Presentation
I offer the following services, which can be contracted separately or as a comprehensive plan:
Database Auditing and Hardening: Exhaustive review of configurations (SQL Server, PostgreSQL, MySQL, Oracle, etc.) to eliminate vulnerabilities, apply patches and follow CIS standards.
DB Incident Detection and Response: Monitoring of suspicious activity, log analysis to identify breaches (data exfiltration, SQL injections) and containment plan.
Access and Privilege Management (IAM for DB): Implementation of the principle of least privilege, account review, strong authentication and segregation of duties.
Data Encryption: Implementation of encryption at rest (TDE, table-level encryption) and encryption in transit (TLS/SSL) for databases.
Proactive DB Management (DBA): Performance monitoring, query tuning, backup management, disaster recovery (DRP), and incident resolution.
Secure Database Migrations: Planning and executing migrations (on-premise to cloud, between providers) with a priority focus on security throughout the process.
Implementation of Perimeter Security Solutions for DB: Configuration of database firewalls, data masking/anonymization for testing environments.
