Security Testing

Database Security Testing

Your database servers usually hold some of your organisation's most sensitive and valuable data like customer, supplier or employee details, financial information and credit card data being just some examples. As such, this data may be considered to be the "crown jewels" of your Company - the impact in terms of reputation and cost could be significant should such information get into wrong hands. This can be performed externally for database exposed on internet or intranet and it can be performed internally for threats from within the Company.

What do you get?

We will provide a detailed report after completion of the penetration testing. The report will highlight the weaknesses in the system that affects the availability, reliability and integrity of information assets. It will also provide the solutions for covering each identified risk. This report will contain the following:

  • Cost effective and predictable cost makes it suitable for your budget management. No additional staff, software or infrastructure required.
  • You receive on-demand service with the flexibility to schedule your tests.
  • Testing database security including database permissions and privileges
  • Testing data format integrity and referential integrity
  • Penetration test of your database using a variety of tools
  • Conduct a security analysis of the SQL data-stream between the application and database
  • Load testing
  • You receive a written report about state of your application security.
  • You receive support through your mitigation life cycle.

Who needs it?

Companies that value the data in their database servers and would like to secure their database from unauthorized people.

Features

Testing the interfaces to the database such as GUIs; Java, COM, or .net classes; web services; screen-scraping of legacy mainframe applications; and Application programming interfaces (APIs) such as ODBC, JDBC, and OLEDB

We are well versed in using the many tools available to test databases, such as:

  • Oracle
  • MySQL
  • Microsoft