All rights reserved.2 Billions of Database Records Breached Globally 97% of Breaches Were Avoidable with Basic Controls 98% records stolen from databases 84% records breached using stolen credentials 92% discovered by third party
  • 3. Copyright © 2013, Oracle and/or its affiliates. All rights reserved.3 Oracle Database Security Solutions Defense-in-Depth for Maximum Security Activity Monitoring Database Firewall Auditing and Reporting DETECTIVE Redaction and Masking Privileged User Controls Encryption PREVENTIVE ADMINISTRATIVE Sensitive Data Discovery Configuration Management Privilege Analysis
  • 4. Copyright © 2013, Oracle and/or its affiliates. All rights reserved.4  Transparent data encryption  Prevents access to stored data  Built-in two-tier key management  Support for HSM/KMS  Integration with critical Oracle Database technologies Oracle Advanced Security Encryption is the Foundation Preventive Control for Oracle Databases Disk Backups Exports Off-Site Facilities Applications
  • 5. Copyright © 2013, Oracle and/or its affiliates. All rights reserved.5  Replace sensitive app data  Referential integrity preserved  Extensible template library  Automated masking policies  Support for non-Oracle databases Oracle Data Masking Masking Data for Non-Production Use Preventive Control for Oracle Databases LAST_NAME SSN SALARY ANSKEKSL 323—23-1111 60,000 BKJHHEIEDK 252-34-1345 40,000 LAST_NAME SSN SALARY AGUILAR 203-33-3234 40,000 BENSON 323-22-2943 60,000 Production Non-Production Dev Test Production
  • 6. Copyright © 2013, Oracle and/or its affiliates. All rights reserved.6  Limit DBA access to app data  Multi-factor authorization  Enforce enterprise data governance, least privilege  Realms create protective zones  Out-of-the-box application policies Database Vault Privileged User Controls Preventive Control for Oracle Databases Procurement HR Finance select * from finance.customers Application DBA Applications Security DBA DBA
  • 7. Copyright © 2013, Oracle and/or its affiliates. All rights reserved.7 Oracle Label Security Label Based Access Control Preventive Control for Oracle Databases Transactions Report Data Reports Confidential Sensitive Sensitive Confidential Public  Virtual information partitioning  Apply labels to users and data  Flexible classification labels  Automatically enforced row level access control  Transparent to applications
  • 8. Copyright © 2013, Oracle and/or its affiliates. All rights reserved.8  Monitor database traffic  Detect, block unauthorized activity including SQL injection attacks  Unique SQL grammar analysis  Whitelists, blacklists enforce activity  Scalable software appliance Oracle Audit Vault and Database Firewall Database Activity Monitoring and Firewall Detective Control for Oracle and non-Oracle Databases Block Log Allow Alert SubstituteApps Whitelist Blacklist SQL Analysis Policy Factors Users
  • 9. Copyright © 2013, Oracle and/or its affiliates. All rights reserved.9 Audit, Report, and Alert in Real-Time Detective Control for Oracle and non-Oracle Databases Policies Built-in Reports Alerts Custom Reports ! Security Analyst OS & Storage Directories Databases Oracle Database Firewall Custom Audit Data & Event Logs SOC DBA  Secure centralized repository  Detect, alert suspicious activities  Out-of-the box custom and compliance reporting  Streamline database audits  Built-in separation of duties Oracle Audit Vault and Database Firewall Auditor
  • 10. Copyright © 2013, Oracle and/or its affiliates. All rights reserved.10  Scan Oracle for sensitive data  Built-in, extensible definitions  Create and maintain application data models  Protect data appropriately: encrypt, redact, mask, audit… Oracle Enterprise Manager Discover Sensitive Data and Databases Administrative Control for Oracle Databases
  • 11. Copyright © 2013, Oracle and/or its affiliates. All rights reserved.11  Discover and classify databases  Scan for best practices, standards  Detect unauthorized changes  Automated remediation  Patching and provisioning Oracle Database Lifecycle Management Configuration Management Administrative Control for Oracle Databases Discover Scan & Monitor Patch
  • 12. Copyright © 2013, Oracle and/or its affiliates. All rights reserved.12  Enterprise ready  Security and compliance  Simple and flexible  Speed and scale oracle.com/goto/database/security-customers Oracle Database Security Customers Customer Benefits Customers Worldwide Rely on Oracle
  • 13. Copyright © 2013, Oracle and/or its affiliates. All rights reserved.13 For More Information www.oracle.com/database/security