12.07.2015 Views

Best Practices For Department Server and Enterprise System ...

Best Practices For Department Server and Enterprise System ...

Best Practices For Department Server and Enterprise System ...

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

DatabaseSecurityThere are currently minimumsecurity configurations for 14 typesof systems. There are also toolsavailable to test systems against thebenchmarks -http://www.cisecurity.org/index.htmlHave a security assessmentperformed on the system that willcontain the database.Establish accounts for eachindividual user <strong>and</strong> grant theappropriate level of access necessaryto perform job.Ensure that each user isauthenticated before access isgranted.Have process in place to clean upaccounts once the user no longerrequires access to the database.Update patches, subject to changemanagement process, on the systemas they become available <strong>and</strong> afterpatches have been tested in a nonproductionenvironmentEncrypt information stored in thedatabase.There are currently minimum securityconfigurations for 14 types of systems.There are also tools available to test systemsagainst the benchmarks -http://www.cisecurity.org/index.htmlHave a security assessment performed on thesystem that will contain the database.Establish accounts for each individual user<strong>and</strong> grant the appropriate level of accessnecessary to perform job.Ensure that each user is authenticated beforeaccess is granted.Have process in place to clean up accountsonce the user no longer requires access to thedatabase.Update patches, subject to changemanagement process, on the system as theybecome available <strong>and</strong> after patches have beentested in a non-production environmentEncrypt information stored in the database.Page 4 of 8

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!