{"id":15,"date":"2014-08-27T10:53:59","date_gmt":"2014-08-27T10:53:59","guid":{"rendered":"http:\/\/sqlity.dev.lbdesign.eu\/?page_id=15"},"modified":"2014-11-17T19:43:37","modified_gmt":"2014-11-18T00:43:37","slug":"security","status":"publish","type":"page","link":"https:\/\/sqlity.net\/en\/services\/security\/","title":{"rendered":"Security"},"content":{"rendered":"<h2>SQL Server Database Security Audit<\/h2>\n<p>\nLet us ask you a simple question: Is your data secure?\n<\/p>\n<p>\n<strong>The High Cost of an Unsecure System... Did You Know the Average Cost for EACH Compromised Customer Record is $188?<\/strong> (src: <a href=\"https:\/\/www4.symantec.com\/mktginfo\/whitepaper\/053013_GL_NA_WP_Ponemon-2013-Cost-of-a-Data-Breach-Report_daiNA_cta72382.pdf\" target=\"_blank\">Ponemon<\/a>)\n<\/p>\n<p>\nDepending on your business, a data breach could cost you millions. If your business deals with protected health information (PHI), chances are you\u2019re subject to HIPAA regulations that require you to protect health records. Do you know what counts as PHI? PHI can be medical records of course, but for example also cell phone numbers and even license plates.\n<\/p>\n<p>\nIt\u2019s the law that this information is encrypted and protected. Plus, ensuring it is encrypted can protect you if the worse does happen. You can read more about why to <a title=\"Five Reasons why You Need to Encrypt Your PHI\" href=\"http:\/\/sqlity.net\/en\/2447\/encrypt-your-phi\/\">encrypt your PHI here<\/a>.\n<\/p>\n<p>\nBut even if you are not working with PHI, there are other types of information that have to be protected by law. This includes payment information (PCI data) and, depending on your company, could include any form of personally identifiable information (PII).\n<\/p>\n<p>\nToo many companies ignore database security until it is too late.\n<\/p>\n<p>\nDoes this sound familiar? The IT department is rushing to implement functionality and fixing the problems to get the system running smoothly. They have good intentions to tighten security later, of course, but time gets away from them with the fast approaching deadline.\n<\/p>\n<p>\nBefore you know it, the new database installation goes live without any security best practices in place. No one means to leave security gaps... it just happens.\n<\/p>\n<p>\nYet, <strong>security is critical<\/strong>. Nothing can bring your business to a screeching halt faster than a hacked database.\n<\/p>\n<p>\nConsider a recent <em>Whitehat Security Statistics Report<\/em> that found 86% of websites had a minimum of one serious security vulnerability. Where could your site\u2019s vulnerabilities lie?\n<\/p>\n<p>\nThere are primarily three types of hackers:\n<\/p>\n<ol>\n<li><strong>An inside job<\/strong> \u2013 disgruntled employee or ex-employee. I know, you don\u2019t want to think about it but it happens.<\/li>\n<li><strong>Random attack<\/strong> \u2013 more common than you think. There are automated programs on the web looking for vulnerabilities. When they find one, they may install a virus, malware or another insidious piece of software.<br \/>\n<br \/>\nDo you know one of the most common ways these guys infiltrate your data? It is SQL Injection. If you allow SQL Injection in your code, then you are vulnerable.<\/li>\n<li><strong>Targeted attack<\/strong> \u2013 this is the hardest form of attack to protect yourself from, but it is also the least common. While you might not be able to completely prevent a targeted breach, the harder you make it, the more likely \u201cthey\u201d will give up and select a different target.<\/li>\n<\/ol>\n<h2>Your Database is Your Business<\/h2>\n<p>\nIt\u2019s where your customers\u2019 information resides. The database controls your orders, streamlines your reports and keeps your office humming along \u2026 but only when it\u2019s working properly.\n<\/p>\n<p>\nIf your database goes down, you will lose a lot of money. You might not be able to make any money at all. A security breach might not be on top of your mind when thinking about system uptime. But often, intruders leave a mess behind, causing your data to be inaccessible until you clean it up. It also costs a lot more to fix it. Let\u2019s be proactive. Let\u2019s make sure that this does not happen to you.\n<\/p>\n<p>\nSqlity.net offers a <a title=\"Database Audits\" href=\"http:\/\/sqlity.net\/services\/database-audits\/\">Security Audit<\/a> in which we will review your overall database security implementation and make recommendations in areas where security could be improved.\n<\/p>\n<ul>\n<li>We review the security of your SQL Server installation to uncover any gaps. We will review your permission management, your granted permissions and security related database and server settings. Did you know for example that the common practice to set a database to \u201ctrustworthy\u201d, can make your system vulnerable because of silent permissions. Insufficient permission management or misunderstood settings can put your information is at risk.<\/li>\n<\/ul>\n<p>\nThink of it as a form of insurance. A business wouldn\u2019t operate without business insurance. Ensuring your database security is simply another form of insurance.\n<\/p>\n<p>\nAre you ready to get started? <a title=\"Contact\" href=\"http:\/\/sqlity.net\/contact\/\">Contact us today<\/a>.\n<\/p>\n<h2>Our Database Security Philosophy<\/h2>\n<p>\nAt sqlity.net, our philosophy is that every business should operate on the <strong>least privilege principle<\/strong>.\n<\/p>\n<p>\nThis means any data access is governed by the actual access requirement. Employees can access only the data they need to do their jobs and nothing more. Application accounts should not have administrative access to you SQL Server Instance or even the server. Think about it, why would the marketing team need access to HR records? Why would developers need access to customer credit card information? They don\u2019t of course and this level of accessibility can create vulnerabilities in the system.\n<\/p>\n<p>\nOur experience includes compliance with PCI (payment card industry), Sarbanes-Oxley and HIPAA requirements. When hiring sqlity.net, you can be assured you\u2019re getting a thorough database security check up. We\u2019ve worked with many businesses to improve their database security, from small businesses with a single database to large-scale database installations for a Fortune 50.\n<\/p>\n<p>\nLet\u2019s find out if your database is secure. <strong>Call 832-377-5489 or <a title=\"Contact\" href=\"http:\/\/sqlity.net\/contact\/\">email us<\/a> now.<\/strong><\/p>\n","protected":false},"excerpt":{"rendered":"<p>SQL Server Database Security Audit Let us ask you a simple question: Is your data secure? The High Cost of an Unsecure System&#8230; Did You Know the Average Cost for EACH Compromised Customer Record is $188? (src: Ponemon) Depending on <a href=\"https:\/\/sqlity.net\/en\/services\/security\/\">[more&#8230;]<\/a><\/p>\n","protected":false},"author":3,"featured_media":1571,"parent":5,"menu_order":2,"comment_status":"closed","ping_status":"closed","template":"","meta":{"footnotes":""},"class_list":["post-15","page","type-page","status-publish","has-post-thumbnail","hentry"],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v28.3 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Is your Database Security at risk?<\/title>\n<meta name=\"description\" content=\"Don&#039;t let database security be an afterthought. Your site could be one of the 86% of sites with a serious vulnerability like SQL Injection. Sqlity.net can plug the gaps so you&#039;re safe. Contact us today.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/sqlity.net\/en\/services\/security\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Is your Database Security at risk?\" \/>\n<meta property=\"og:description\" content=\"Don&#039;t let database security be an afterthought. Your site could be one of the 86% of sites with a serious vulnerability like SQL Injection. Sqlity.net can plug the gaps so you&#039;re safe. Contact us today.\" \/>\n<meta property=\"og:url\" content=\"https:\/\/sqlity.net\/en\/services\/security\/\" \/>\n<meta property=\"og:site_name\" content=\"sqlity.net\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/sqlity.net\" \/>\n<meta property=\"article:modified_time\" content=\"2014-11-18T00:43:37+00:00\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:site\" content=\"@sqlity\" \/>\n<meta name=\"twitter:label1\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data1\" content=\"4 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/sqlity.net\\\/en\\\/services\\\/security\\\/\",\"url\":\"https:\\\/\\\/sqlity.net\\\/en\\\/services\\\/security\\\/\",\"name\":\"Is your Database Security at risk?\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/sqlity.net\\\/en\\\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\\\/\\\/sqlity.net\\\/en\\\/services\\\/security\\\/#primaryimage\"},\"image\":{\"@id\":\"https:\\\/\\\/sqlity.net\\\/en\\\/services\\\/security\\\/#primaryimage\"},\"thumbnailUrl\":\"\",\"datePublished\":\"2014-08-27T10:53:59+00:00\",\"dateModified\":\"2014-11-18T00:43:37+00:00\",\"description\":\"Don't let database security be an afterthought. Your site could be one of the 86% of sites with a serious vulnerability like SQL Injection. Sqlity.net can plug the gaps so you're safe. Contact us today.\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/sqlity.net\\\/en\\\/services\\\/security\\\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/sqlity.net\\\/en\\\/services\\\/security\\\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/sqlity.net\\\/en\\\/services\\\/security\\\/#primaryimage\",\"url\":\"\",\"contentUrl\":\"\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/sqlity.net\\\/en\\\/services\\\/security\\\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/sqlity.net\\\/en\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Services\",\"item\":\"https:\\\/\\\/sqlity.net\\\/en\\\/services\\\/\"},{\"@type\":\"ListItem\",\"position\":3,\"name\":\"Security\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/sqlity.net\\\/en\\\/#website\",\"url\":\"https:\\\/\\\/sqlity.net\\\/en\\\/\",\"name\":\"sqlity.net\",\"description\":\"Quality for SQL\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/sqlity.net\\\/en\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Is your Database Security at risk?","description":"Don't let database security be an afterthought. Your site could be one of the 86% of sites with a serious vulnerability like SQL Injection. Sqlity.net can plug the gaps so you're safe. Contact us today.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/sqlity.net\/en\/services\/security\/","og_locale":"en_US","og_type":"article","og_title":"Is your Database Security at risk?","og_description":"Don't let database security be an afterthought. Your site could be one of the 86% of sites with a serious vulnerability like SQL Injection. Sqlity.net can plug the gaps so you're safe. Contact us today.","og_url":"https:\/\/sqlity.net\/en\/services\/security\/","og_site_name":"sqlity.net","article_publisher":"https:\/\/www.facebook.com\/sqlity.net","article_modified_time":"2014-11-18T00:43:37+00:00","twitter_card":"summary_large_image","twitter_site":"@sqlity","twitter_misc":{"Est. reading time":"4 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/sqlity.net\/en\/services\/security\/","url":"https:\/\/sqlity.net\/en\/services\/security\/","name":"Is your Database Security at risk?","isPartOf":{"@id":"https:\/\/sqlity.net\/en\/#website"},"primaryImageOfPage":{"@id":"https:\/\/sqlity.net\/en\/services\/security\/#primaryimage"},"image":{"@id":"https:\/\/sqlity.net\/en\/services\/security\/#primaryimage"},"thumbnailUrl":"","datePublished":"2014-08-27T10:53:59+00:00","dateModified":"2014-11-18T00:43:37+00:00","description":"Don't let database security be an afterthought. Your site could be one of the 86% of sites with a serious vulnerability like SQL Injection. Sqlity.net can plug the gaps so you're safe. Contact us today.","breadcrumb":{"@id":"https:\/\/sqlity.net\/en\/services\/security\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/sqlity.net\/en\/services\/security\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/sqlity.net\/en\/services\/security\/#primaryimage","url":"","contentUrl":""},{"@type":"BreadcrumbList","@id":"https:\/\/sqlity.net\/en\/services\/security\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/sqlity.net\/en\/"},{"@type":"ListItem","position":2,"name":"Services","item":"https:\/\/sqlity.net\/en\/services\/"},{"@type":"ListItem","position":3,"name":"Security"}]},{"@type":"WebSite","@id":"https:\/\/sqlity.net\/en\/#website","url":"https:\/\/sqlity.net\/en\/","name":"sqlity.net","description":"Quality for SQL","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/sqlity.net\/en\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"}]}},"jetpack_sharing_enabled":true,"jetpack_shortlink":"https:\/\/wp.me\/P2wXuw-f","jetpack-related-posts":[],"_links":{"self":[{"href":"https:\/\/sqlity.net\/en\/wp-json\/wp\/v2\/pages\/15","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/sqlity.net\/en\/wp-json\/wp\/v2\/pages"}],"about":[{"href":"https:\/\/sqlity.net\/en\/wp-json\/wp\/v2\/types\/page"}],"author":[{"embeddable":true,"href":"https:\/\/sqlity.net\/en\/wp-json\/wp\/v2\/users\/3"}],"replies":[{"embeddable":true,"href":"https:\/\/sqlity.net\/en\/wp-json\/wp\/v2\/comments?post=15"}],"version-history":[{"count":0,"href":"https:\/\/sqlity.net\/en\/wp-json\/wp\/v2\/pages\/15\/revisions"}],"up":[{"embeddable":true,"href":"https:\/\/sqlity.net\/en\/wp-json\/wp\/v2\/pages\/5"}],"wp:attachment":[{"href":"https:\/\/sqlity.net\/en\/wp-json\/wp\/v2\/media?parent=15"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}