Presentation on theme: "1. Real-World Deployment and Best Practices with Oracle Database Vault at Customers: Ross Stores Covidien Kamal Tbeileh Sr. Principal Product Manager,"— Presentation transcript:
Real-World Deployment and Best Practices with Oracle Database Vault at Customers: Ross Stores Covidien Kamal Tbeileh Sr. Principal Product Manager, Database Security, Oracle
3 The following is intended to outline our general product direction. It is intended for information purposes only, and may not be incorporated into any contract. It is not a commitment to deliver any material, code, or functionality, and should not be relied upon in making purchasing decisions. The development, release, and timing of any features or functionality described for Oracle’s products remains at the sole discretion of Oracle.
4 Agenda Oracle Database Vault quick overview Real-World Deployment and Best Practices – Oracle Database Vault at Ross Stores – Oracle Database Vault at Covidien Q&A
5 Oracle Database Security Defense-in-Depth Access Control Oracle Database Vault Oracle Label Security Oracle Advanced Security Oracle Secure Backup Oracle Data Masking Encryption and Masking Auditing and Tracking Oracle Audit Vault Oracle Configuration Management Oracle Total Recall Oracle Database Firewall Blocking and Monitoring
6 Oracle Database Vault Privileged User Controls Limit powers of privileged users Enforce DBA separation of duties Out-of-the box policies for major applications Securely consolidate application data Works with Oracle Exadata V2 Database Machine Procurement HR Finance Application select * from finance.customers DBA
7 Oracle Database Vault Multi-Factor Access Control Protect application data and prevent application by-pass Enforce who, where, when, and how using rules and factors Achieve the cost benefits of outsourcing / off-shoring without sacrificing the confidentiality of your sensitive data Procurement HR Rebates Application
8 Customer Deployments
9 Introductions Ross Stores – Rajesh Patanaik, Manager, Financial Systems – Scott Baines, Manager, Technical Services Covidien – Joseph Davis, IS Manager – Sandra Morse, Senior DBA
10 Oracle Database Vault Out-of-the Box Protections For Applications Prevent DBA from accessing application data Pre-built policies include realms and command rules Complements application security Transparent to existing applications Customizable Minimal performance overhead (less than 5%) Oracle E-Business Suite 11i / R12 PeopleSoft Applications Siebel, i-Flex, Retek JD Edwards EnterpriseOne SAP Infosys Finacle 10
11 Related session and hands-on labs: Wednesday, Sept. 22 nd Sessions WhatWhereStartEndSession # Protect Data and Save Money: Aberdeen Found Best-in-Class Organizations Do Both (Panel) Moscone South Room :00 a.m.11:00 a.m.S Preventing Database Attacks and Data Breaches with New Oracle Database Firewall Moscone South Room :30 p.m.12:30 p.m.S Centralized Key Management and Performance for Oracle Advanced Security Moscone South Room 306 4:45 p.m.5:45 p.m.S
12 Related session and hands-on labs: Thursday, Sept. 24 th Hands-on Labs WhatWhereStartEndSession # Encrypt Your Application Data with Oracle Advanced Security Marriott Marquis, Salon 10/11 12:00 p.m.1:00 p.m.S Consolidate, Secure, and Report: Oracle Audit Vault Marriott Marquis, Salon 10/11 1:30 p.m.2:30 p.m.S Sessions WhatWhereStartEndSession # Deploying Oracle Database 11g Securely on Oracle Solaris Moscone South Room :30 a.m.11:30 a.m.S
13 Oracle Database Security Demo Grounds Moscone West Oracle Database Firewall Oracle Database Vault Oracle Label Security Oracle Audit Vault Oracle Advanced Security Oracle Database 11g with Sun Solaris Security Exhibition Hours Monday, September 209:45 a.m. - 5:30 p.m. Tuesday, September 219:45 a.m. - 5:30 p.m. Wednesday, September 229:00 a.m. - 4:00 p.m.
14 Related session and hands-on labs: Monday, Sept. 20 th Hands-on Labs WhatWhereStartEndSession # Protect your Applications with Oracle Database Vault Marriott Marquis, Salon 10/11 11:00 a.m.12:00 a.m.S :00 p.m.6:00 p.m.S Sessions WhatWhereStartEndSession # Making a Business Case for Information Security Moscone South Room :30 p.m.1:30 p.m.S Oracle Database 11g Release 2 Security: Defense in Depth Moscone South Room 103 3:30 p.m.4:30 p.m.S
15 Related session and hands-on labs: Tuesday, Sept. 21 st Hands-on Labs WhatWhereStartEndSession # Oracle Database Security: What's New? Marriott Marquis, Salon 10/11 11:00 a.m.12:00 a.m.S Sessions WhatWhereStartEndSession # Transparent Data Encryption and Masking in Oracle Database 11g Moscone South Room :00 a.m.12:00 p.m.S Real-World Deployment and Best Practices with Oracle Audit Vault Moscone South Room :30 p.m.1:30 p.m.S Real-World Deployment and Best Practices with Oracle Advanced Security Moscone South Room 300 2:00 p.m.3:00 p.m.S Database Security Event Management with Oracle Audit Vault and ArcSight Moscone South Room 300 3:30 p.m.4:30 p.m.S Real-World Deployment and Best Practices with Oracle Database Vault Moscone South Room 303 5:00 p.m.6:00 p.m.S