《MySQL 的安全性和合规性.pdf》由会员分享,可在线阅读,更多相关《MySQL 的安全性和合规性.pdf(74页珍藏版)》请在三个皮匠报告上搜索。
1、Security and Compliance with MySQLCopyright 2024 Oracle and/or its affiliates.Mike Frank,MySQL Product Management Director|OracleAgendaCopyright 2024 Oracle and/or its affiliates.Compliance Overview How to Examples Architectural Review Latest Enhancements Security Guidelines MySQL Secure Deployment
2、Guide CIS Benchmark for MySQL 8.0 EE DISA STIG Resources Tell us what you needSecurity is Job#1Data is the Most Valuable Asset3“Keep the organization safe(cybersecurity/cyber resilience/GDPR compliance/data protection compliance)“Almost all breaches-preventable.Was#1 Security in 2019Still#1 Security
3、And on par for spending Increase with CloudGlobal Partner Summit-Munich,2019Data Security&Privacy Regulations are ProlilferatingCo DPLCl PPLAr PDPLAu APPNz PASa ECTAMx PDPLMa DPARu DPATh PDAIn PDPBSi PDPAJp APPICn GDPLHk PDPOBr GDPLGLBAHIPAAPatriot ActPIPEDACIPNY DFS500FOIPPA50 State Data Privacy La
4、wsFS-ISACNCUAFFIECDodd FrankBASEL IIIEU GDPRPCICCPAData Breaches keep increasing 2021 a record year for data breachesManufacturing&utilities48 compromises and a total of 48,294,629 victims.1,291 breaches in 2021 compared to 1,108 breaches in 2020Healthcare sector78 compromises and over 7 million vic
5、tims.https:/ require these Security StepsAssessLocate Risks and Vulnerabilities,Ensure that necessary security controls arePreventUsing Cryptography,User Controls,Access Controls,etcDetectStill a possibility of a breach so Audit,Monitor,AlertRecoverEnsure service is not interrupted as a result of a
6、security incidentEven through the outage of a primary databaseForensics postmortem fix vulnerabilityMySQL Security OverviewAuthenticationAuthorizationEncryptionFirewallMySQL SecurityAuditingMasking/De-Identificationhttps:/ Architecture Enterprise MonitorData EncryptionTDEEncryptionPKI Firewall Enter