How it Works
Secerno.SQL in IPS mode protects data at the highest level from known and unknown threats and ensures continuous improvement of data security. It deploys a microperimeter approach and sits immediately next to the data asset it is protecting. Secerno.SQL monitors data access and protects against anomalies – whether they come from attacks from outside the organisation, corrupt employees or other internal sources.
Understand
Secerno.SQL allows users to understand application-to-database behaviour, which can be used to insist on database interactions conforming only to permitted behaviours. It does this by automatically building a model that analyses how applications interact with the database, which in turn allows organisations to quickly and accurately develop a security policy that reflects how its applications use the database.
Control
Secerno.SQL provides organisations with unprecedented control over data assets. There are no black-lists (negating the need for regular updates to protect against new threats) or white-lists (which require organisations to painstakingly create a list of acceptable commands). This allows efficient and accurate policy setting and enforcement and, uniquely, ensures there is no degradation of performance as the security policy grows more complex, which can happen with techniques that rely on black- and white-lists.
To satisfy current and next-generation compliance and demonstrate best practice, Secerno.SQL provides secure, aggregated, intelligent logging across multiple databases.
Permission creep and feature creep can also be identified and controlled by Secerno.SQL.
Protect
Secerno.SQL protects organisations through its microperimeter approach that is positioned next to the data asset it is protecting and delivering the highest levels of detection of known or unknown attacks, whether they originate from inside or outside an organisation. Secerno technology is the only way to protect against all SQL injection attacks – the fastest growing threat to corporate databases