Castleforce IT Security Team

Database Security

We are offering audits of Oracle, SQL, DB2, Sybase and MySQL databases and Application Servers, a review of your database architecture and source code review of your database applications.

Auditing Oracle, SQL, DB2, Sybase, MySQL, or Lotus Notes/Domino RDBMS and applications has become an essential task to ensure the confidentiality, integrity and availability of business data. We can provide skilled consultants with the necessary database and security expertise to carry out this planned service.

We offer a number of Oracle, SQL, DB2, Sybase, MySQL, or Lotus Notes/Domino specific security services including;

  • database security assessment service (DSAS)
  • complete database and application review
  • penetration testing of Oracle, SQL, DB2, Sybase, MySQL, or Lotus Notes/Domino databases and applications
  • advice on security policy
  • advice on auditing
  • interpretation of audit results

With the exception of the DSAS service these services are all offered as pre-defined packaged consultancy or can be tailored to the specific requirements of the client. To ensure complete confidentiality, all Oracle, SQL, DB2, Sybase, MySQL, or Lotus Notes/Domino security services can be performed on site enabling the in-house database support team to work closely with our  experienced consultants in highlighting the most significant issues within the environment
At the client's request, a full breakdown of remedial actions can be provided which includes estimates of effort and impact analysis. We can offer guidance to the incumbent support team on rectifying any issues.
Often, information security weaknesses are introduced by a failure to have a coherent strategy for both the application and database development.
We can help to guide the business's Oracle, SQL, DB2, Sybase, MySQL, or Lotus Notes/Domino database security strategy thereby ensuring that any new database installations are secure from the outset.

We can assist in establishing appropriate database audit trails without unduly compromising the performance of the system. This task is often considered an unnecessary burden on the application, however, we have experience in efficiently creating database and business processes to monitor and act on the results. 

Contact Us about Database Security 


Compliance Standards

Castleforce can help you reach PCI DSS

Requirement 11 Regularly test security systems and processes

12.1.3 Includes a review at least once a year 

Castleforce can help you reach GCSx CoCo

2.4 Compliance Checking

Database Platforms

Castleforce can provide testing on the following Database and Application platforms;

  • Oracle Database Security 
  • Microsoft SQL Server Database Security
  • IBM DB2 Database Security 
  • My SQL Database Security 
  • Lotus Database Security
  • SAP Database Security
  • Informix Database Security

Database servers are the most important servers your company owns. They store client details, financial information, human resource details - all the data that keeps your company in business and, as such, they need to be secure.