The Secerno Difference
Secerno’s radically different technology provides protection where it matters most – right next to the asset it is protecting.
Traditional database defence systems are too course-grained, difficult and expensive to adapt to meet current business and security needs. Today’s electronic threats evolve so dramatically, with the most dangerous attacks being tailored to your database. Static, coarse protection systems cannot keep pace. Yet new security measures must not risk delaying legitimate traffic.
Secerno products protect organisations’ data at the highest level from known and unknown threats and ensure continuous improvement of data security. Deploying a microperimeter approach, Secerno sits right next to the data asset it is protecting and is unique because it effectively provides organisations with a “security brain for your database”. It does this through an approach based upon three founding tenets:
1. Understand:
Secerno allows users to build a rich understanding of application-to-database behaviour, which can be used to insist on database interactions conforming only to permitted behaviours. Secerno.SQL does this by automatically building a model that analyses how applications interact with the database, which organisations use to develop – quickly and accurately – a security policy that reflects how its applications use the database.
2. Control:
Secerno provides organisations with unprecedented control over their data assets. It supports audit and compliance requirements - legally admissible audit information allows you to demonstrate compliance - and simplifies IT security management, allowing policies to be set and adapted quickly, efficiently and accurately. It provides intelligent database intrusion detection (IDS) and intrusion prevention (IPS). Patterns in user and application behaviour are summarised for management reporting.
3. Protect:
With the usage policy in place, companies are protected from known or unknown threats to data, whether from inside or outside the organisation. Secerno is the only effective way to protect against all SQL injection attacks – the fastest growing threat to corporate databases. Because security staff can see immediately any deliberate or accidental breach of security, security can be continually updated and improved. Unlike most other solutions, Secerno gives organisations the ability to stop malicious instructions reaching the database.