Uploaded by Duy Hung Pham

Database Security Report from IT Central Station

advertisement
DS
Database Security
Buyer's Guide and Reviews
April 2019
Database Security
Get a custom version of this report...personalized for you!
Thanks for downloading this IT Central Station report.
Note that this is a generic report based on reviews and opinions from the entire IT
Central Station community. We offer a customized report personalized for you based on:
• Your industry
• Company size
• Which solutions you're already considering
It includes recommendations for you based on what other people like you are researching and
using.
It takes 2-3 minutes to get the report using our shortlist builder wizard. We recommend it!
Get your personalized report here.
2
Database Security
Contents
Vendor Directory
Top Vendors
Top Solutions by Ranking Factor
4
5-6
7
Focus on Solutions
IBM Guardium
8 - 10
Imperva SecureSphere Database Security
11 - 13
Oracle Audit Vault
14 - 15
Fortinet FortiDB
16 - 17
IDERA SQL Compliance Manager
18 - 20
CA ACF2
21 - 22
Sentrigo Hedgehog
23 - 24
Informatica Data Masking
25
Trustwave DbProtect
26
IDERA SQL Secure
27
About This Report and IT Central Station
28
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
3
Database Security
Vendor Directory
CA Technologies
CA Cleanup
Imperva
Imperva SecureSphere Database Security
CA Technologies
CA ACF2
Informatica
Informatica Secure@Source
DataSunrise
DataSunrise Database Security
Informatica
Informatica Data Masking
DB Networks
DB Networks DBN-6300
McAfee
Sentrigo Hedgehog
Fortinet
Fortinet FortiDB
Oracle
Oracle Audit Vault
HexaTier
HexaTier
Penta Security Systems
MyDiamo
IBM
IBM Guardium
Trustwave
Trustwave DbProtect
IDERA
IDERA SQL Secure
Vera
Vera
IDERA
IDERA SQL Compliance Manager
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
4
Database Security
Top Database Security Solutions
Over 334,664 professionals have used IT Central Station research. Here are the top Database Security vendors based on product
reviews, ratings, and comparisons. All reviews and ratings are from real users, validated by our triple authentication process.
Chart Key
Views
Number of views
Comparisons
Reviews
Words/Review
Number of times compared Total number of reviews on
to another product
IT Central Station
Average words per review
on IT Central Station
Average Rating
Average rating based on
reviews
Bar length
The total ranking of a product, represented by the bar length, is based on a weighted aggregate score. The score is calculated as follows: The
product with the highest count in each area gets the highest available score. (18 points for Reviews, Words/Review (Avg), Views and
Comparisons.) Every other product gets assigned points based on its total in proportion to the #1 product in that area. For example, if a product
has 80% of the number of reviews compared to the product with the most reviews then the product's points for reviews would be 18 (weighting
factor) * 80% = 14.4. For Average Rating, the maximum score is 28 points awarded linearly between 6-10 (e.g. 6 or below=0 points; 7.5=10.5
points; 9.0=21 points; 10=28 points). If a product has fewer than ten reviews, the point contribution for Average Rating and Words/Review (Avg) is
reduced: 1/3 reduction in points for products with 5-9 reviews, two-thirds reduction for products with fewer than five reviews. Reviews that are
more than 24 months old, as well as those written by resellers, are completely excluded from the ranking algorithm.
1
IBM Guardium
22,265 views
2
8.1 average rating
4 reviews
494 Words/Review
9.0 average rating
3,033 comparisons
2 reviews
184 Words/Review
9.5 average rating
1,093 comparisons
2 reviews
861 Words/Review
9.0 average rating
4 reviews
928 Words/Review
8.0 average rating
5,853 comparisons
Fortinet FortiDB
2,704 views
5
524 Words/Review
Oracle Audit Vault
7,246 views
4
25 reviews
Imperva SecureSphere Database Security
17,915 views
3
6,579 comparisons
IDERA SQL Compliance Manager
1,085 views
357 comparisons
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
5
Database Security
6
CA ACF2
945 views
7
9.0 average rating
191 comparisons
1 reviews
199 Words/Review
7.0 average rating
1,090 comparisons
0 reviews
0 Words/Review
0 reviews
0 Words/Review
0 reviews
0 Words/Review
Trustwave DbProtect
2,111 views
10
313 Words/Review
Informatica Data Masking
1,580 views
9
2 reviews
Sentrigo Hedgehog
577 views
8
455 comparisons
802 comparisons
IDERA SQL Secure
1,691 views
267 comparisons
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
6
Database Security
Top Solutions by Ranking Factor
Views
SOLUTION
VIEWS
1
IBM Guardium
22,265
2
Imperva SecureSphere Database
Security
17,915
3
Oracle Audit Vault
7,246
4
Fortinet FortiDB
2,704
5
Trustwave DbProtect
2,111
Reviews
SOLUTION
REVIEWS
1
IBM Guardium
25
2
Imperva SecureSphere Database
Security
4
3
IDERA SQL Compliance Manager
4
4
Oracle Audit Vault
2
5
Fortinet FortiDB
2
Words / Review
SOLUTION
WORDS /
REVIEW
1
IDERA SQL Compliance Manager
928
2
Fortinet FortiDB
861
3
IBM Guardium
524
4
Imperva SecureSphere Database
Security
494
5
CA ACF2
313
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
7
Database Security
IBM Guardium
See 26 reviews >>
Overview
The IBM Security Guardium portfolio empowers organizations to grow their business and prove compliance with smarter data
protection capabilities. It provides complete visibility, actionable insights, real time controls and automated compliance workflows
throughout the entire data protection journey, to support your most critical data protection needs.
IBM Security Guardium delivers discovery & classification, vulnerability & risk assessments, real-time monitoring & alerting,
encryption, advanced analytics and compliance reporting across structured, unstructured, and semi-structured data in on-prem
(including mainframe), cloud, and across hybrid cloud environments.
SAMPLE CUSTOMERS
TOP COMPARISONS
Imperva SecureSphere Database Security vs. IBM Guardium … Compared 46% of the time [See comparison]
Oracle Audit Vault vs. IBM Guardium … Compared 23% of the time [See comparison]
IDERA SQL Secure vs. IBM Guardium … Compared 8% of the time [See comparison]
REVIEWERS *
VISITORS READING REVIEWS *
TOP INDUSTRIES
TOP INDUSTRIES
Financial Services Firm … 25%
Insurance Company … 13%
Energy/Utilities Company … 13%
Transportation Company … 9%
Financial Services Firm … 50%
Insurance Company … 18%
Healthcare Company … 14%
Government … 9%
COMPANY SIZE
COMPANY SIZE
1-200 Employees … 13%
201-1000 Employees … 2%
1001+ Employees … 84%
1-200 Employees … 25%
201-1000 Employees … 10%
1001+ Employees … 65%
* Data is based on the aggregate profiles of IT Central Station Users reviewing and researching this solution.
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
8
Database Security
IBM Guardium
Continued from previous page
Top Reviews by Topic
VALUABLE FEATURES
SeniorIn2f4b
See more Valuable Features >>
The most valuable is the GUI, the interface. It also interfaces well with REST API, if you want to automate some of the commands.
Inside the GUI they've really done a lot, especially from version 9 to version 10, in how they lay it out and how user-friendly it is. I've
been using it for a few years, but for someone newer it's now a lot easier to use and not as daunting. In terms of the advanced
features, we do a lot of different regulations - some of the advanced ones, like GDPR, that's a big regulation in the EU. We do a lot
of classifications and ... [Full Review]
I'm not aware of our using any of the existing advanced features. I was only in on the initial implementation, so if they have added
new things since then, I'm not aware of it. [Full Review]
it_user63172
5
The most valuable feature is using the capture operation mode “S-TAP/K-TAP agent”, because all activities in the database are
captured, including direct access to the database server by privileged users. This is useful because, even if the database server
logs were deleted, the Guardium Collector has already stored such data to enable traceability of access. [Full Review]
Sidney
Monteiro
Vincent
Ricchio
Satisfies audit requests, to give us an idea if anybody is accessing our privileged user IDs without our knowledge. We don't use any
of the advanced features. Regarding other features we would like to implement, I don't deal with the actual setup of the product. We
have a specialist for Guardium to do that for us. We tell him our requirements and he builds the policies. So far it's very limited on
our side, but I imagine on the open systems, side there would be a lot more complex policies. [Full Review]
IMPROVEMENTS TO MY ORGANIZATION
SeniorIn2f4b
it_user63172
5
Vincent
Ricchio
See more Improvements To My Organization >>
It has really helped identify areas that we need to fix. It also identifies, from a compliance standpoint, records we can provide. It
shows us just how secure we are overall, as a company, rather than just trying to do things here and there. It helps automate what
would take thousands of hours for DBAs to do manually. Our main focus for IBM Guardium is to support security initiatives and
compliance policies within our organization. We use the DPD product for monitoring, especially for GDPR, SOX regulations and, of
course, the vulnerability assessmen... [Full Review]
It's another layer to help us identify, especially from audit perspectives. It's allowing us to be more proactive than reactive on alerts
and access rights and types of resources that are being hit. Before, there were a lot of different solutions, but this expanded that out
and made it a more holistic solution. It provides centralization of monitoring, instead of multiple, disparate applications. It definitely
allows more economies of scale, streamlining, less fragmented use. We also use IBM Guardium to support security initiatives and
compliance po... [Full Review]
It's more secure. The big issue is satisfying audit requirements, that is really big in our company right now. We also use Guardium to
support security initiatives and compliance policies within our organization. For what we do, we need to know who exactly is using
our privileged IDs, because that's a security risk, if someone who is not authorized does that. I don't know if Guardium has helped
us comply with industry regulations like SOX, PCI, or GDPR. We also have not integrated it into other systems. In the past we were
doing a lot of manual chec... [Full Review]
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
9
Database Security
IBM Guardium
ROOM FOR IMPROVEMENT
SeniorIn2f4b
Lawrence
Wells
Brian
Dessoffy
SystemsDf14
d
See more Room For Improvement >>
I'd like to see a smoother GUI interface for the CAS agent - CAS does configurations on the database - to interface better with the
vulnerability assessments. I'd also like to make sure that the data sources can be more easily managed, because some of them are
tied to multiple things. You try to remove one and you have to go to all the different spots to remove the associations before you
can get rid of it. The user groups are really good for giving them feedback. I've seen, over the years, that they take a lot of that
customer feedback and they act... [Full Review]
One of the limitations that everyone who uses Guardium knows is its ability for back-end reporting. Guardium in and of itself is a big
data platform. It creates big data all by itself. The ability to collect it sometimes is easier than the ability to retrieve it, use it, or give a
good representation of it for incidence response or questions which come from the different people who want to use the data.
Then, it goes back to the use of the data. Using the data in native Guardium is difficult, at best. I know there are current
advancements. I know th... [Full Review]
Overall testing and quality need improvement. It is fairly buggy at times, so it feels like it could use additional staff on the product,
testing and trying it out. I would like to see a lot of additional reporting and analytics features. They have basic outlier detection, but
I would love to see that go further, and model it after analytics tools like Splunk. If the product could integrate with Splunk, or mimic
it, it would provide a lot of value. [Full Review]
The one thing that I would like to see improved, but I don't think it's going to be in the next release, is its reporting capabilities. I
think that's been offloaded to another third-party product that I think IBM actually endorses for that. It was built by the guy who
helped develop Guardium but left IBM and spun up his own company. They found a need and they filled it. I think they filled it better
than at least IBM thinks they can do for now. [Full Review]
PRICING, SETUP COST AND LICENSING
Sidney
Monteiro
Continued from previous page
See more Pricing, Setup Cost And Licensing >>
The price of Guardium is higher than the main competitor, Imperva. In addition, it's complex as the calculation of the licensing is
done by Processor Value Unit (PVU). However, before purchasing a DAP solution, it is important to analyze specific points to
evaluate the cost-benefit of each tool. For example: Does the environment to be monitored have mainframes? If so, it's a point for
Guardium. If not, a point for Imperva. Note: IBM is looking into a new licensing policy and reducing the price of Guardium. [Full
Review]
The biggest challenge is the cost associated with the product, and the cost of maintaining. Everything is not translated directly to
the benefits we see. There are benefits, yes, but if I were writing the check, would I buy Guardium? No. [Full Review]
Guardium93
21
Little high as compare to other products available in the market but the service provided by vendor is great and there are many
additional functionalities as compare to other tools [Full Review]
it_user5453
76
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
10
Database Security
Imperva SecureSphere Database Security
See 4 reviews >>
Overview
Imperva SecureSphere Database Security:
Audits all access to sensitive data.Alerts or blocks database attacks and unauthorized activities, in real time.Detects and virtually
patches database vulnerabilities.Identifies excessive user rights and dormant users, and enables a complete rights review
cycle.Accelerates incident response and forensics investigations with advanced analytics.
SAMPLE CUSTOMERS
BlueCross BlueShield, eHarmony, EMF Broadcasting, GE Healthcare, Metro Bank, The Motley Fool, Siemens
TOP COMPARISONS
IBM Guardium vs. Imperva SecureSphere Database Security … Compared 59% of the time [See comparison]
Oracle Audit Vault vs. Imperva SecureSphere Database Security … Compared 13% of the time [See comparison]
Fortinet FortiDB vs. Imperva SecureSphere Database Security … Compared 8% of the time [See comparison]
REVIEWERS *
VISITORS READING REVIEWS *
TOP INDUSTRIES
TOP INDUSTRIES
Financial Services Firm … 34%
Government … 9%
Reseller … 9%
Comms Service Provider … 9%
Financial Services Firm … 42%
Government … 17%
Energy/Utilities Company … 8%
Comms Service Provider … 8%
COMPANY SIZE
1-200 Employees … 5%
201-1000 Employees … 24%
1001+ Employees … 71%
* Data is based on the aggregate profiles of IT Central Station Users reviewing and researching this solution.
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
11
Database Security
Imperva SecureSphere Database Security
Continued from previous page
Top Reviews by Topic
VALUABLE FEATURES
See more Valuable Features >>
The tool happens to be very intelligent when it comes to processing policies and sounding alerts. It allows us to implement policies
and measure actions against them, raising alerts accordingly. That is the best feature. [Full Review]
AjayChattwal
I like Imperva SecureSphere platform forms. Imperva SecureSphere is the foundation for SecureSphere data, file and web
application solutions. Imperva SecureSphere is designed to work together, however can be independently deployed. [Full Review]
Darren
Chaker
IMPROVEMENTS TO MY ORGANIZATION
See more Improvements To My Organization >>
It helps us look into who's doing what, particularly on databases related to critical applications. That's the way we see it as useful.
We've been using it for four or five years now, and it has been bringing in the value that we expected it to. [Full Review]
AjayChattwal
It enabled us to monitor the most critical DBA activities, and most critically helped us identify default accounts and passwords.
Additionally, with this solution we were able to block an external attack on our Oracle DB. [Full Review]
Sanjeet
Kumar
Bhuyan
ROOM FOR IMPROVEMENT
AjayChattwal
Sanjeet
Kumar
Bhuyan
See more Room For Improvement >>
Comparing it with other products in the market, we definitely see that Imperva SecureSphere is head-to-head with the likes of
McAfee, IBM Guardium, and others. It's definitely good. The only challenge I see is that SecureSphere is deployed on servers or
databases which are held on physical infrastructure. However, there are databases which are hosted on cloud platforms and
Imperva has a separate tool altogether for that, not SecureSphere. If an organization is monitoring databases which are on physical
as well as virtual infrastructure, running two ... [Full Review]
They have to put more focus on the administrative part of the application, especially on upgrades. There are a lot of packages to
download and install that you have to be knowledgeable on. For example, we tried to install a version, and it did not work. Then,
support had to become involved. I would also like to see improvement in the integration part of the tool. This should be an easy
process. For example, I had an issue with the integration of a file server. [Full Review]
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
12
Database Security
Imperva SecureSphere Database Security
Continued from previous page
SecureSphere activity log can be used with Imperva CounterBreach in an effort to protect enterprise data from theft and loss
caused. Since such is core to its function, I would like to see future versions to integrate such options. [Full Review]
Darren
Chaker
PRICING, SETUP COST AND LICENSING
See more Pricing, Setup Cost And Licensing >>
Compare other similar products and definitely use the free trial. I truly enjoyed using it, and recommend Imperva SecureSphere to
any one who has similar needs. [Full Review]
Darren
Chaker
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
13
Database Security
Oracle Audit Vault
See 2 reviews >>
Overview
Oracle Audit Vault monitors Oracle and non-Oracle database traffic to detect and block threats, as well as improves compliance
reporting by consolidating audit data from databases, operating systems, directories, and other sources.
SAMPLE CUSTOMERS
Abu Dhabi Department of Finance, Kingdom of Saudi Arabia Ministry of Health, Educational Testing Service, Ryohin Keikaku Co. Ltd., SPC
Brasil, REDISA, Qatar Olympic Committee, Seneca College, Hunan Social Insurance Management and Service Bureau,
TOP COMPARISONS
IBM Guardium vs. Oracle Audit Vault … Compared 61% of the time [See comparison]
Imperva SecureSphere Database Security vs. Oracle Audit Vault … Compared 26% of the time [See comparison]
Trustwave DbProtect vs. Oracle Audit Vault … Compared 3% of the time [See comparison]
VISITORS READING REVIEWS *
TOP INDUSTRIES
Financial Services Firm … 29%
Comms Service Provider … 14%
University … 14%
Non Tech Company … 14%
COMPANY SIZE
1-200 Employees … 24%
201-1000 Employees … 35%
1001+ Employees … 41%
* Data is based on the aggregate profiles of IT Central Station Users reviewing and researching this solution.
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
14
Database Security
Oracle Audit Vault
Continued from previous page
Top Reviews by Topic
VALUABLE FEATURES
Osama
Mustafa
See more Valuable Features >>
Different features I have been using in this product: * Audit policies for Oracle Database * Reports and report schedules *
Entitlement auditing for Oracle Database * Stored procedure auditing * Alerts and email notifications All the above features will
allow you to manage and monitor the infrastructure, databases very easily and create custom reports depending on what you want.
[Full Review]
The critical event alerts and reporting features have greatly reduced loss of man hours that would have been spent on going
through the whole audit event logs. [Full Review]
Adesola
Jolaoso
IMPROVEMENTS TO MY ORGANIZATION
See more Improvements To My Organization >>
* One place to collect all the audit files * Integrations with third-party products, and * Monitoring everything from one place. This will
improve your infrastructure and make it secure for sure. [Full Review]
Osama
Mustafa
ROOM FOR IMPROVEMENT
See more Room For Improvement >>
Different things should be improved: * The migration from an old version to a newer version is not that easy * Database grouping
also should be improved, and * The reporting. [Full Review]
Osama
Mustafa
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
15
Database Security
Fortinet FortiDB
See 2 reviews >>
Overview
FortiDB software is a comprehensive database security and compliance platform that helps large enterprises and cloud-based
service providers protect their databases and applications from internal and external threats. Its flexible policy framework allows
you to quickly and easily implement internal IT control frameworks for database activity monitoring, IT audit and regulatory
compliance.
SAMPLE CUSTOMERS
Chunghwa Telecom
TOP COMPARISONS
Imperva SecureSphere Database Security vs. Fortinet FortiDB … Compared 42% of the time [See comparison]
IBM Guardium vs. Fortinet FortiDB … Compared 35% of the time [See comparison]
Oracle Audit Vault vs. Fortinet FortiDB … Compared 8% of the time [See comparison]
* Data is based on the aggregate profiles of IT Central Station Users reviewing and researching this solution.
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
16
Database Security
Fortinet FortiDB
Continued from previous page
Top Reviews by Topic
VALUABLE FEATURES
Jason
Wetzel
See more Valuable Features >>
It's great to get out, it's flexible. They have some good ramping up for performance between different devices. The biggest thing, for
us lately, has been their cloud tools. They're like Intercept X from Sophos, where they'll test for ransomware. Fortinet has the same
sort of set up with their cloud devices. So your firewall picks up something suspicious, it sends it up to the cloud for analysis. We
also have their in-house antivirus. Having different antivirus checkpoints throughout the network is a good thing as well. [Full
Review]
It is critical to monitor the action in a database. This is the most important feature of FortiDB. You can create queries, delete data,
block as a firewall and more. You can also reset the station user if you want to do a specific update. [Full Review]
ReviewerSE
399
IMPROVEMENTS TO MY ORGANIZATION
See more Improvements To My Organization >>
In most of my organization, I must disable SSL encryption in a database for monitoring by FortiDB. Once I do so, FortiDB can get to
work and monitor the solution. [Full Review]
ReviewerSE
399
ROOM FOR IMPROVEMENT
Jason
Wetzel
See more Room For Improvement >>
WatchGuard has a desktop-based admin tool, instead of doing everything through the web. I'm an old-school guy. I really don't like
web GUI interfaces. They're always slow and laggy and their design is restricted, whereas a binary deployment for an admin tool is
always faster, easier, more flexible. I would like that kind of functionality from Fortinet. In part, it's bias, because I'm familiar with it.
But WatchGuard is a very flexible tool. It's very dated now, it needs to be worked on, but it is quite a good tool in that way. [Full
Review]
PRICING, SETUP COST AND LICENSING
See more Pricing, Setup Cost And Licensing >>
It's relatively inexpensive in comparison to everything else that has the same functionality. If you're looking at SonicWall or if you're
looking at WatchGuard, their prices are about a third higher with relatively the same functionality. [Full Review]
Jason
Wetzel
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
17
Database Security
IDERA SQL Compliance Manager
See 4 reviews >>
Overview
IDERA SQL Compliance Manager is a comprehensive auditing solution that uses policy-based algorithms to track changes to your
Microsoft SQL Server objects and data. SQL Compliance Manager gives you detailed visibility to determine who did “what”,
“when”, “where”, and “how”, whether the event is initiated by privileged users or hackers. SQL Compliance Manager also helps
ensure compliance with regulatory and data security requirements such as SOX, PCI DSS, GDPR, HIPAA, and more. SQL
Compliance Manager goes beyond traditional auditing approaches by providing real-time monitoring, alerting, and auditing of all
data access, selects, updates, schema modifications and permission changes to SQL Server databases.
SAMPLE CUSTOMERS
Hanger; AmerisourceBergen, CMS Energy, Manulife Financial, Patterson Companies, Pfizer, Rockwell Automation, TrialCard, Unum,
Verizon Communications
TOP COMPARISONS
IBM Guardium vs. IDERA SQL Compliance Manager … Compared 54% of the time [See comparison]
Imperva SecureSphere Database Security vs. IDERA SQL Compliance Manager … Compared 19% of the time [See comparison]
IDERA SQL Secure vs. IDERA SQL Compliance Manager … Compared 7% of the time [See comparison]
* Data is based on the aggregate profiles of IT Central Station Users reviewing and researching this solution.
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
18
Database Security
IDERA SQL Compliance Manager
Continued from previous page
Top Reviews by Topic
VALUABLE FEATURES
Database1c8
f
See more Valuable Features >>
The ability to track activity including the SQL statements is definitely valuable. I really like how the database is laid out. It's
straightforward. I can query the back-end tables. I've made a few of my own email alerts based on the data and the tables. It's
accessible. That's very important. Also, one of the things that comes with SQL Server is SQL Server Profiler. We use IDERA SQL
Compliance Manager in that same manner to trace activity, and it does a good job of storing. Profiler is okay but it doesn't really
store it in one shot like Idera does... [Full Review]
IMPROVEMENTS TO MY ORGANIZATION
See more Improvements To My Organization >>
Using it was just a security process that had to be done. We didn't change the way we were working or the way things are working.
It's just an additional process that makes sure everything is secured. It didn't change anything in our environment. It was just a need,
and the product does exactly what we needed. [Full Review]
Database5b
8b
Database1c8
f
The tool can track logins and login failures. I made my own alert so that if there is a certain number of login failures for a server, it
emails me. That is really useful. If I want logins to automatically lock out after a certain number of failed attempts, I can know when
that happens. It's a good security feature but it also helps because sometimes users are setting up their report or their service and
they lock out their account but they don't tell anyone. I can easily see that. It's really useful because, with over 100 servers, it's
difficult to... [Full Review]
I can't really give an example of how the product has improved the way our organization functions as a whole, but for me,
personally, a few years ago, it helped me diagnose a problem that we were having on one of our servers. It helped answer a
question, which was nice. [Full Review]
Database8a
9a
ROOM FOR IMPROVEMENT
Database5b
8b
Database1c8
f
See more Room For Improvement >>
What would really be nice is if it were a bit more flexible, in several ways. The assistant for creating rules is nice, as it looks like
Microsoft Outlook, but it's not flexible enough. What would really a good thing is if you could refer to an external list or table for
filtering on, say, certain applications, IP addresses, or host names; or perhaps even combinations of host name and application
name. Because in our environment, we're suffering from the fact that we have a huge amount of login events. A really huge amount
of login events. We have g... [Full Review]
There is an agent that collects the data on SQL Server. Sometimes it will stop collecting. I'm not exactly sure what's happening but I
have to go in and manually restart the agent. It would be nice if the central collection server could send a request to the agent to
restart. "Oh, you haven't collected data for a week or two, go ahead and restart." Whenever we restart the agent, it starts collecting
data again. I have my own script. It checks the data collection to see how old it is. If it's over two days stale then I restart the agent. It
would be ... [Full Review]
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
19
Database Security
IDERA SQL Compliance Manager
Continued from previous page
The set up is kind of clunky, in my opinion. It's not really intuitive. If they had either a smoother install or better instructions, that
would be nice. [Full Review]
Database8a
9a
PRICING, SETUP COST AND LICENSING
See more Pricing, Setup Cost And Licensing >>
The pricing is pretty good. In terms of licensing I have more of a wishlist. If they had cheaper licensing for development, or free
licensing for development, that would be cool. [Full Review]
Database1c8
f
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
20
Database Security
CA ACF2
See 2 reviews >>
Overview
CA ACF2™ for z/OS provides innovative, comprehensive security for your business transaction environments—including Linux,
UNIX and z/OS on System z—helping you realize the reliability, scalability and cost-effectiveness of the mainframe. CA ACF2
provides an Advanced Authentication Mainframe feature, system entry validation, resource control, auditability, accountability, and
administrative control. In conjunction with distributed security solutions from CA Technologies, CA ACF2 provides mobile-tomainframe enterprise class security and compliance management.
SAMPLE CUSTOMERS
TOP COMPARISONS
IBM Resource Access Control Facility vs. CA ACF2 … Compared 43% of the time [See comparison]
CA Top Secret vs. CA ACF2 … Compared 22% of the time [See comparison]
IBM Guardium vs. CA ACF2 … Compared 11% of the time [See comparison]
* Data is based on the aggregate profiles of IT Central Station Users reviewing and researching this solution.
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
21
Database Security
CA ACF2
Continued from previous page
Top Reviews by Topic
VALUABLE FEATURES
Security8fd0
See more Valuable Features >>
One of the values in this industry is how it manages user security. We use this tool to quickly assign privileges to different users as
soon as they come in. As soon as we onboard the users, we use CA ACF to assign privileges and assign rules to all the users. When
the rule changes, we use CA ACF to change the rules or deprovision them from those rules and assign them new rules. It is done
quickly and almost automatically. [Full Review]
* The level of protection that ACF2 provides. * The NOACCESS by default is another very good feature. * Access rules are
straightforward, and easy to understand. [Full Review]
Technicad7
2e
IMPROVEMENTS TO MY ORGANIZATION
See more Improvements To My Organization >>
By providing a high level of access control to the z/OS systems, ACF2 allows us to maintain tight controls on dataset and system
access. It also helps us keep unauthorized users from accessing PHI or PII data. [Full Review]
Technicad7
2e
ROOM FOR IMPROVEMENT
See more Room For Improvement >>
I would like to see browser support whereby we can work from our desktops instead of using the mainframe tool called 3270. I
would like my team and me to be able to use simple browsers, like Chrome, to be able to access mainframe data and provision
users using the browser. [Full Review]
Security8fd0
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
22
Database Security
Sentrigo Hedgehog
See 1 review >>
Overview
McAfee database security offers real-time protection for business-critical databases from all types of threats: external, internal, and
even intra-database exploits. This software-based offering provides robust security, streamlined database security management,
and continuous compliance without requiring architecture changes, costly hardware, or downtime.
SAMPLE CUSTOMERS
Texas Tech University Health Sciences Center (TTUHSC)
TOP COMPARISONS
IBM Guardium vs. Sentrigo Hedgehog … Compared 54% of the time [See comparison]
Imperva SecureSphere Database Security vs. Sentrigo Hedgehog … Compared 27% of the time [See comparison]
Oracle Audit Vault vs. Sentrigo Hedgehog … Compared 13% of the time [See comparison]
* Data is based on the aggregate profiles of IT Central Station Users reviewing and researching this solution.
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
23
Database Security
Sentrigo Hedgehog
Continued from previous page
Top Reviews by Topic
ROOM FOR IMPROVEMENT
See more Room For Improvement >>
Sentrigo needs to become more advanced like its competitors, Imperva or IBM. It needs to detect more attacks and do more
profiling of the database to learn its normal behaviors to sense violations. [Full Review]
CTO3880
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
24
Database Security
Informatica Data Masking
Overview
De-identify, de-sensitize, and anonymize sensitive data from unauthorized access for application users, business intelligence,
application testing, and outsourcing.
SAMPLE CUSTOMERS
Vale, Hot Telecommunication, UPMC
TOP COMPARISONS
IBM Guardium vs. Informatica Data Masking … Compared 27% of the time [See comparison]
Protegrity Data Security vs. Informatica Data Masking … Compared 12% of the time [See comparison]
IBM InfoSphere Optim vs. Informatica Data Masking … Compared 9% of the time [See comparison]
* Data is based on the aggregate profiles of IT Central Station Users reviewing and researching this solution.
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
25
Database Security
Trustwave DbProtect
Overview
Trustwave DbProtect is a security platform designed for consistent monitoring and management of enterprise databases within
the data center.
Built on a centrally managed and distributed architecture, DbProtect uncovers database weaknesses. This includes configuration
mistakes, identification and access control issues, missing patches, or any toxic combination of settings that could lead to
escalation of privileges attacks, data leakage, denial-of-service (DoS), or unauthorized modification of data held within data stores
– both relational databases and big data stores.
SAMPLE CUSTOMERS
Pax World Investments, Crest Savings Bank, Magnolia Hotels
TOP COMPARISONS
IBM Guardium vs. Trustwave DbProtect … Compared 53% of the time [See comparison]
Imperva SecureSphere Database Security vs. Trustwave DbProtect … Compared 19% of the time [See comparison]
Oracle Audit Vault vs. Trustwave DbProtect … Compared 14% of the time [See comparison]
* Data is based on the aggregate profiles of IT Central Station Users reviewing and researching this solution.
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
26
Database Security
IDERA SQL Secure
Overview
IDERA SQL Secure discovers security vulnerabilities and user permissions for Microsoft SQL Server and Azure SQL databases.
Identify who has access to what and alert on violations of your corporate policies. Monitor changes made to security settings, and
generate audit reports as well as recommendations on how to improve your security model.
SAMPLE CUSTOMERS
TOP COMPARISONS
IBM Guardium vs. IDERA SQL Secure … Compared 81% of the time [See comparison]
HexaTier vs. IDERA SQL Secure … Compared 4% of the time [See comparison]
Imperva SecureSphere Database Security vs. IDERA SQL Secure … Compared 4% of the time [See comparison]
* Data is based on the aggregate profiles of IT Central Station Users reviewing and researching this solution.
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
27
Database Security
About this report
This report is comprised of a list of enterprise level Database Security vendors. We have also included several real user reviews posted on
ITCentralStation.com. The reviewers of these products have been validated as real users based on their LinkedIn profiles to ensure that they
provide reliable opinions and not those of product vendors.
About IT Central Station
The Internet has completely changed the way we make buying decisions. We now use ratings and review sites to see what other real users think
before we buy electronics, book a hotel, visit a doctor or choose a restaurant. But in the world of enterprise technology, most of the information
online and in your inbox comes from vendors but what you really want is objective information from other users.
We created IT Central Station to provide technology professionals like you with a community platform to share information about enterprise
software, applications, hardware and services.
We commit to offering user-contributed information that is valuable, objective and relevant. We protect your privacy by providing an environment
where you can post anonymously and freely express your views. As a result, the community becomes a valuable resource, ensuring you get
access to the right information and connect to the right people, whenever you need it.
IT Central Station helps tech professionals by providing:
•
•
•
A list of enterprise level Database Security vendors
A sample of real user reviews from tech professionals
Speciļ¬c information to help you choose the best vendor for your needs
Use IT Central Station to:
•
•
•
•
•
•
Read and post reviews of vendors and products
Request or share information about functionality, quality, and pricing
Contact real users with relevant product experience
Get immediate answers to questions
Validate vendor claims
Exchange tips for getting the best deals with vendors
IT Central Station
244 5th Avenue, Suite R-230 • New York, NY 10001
www.ITCentralStation.com
reports@ITCentralStation.com
+1 646.328.1944
© 2019 IT Central Station
To read more reviews about Database Security, please visit: https://www.itcentralstation.com/categories/databasesecurity
28
Download