LogBlog

« Five Good Reasons for a new Paradigm in Database Activity Monitoring | Main | Security Management and Log Management are not as mature as you think »

What is the Difference Between Database Activity Monitoring and Database Security Management?

So a while ago we launched our Database Activity Monitoring product.  Only it is called Database Security Manager (see a screencast here), which leads me to discuss the difference between "monitoring" and "management".

Database activity monitoring is the common label for point solutions that aim to monitor privileged user activity on database management systems.  There are various approaches, but all aim to offer an alternative to monitoring through native audit (also called native logs).  The most popular approach - if you believe Mark Nicollet from Gartner (listen here) - is to use a host-based agent.  Our agent derives database activity by monitoring the requests sent to shared memory. 

Most host-based database security agents can do a lot more than "monitoring". For example, host-based agents can block/interrupt requests that meet certain criteria (such as requests from a certain origin, accessing a certain object, using a particular protocol, etc.).  It just didn't seem right to still refer to this new technology as "activity monitoring".  It is so much more!  As an industry, we have truly crossed a chasm and have not just turned data (shared memory requests) into actionable information (privileged user activity) but we are finally able to act and prevent security breaches from happening!

Posted June 29, 2009 in | Permalink


Post a comment

(If you haven’t left a comment here before, you may need to be approved by the site owner before your comment will appear. Until then, it won’t appear on the entry. Thanks for waiting.)

Visit loglogic.com

I ♥ Logs

Subscribe to this blog’s feed RSS

August 2010
Sun Mon Tue Wed Thu Fri Sat
1 2 3 4 5 6 7
8 9 10 11 12 13 14
15 16 17 18 19 20 21
22 23 24 25 26 27 28
29 30 31        
Categories
Archives
Blogroll
Blogroll
Compliance
Good Reading
LogLogic
LogLogic Partners
Sites We Watch