Application Security Inc. - Database Security, Monitoring, Assessment, Auditing, Encryption, and Regulatory Compliance.
 
 
 
home client login partner login purchasing info contact us
search:
Solutions Products Partners Support News & Events About Us
AppSec Inc Solutions
ADVANCED PERSISTENT THREATS

Advanced Persistent Threat (APT) is defined as a highly coordinated attack on a specific target, perpetrated by a sophisticated, well-funded, and organized group. No longer reserved for military and defense targets, APT's have gone mainstream. Utilizing multiple attack methods, these attacks emanate from highly motivated groups such as nation states, industrial competitors, and hacktivists, and are continuously focused on one target versus opportunistically seeking out multiple targets. APT's are conducted over long periods of time, are difficult to detect, and often target government organizations, financial institutions, utilities, and manufacturing firms. The objective of an APT is to steal high-value digital assets versus damaging or vandalizing computer systems.

Network-centric defenses, such as Web Application Firewalls (WAFs), are one line of defense against APT attacks. However, they are limited by their ability to keep pace with the latest APT attack vectors. The experienced hacker will eventually find a way through these perimeter defenses.

To effectively protect sensitive data assets from APT attacks, organizations need to add a second line of defense and protect the data where it lives - in the database. DbProtect Precision Database Activity Monitoring (DAM) protects organizations from APT attacks by:
  • Proactively eliminating vulnerabilities that APT attackers exploit
  • Continuously monitoring for APT signatures indicating an attack
  • Immediately and automatically responding to an APT attack
Precision DAM enables organizations to secure their databases by controlling the security processes that impacts an organization’s sensitive data.  It provides a second layer of defense from ATP attacks through a five step program of database security process control.

FIVE STEPS TO COST-EFFECTIVE ADVANCED PERSISTENT THREAT PROTECTION - TWO MINUTE TUTORIALS

Isolate
Sensitive
Databases

Maintain an accurate inventory of all databases deployed across the enterprise and identify all sensitive data residing on those databases.

     

Eliminate
Vulnerabilities

Identify and fix vulnerabilities that are exposing the database on a continuous basis

     

Enforce
Least
Privileges

Reset user access controls and privileges to only the minimum database access required to do their jobs.
     

Monitor
for
Deviations

Implement appropriate policies and monitor for any and all activity that deviates from normal and authorized activity.
     

Respond to
Suspicious
Activity

Alert and respond to any unauthorized or suspicious activity in real-time to minimize risk of attack.

 

Anatomy of an Attack - On Demand Webinar