Database security software to be updated
By
Ann Bednarz
,
NetworkWorld.com
, 02/02/2006
- Share/Email
- Tweet This
- Print
Application Security Inc. is expected to announce a new version of its database-focused intrusion detection and security auditing
software at the RSA Conference, which gets under way Feb. 13 in San Francisco.
AppRadar 3.0 combines database security features with monitoring tools that keep tabs on traffic heading to and from enterprise
data stores. It's designed to detect application-level security exploits such as SQL injection, as well as system misuse such
as a legitimate user inappropriately accessing financial data.
A string of high-profile data thefts has heightened awareness of the need to secure databases and applications directly, says
Ted Julian, vice president of strategy for Application Security. Attackers have become more sophisticated and organized about
infiltrating enterprise systems, he says. "The most direct things to monetize are Social Security numbers, credit card numbers
and that sort of thing. Where can you get those en masse, up to date and highly available? The database," Julian says.
Regulatory and privacy trends, too, are driving interest in database-level auditing and intrusion detection. New to AppRadar
3.0 are compliance templates that bundle preconfigured policies and reporting options written around regulations such as the
Sarbanes-Oxley Act, the Health Insurance Portability and Accountability Act, and the Payment Card Industry security standard.
Also new to AppRadar 3.0 is the option to more granularly define which events to monitor and what data to capture as part
of the process. For example, a retailer might want to be alerted to unusual attempts to capture credit-card information from
a database, but not want the credit card data in question to be stored inside AppRadar.
Typically, flagging an event means creating a record inside the monitoring system. AppRadar 3.0 logs the suspicious event,
but without storing unnecessary, sensitive data in its database -- which means users can avoid having to audit yet another
repository, Julian says.
Application Security has widened its database support in AppRadar 3.0 to include IBM DB2 and Sybase databases; previous versions
focused on Oracle and Microsoft SQL Server databases. New alerting options let users set "Active Response" rules to trigger
predefined actions -- such as initiating a security scan -- automatically when certain events occur.
The vendor also has tightened the integration between AppRadar and its AppDetective vulnerability assessment software. If
AppDetective finds vulnerabilities on a database that a company can't immediately address, the software can automatically
create a customized AppRadar policy to proactively monitor those specific known threats until IT staff can resolve them.
AppRadar 3.0 will be available in March. Pricing starts at $12,000.
Partner Content
Blue Stripe Software
www.bluestripe.com/
Improving Application Performance Troubleshooting
Diagnosing why an application is slow is hard, at times taking days or weeks to isolate and resolve. This paper explains the challenges involved using current management tools, provides a 'wish list' for application management and analysis, and explains the need for an application system-wide approach that monitors entire applications, not components.
Download Whitepaper
Virtual Vigilance: Managing Application Performance in Virtual Environments
This paper highlights the impact of virtualization on application performance. "Managing Application Performance in Virtual Environments" states: "Best-in-Class organizations are predominately taking actions around improving visibility across both physical and virtual systems, assessing the business impact of application performance and understanding interdependencies of applications in virtualized environments."
Download Whitepaper
Application Service Requests: The Missing Link for Pragmatic ITSM
Forrester Research analyst Glenn O'Donnell and BlueStripe co-founder Vic Nyman discuss a breakthrough approach to application problem management. Learn the new approach for ITSM problem management, which provides: Rapid isolation of application slow-downs to specific components for quick problem resolution, 24/7 monitoring for proactive notification of potential issues before end users are impacted and much more.
Register for Webcast
Comment