SlideShare a Scribd company logo
Understanding
Oracle Database
Security
MARCH 16, 2016
Released
Aug 2015
About the Presenter
Agenda / Topics
Advanced User Options
Architecture = Options
Users, Roles & Grants
Resource Groups
3
1
2
4
Auditing & Virtual Private DBs5
Architecture = Options
The basic database
architecture may well
define options & limits
Database #1
Schema #1
Database #2
Processes
Memory
Instance #1
Processes
Memory
Instance #2
Database #1 Database #2
Single Instance / Server
Processes
Memory
Instance #1
Processes
Memory
Instance #2
Schema #2
Schema #1
Schema #2
Multi Instances / Server
Processes
Memory
Instance #1
Database #1
Schema #1
Schema #2
Single Instance / Multi Schemas
Traditional Choices
Processes
Memory
Instance #1
Pluggable DBs + VPN
Modern Choices
Processes
Memory
Instance #1
Database #1
Virtual Private Database (VPD)
Schema
Database #1 Database #2
Schema #1
Processes
Memory
Instance #1
Multi-Tenant / Pluggable DBs
Database #1 Database #2
Schema #1
Schema #2
Schema
Virtualization No Different
You may think VMs complicate things, but…
• VM vs. physical server, really just same diagrams
• VM flexible resource allocation & higher utilization
• OS and DB security remains essentially unchanged
• OS and DB monitoring slightly different (need tools)
• Becoming more common, and almost the standard
• SQL Server DBAs virtualized much sooner and more
prolifically in the past, we’re just now catching up
Users, Roles & Grants
Similar to diamonds,
security has many
facets; start first at
Authorization
Authorization is Paramount
Oracle offers numerous security options. The key
and first line of defense is controlling data access
Roles Offer Manageability
Authorization is a simple concept, but also complex…
Role Hierarchies
No real limit, but one level probably too simplistic
Make Your Own Roles!
Oracle Docs:
https://stage.toadworld.com/platforms/oracle/b/weblog/archive/2013/08/12/common-oracle-security-connection-mistakes
Pet peeve: quit being lazy and using 3 old roles
Advanced User
Options
There’s more to an
Oracle database user
than meets the eye
Create Role & Grants
Create PWD Function
Create Profile
Often overlooked, profiles have a lot to offer…
Create User & Grants
Now bring it all together. But there’s lots more…
Resource Groups
Not security per se,
however, managing
resource usage is
always a good idea
Allocate Resources Fairly
Development
Resource Plan
Production
Resource Plan
1st
Dev Proj
Resource
Group
Bus Users
Resource
Group
2nd
Dev Proj
Resource
Group
Developers
Resource
Group
50%
CPU
50%
CPU
70%
CPU
30%
CPU
Prevent or minimize the effects of certain DoS
(Denial of Service) type attacks against your DB
Hierarchies Once Again
Development
Resource Plan
1st
Dev Proj
Resource Plan
2nd
Dev Proj
Resource Group
50%
CPU
50%
CPU
Proj 1 Senior
PLSQL Dev
Group
Proj 1 Junior
PLSQL Dev
Group
70%
CPU
30%
CPU
Complex To Define (Not SQL)
Auditing & VPDs
Tracking access
and limiting access
based upon user
criteria
Old Style Auditing (pre-12c)
Must bounce
database to
enable!
Unified Auditing (new 12c)
Virtual Private Databases
Fine Grain Access Control
Yet another example of
how features aren’t SQL
commands but calls to
complex PL/SQL APIs
(called by OEM for you)
There’s much more!
Oracle offers numerous security
options. Many are $$ enterprise
edition options in price list 
Demo Time
I will demonstrate some of these security topics
using IDERA’s DBArtisan multi-platform DBA tool
Thank You
 Slides will be posted on the IDERA community
 My Contact Info
 Bert.Scalzo@IDERA.com
 bert@bertscalzo.com
 My Web Sites
 www.bertscalzo.com
 http://www.toadworld.com/members/bert_5f00_scalzo/blogs
 https://www.linkedin.com/in/bertscalzo
Download DBArtisan
14-day free trial on IDERA.com

More Related Content

What's hot (20)

PPTX
Database Options
Connor McDonald
 
PPTX
Oracle Audit Vault Training | Audit Vault - Oracle Trainings
OracleTrainings
 
PPTX
Postgre sql best_practices
Emiliano Fusaglia
 
PDF
SOUG PDB Security, Isolation and DB Nest 20c
Stefan Oehrli
 
PDF
TechEvent 2019: Oracle PDB Isolation and Security; Stefan Oehrli - Trivadis
Trivadis
 
PDF
DOAG Oracle Database Vault
Stefan Oehrli
 
PDF
UKOUG TechFest PDB Isolation and Security
Stefan Oehrli
 
PDF
Trivadis TechEvent 2017 How modern DBAs can use our efficient Toolbox by Rola...
Trivadis
 
PDF
UKOUG Techfest 2019 Central user Administration of Oracle Databases
Stefan Oehrli
 
PDF
TechEvent Oracle 18c New Security Features
Trivadis
 
PDF
Využijte svou Oracle databázi na maximum!
MarketingArrowECS_CZ
 
PDF
TechEvent EUS, Kerberos, SSL and OUD
Trivadis
 
PDF
Improve oracle 12c security
Laurent Leturgez
 
DOC
Jagadish-New
jagadish Rama.Jagadish
 
PDF
Exadata z pohledu zákazníka a novinky generace X8M - 1. část
MarketingArrowECS_CZ
 
PDF
Oracle RAC Virtualized - In VMs, in Containers, On-premises, and in the Cloud
Markus Michalewicz
 
PDF
IPv6 Standard Content Guide for ESM 6.5c
Protect724migration
 
PDF
MySQL Enterprise Monitor
Ted Wennmark
 
PDF
Oracle Data Protection - 2. část
MarketingArrowECS_CZ
 
PPTX
2020 - GUOB Tech Day / Groundbreakers LAD Tour - How to Create an AutoScale C...
Marcus Vinicius Miguel Pedro
 
Database Options
Connor McDonald
 
Oracle Audit Vault Training | Audit Vault - Oracle Trainings
OracleTrainings
 
Postgre sql best_practices
Emiliano Fusaglia
 
SOUG PDB Security, Isolation and DB Nest 20c
Stefan Oehrli
 
TechEvent 2019: Oracle PDB Isolation and Security; Stefan Oehrli - Trivadis
Trivadis
 
DOAG Oracle Database Vault
Stefan Oehrli
 
UKOUG TechFest PDB Isolation and Security
Stefan Oehrli
 
Trivadis TechEvent 2017 How modern DBAs can use our efficient Toolbox by Rola...
Trivadis
 
UKOUG Techfest 2019 Central user Administration of Oracle Databases
Stefan Oehrli
 
TechEvent Oracle 18c New Security Features
Trivadis
 
Využijte svou Oracle databázi na maximum!
MarketingArrowECS_CZ
 
TechEvent EUS, Kerberos, SSL and OUD
Trivadis
 
Improve oracle 12c security
Laurent Leturgez
 
Exadata z pohledu zákazníka a novinky generace X8M - 1. část
MarketingArrowECS_CZ
 
Oracle RAC Virtualized - In VMs, in Containers, On-premises, and in the Cloud
Markus Michalewicz
 
IPv6 Standard Content Guide for ESM 6.5c
Protect724migration
 
MySQL Enterprise Monitor
Ted Wennmark
 
Oracle Data Protection - 2. část
MarketingArrowECS_CZ
 
2020 - GUOB Tech Day / Groundbreakers LAD Tour - How to Create an AutoScale C...
Marcus Vinicius Miguel Pedro
 

Viewers also liked (17)

PPT
Less11 Security
vivaankumar
 
PPTX
Instalação
Pablo Garcia
 
PDF
Oracle d guard11g r2_final(oracledataguardwithoracledb11gr2)-1
Rodrigo Raposo
 
PPTX
Big Data and Cyber Security
Napier University
 
PPTX
Oracle Database Security
Troy Kitch
 
PPT
IBTA - Oracle Database Security
Rodrigo Almeida
 
PDF
Treinamento Data Guard
Douglas Paiva de Sousa
 
PPT
Oracle Data Guard
Martin Meyer
 
PPTX
Open Source Security Tools for Big Data
Rommel Garcia
 
PPTX
Big Data in Cyber Security
Napier University
 
PPTX
The Future of Hadoop Security - Hadoop Summit 2014
Cloudera, Inc.
 
PDF
Security and Audit for Big Data
Nicolas Morales
 
PPTX
End-to-End Security and Auditing in a Big Data as a Service Deployment
DataWorks Summit/Hadoop Summit
 
PDF
Big Data Security with Hadoop
Cloudera, Inc.
 
PDF
Big Data Security and Governance
DataWorks Summit/Hadoop Summit
 
PDF
Ppt security-database-overview-11g r2
Oracle BH
 
PDF
SlideShare 101
Amit Ranjan
 
Less11 Security
vivaankumar
 
Instalação
Pablo Garcia
 
Oracle d guard11g r2_final(oracledataguardwithoracledb11gr2)-1
Rodrigo Raposo
 
Big Data and Cyber Security
Napier University
 
Oracle Database Security
Troy Kitch
 
IBTA - Oracle Database Security
Rodrigo Almeida
 
Treinamento Data Guard
Douglas Paiva de Sousa
 
Oracle Data Guard
Martin Meyer
 
Open Source Security Tools for Big Data
Rommel Garcia
 
Big Data in Cyber Security
Napier University
 
The Future of Hadoop Security - Hadoop Summit 2014
Cloudera, Inc.
 
Security and Audit for Big Data
Nicolas Morales
 
End-to-End Security and Auditing in a Big Data as a Service Deployment
DataWorks Summit/Hadoop Summit
 
Big Data Security with Hadoop
Cloudera, Inc.
 
Big Data Security and Governance
DataWorks Summit/Hadoop Summit
 
Ppt security-database-overview-11g r2
Oracle BH
 
SlideShare 101
Amit Ranjan
 
Ad

Similar to Geek Sync | Understanding Oracle Database Security (20)

PDF
Oracle Enterprise Manager Security: A Practitioners Guide
Courtney Llamas
 
PPT
Less06 users
Imran Ali
 
PPTX
Security of Oracle EBS - How I can Protect my System (UKOUG APPS 18 edition)
Andrejs Prokopjevs
 
PPTX
Administration and Management of Users in Oracle / Oracle Database Storage st...
rajeshkumarcse2001
 
PDF
Oracle Enterprise Manager Security A Practitioners Guide
Courtney Llamas
 
PDF
Guia implementacion seguridad oracle 12c
Otto Paiz
 
PPT
Toc d17090 gc30
Imran Ali
 
PPTX
The Changing Role of a DBA in an Autonomous World
Maria Colgan
 
PDF
Database Private Security Jurisprudence: A Case Study using Oracle
IJDMS
 
PDF
Oracle database 12c 2 day + security guide
bupbechanhgmail
 
PDF
DATABASE PRIVATE SECURITY JURISPRUDENCE: A CASE STUDY USING ORACLE
IJDMS
 
DOCX
How to protect your sensitive data using oracle database vault / Creating and...
Anar Godjaev
 
PPTX
Row Level Security in databases advanced edition
Alexander Tokarev
 
PDF
Database & Technology 1 _ Barbara Rabinowicz _ Database Security Methoda and ...
InSync2011
 
PPTX
Oracle Database Security For Developers
Szymon Skorupinski
 
PPTX
DevTalks.ro 2019 What's New in MySQL 8.0 Security
Georgi Kodinov
 
PDF
The Oracle Awakens: Demystifying Privilege Escalation in the cloud
Cloud Village
 
PDF
Oracle® database 2 days security guide e10575
imranshahid7861
 
PDF
Users66666666666666666666666666666666666666
227567
 
PDF
MySQL 8.0 : Roles
Harin Vadodaria
 
Oracle Enterprise Manager Security: A Practitioners Guide
Courtney Llamas
 
Less06 users
Imran Ali
 
Security of Oracle EBS - How I can Protect my System (UKOUG APPS 18 edition)
Andrejs Prokopjevs
 
Administration and Management of Users in Oracle / Oracle Database Storage st...
rajeshkumarcse2001
 
Oracle Enterprise Manager Security A Practitioners Guide
Courtney Llamas
 
Guia implementacion seguridad oracle 12c
Otto Paiz
 
Toc d17090 gc30
Imran Ali
 
The Changing Role of a DBA in an Autonomous World
Maria Colgan
 
Database Private Security Jurisprudence: A Case Study using Oracle
IJDMS
 
Oracle database 12c 2 day + security guide
bupbechanhgmail
 
DATABASE PRIVATE SECURITY JURISPRUDENCE: A CASE STUDY USING ORACLE
IJDMS
 
How to protect your sensitive data using oracle database vault / Creating and...
Anar Godjaev
 
Row Level Security in databases advanced edition
Alexander Tokarev
 
Database & Technology 1 _ Barbara Rabinowicz _ Database Security Methoda and ...
InSync2011
 
Oracle Database Security For Developers
Szymon Skorupinski
 
DevTalks.ro 2019 What's New in MySQL 8.0 Security
Georgi Kodinov
 
The Oracle Awakens: Demystifying Privilege Escalation in the cloud
Cloud Village
 
Oracle® database 2 days security guide e10575
imranshahid7861
 
Users66666666666666666666666666666666666666
227567
 
MySQL 8.0 : Roles
Harin Vadodaria
 
Ad

More from IDERA Software (20)

PPTX
The role of the database administrator (DBA) in 2020: Changes, challenges, an...
IDERA Software
 
PPTX
Problems and solutions for migrating databases to the cloud
IDERA Software
 
PPTX
Public cloud uses and limitations
IDERA Software
 
PPTX
Optimize the performance, cost, and value of databases.pptx
IDERA Software
 
PPTX
Monitor cloud database with SQL Diagnostic Manager for SQL Server
IDERA Software
 
PPTX
Database administrators (dbas) face increasing pressure to monitor databases
IDERA Software
 
PPTX
Six tips for cutting sql server licensing costs
IDERA Software
 
PDF
Idera live 2021: The Power of Abstraction by Steve Hoberman
IDERA Software
 
PDF
Idera live 2021: Why Data Lakes are Critical for AI, ML, and IoT By Brian Flug
IDERA Software
 
PDF
Idera live 2021: Will Data Vault add Value to Your Data Warehouse? 3 Signs th...
IDERA Software
 
PDF
Idera live 2021: Managing Digital Transformation on a Budget by Bert Scalzo
IDERA Software
 
PDF
Idera live 2021: Keynote Presentation The Future of Data is The Data Cloud b...
IDERA Software
 
PDF
Idera live 2021: Managing Databases in the Cloud - the First Step, a Succes...
IDERA Software
 
PDF
Idera live 2021: Database Auditing - on-Premises and in the Cloud by Craig M...
IDERA Software
 
PDF
Idera live 2021: Performance Tuning Azure SQL Database by Monica Rathbun
IDERA Software
 
PPTX
Geek Sync | How to Be the DBA When You Don't Have a DBA - Eric Cobb | IDERA
IDERA Software
 
PPTX
How Users of a Performance Monitoring Tool Can Benefit from an Inventory Mana...
IDERA Software
 
PPTX
Benefits of Third Party Tools for MySQL | IDERA
IDERA Software
 
PPTX
Achieve More with Less Resources | IDERA
IDERA Software
 
PPTX
Benefits of SQL Server 2017 and 2019 | IDERA
IDERA Software
 
The role of the database administrator (DBA) in 2020: Changes, challenges, an...
IDERA Software
 
Problems and solutions for migrating databases to the cloud
IDERA Software
 
Public cloud uses and limitations
IDERA Software
 
Optimize the performance, cost, and value of databases.pptx
IDERA Software
 
Monitor cloud database with SQL Diagnostic Manager for SQL Server
IDERA Software
 
Database administrators (dbas) face increasing pressure to monitor databases
IDERA Software
 
Six tips for cutting sql server licensing costs
IDERA Software
 
Idera live 2021: The Power of Abstraction by Steve Hoberman
IDERA Software
 
Idera live 2021: Why Data Lakes are Critical for AI, ML, and IoT By Brian Flug
IDERA Software
 
Idera live 2021: Will Data Vault add Value to Your Data Warehouse? 3 Signs th...
IDERA Software
 
Idera live 2021: Managing Digital Transformation on a Budget by Bert Scalzo
IDERA Software
 
Idera live 2021: Keynote Presentation The Future of Data is The Data Cloud b...
IDERA Software
 
Idera live 2021: Managing Databases in the Cloud - the First Step, a Succes...
IDERA Software
 
Idera live 2021: Database Auditing - on-Premises and in the Cloud by Craig M...
IDERA Software
 
Idera live 2021: Performance Tuning Azure SQL Database by Monica Rathbun
IDERA Software
 
Geek Sync | How to Be the DBA When You Don't Have a DBA - Eric Cobb | IDERA
IDERA Software
 
How Users of a Performance Monitoring Tool Can Benefit from an Inventory Mana...
IDERA Software
 
Benefits of Third Party Tools for MySQL | IDERA
IDERA Software
 
Achieve More with Less Resources | IDERA
IDERA Software
 
Benefits of SQL Server 2017 and 2019 | IDERA
IDERA Software
 

Recently uploaded (20)

PDF
Agentic AI lifecycle for Enterprise Hyper-Automation
Debmalya Biswas
 
PPTX
Q2 FY26 Tableau User Group Leader Quarterly Call
lward7
 
PDF
“Voice Interfaces on a Budget: Building Real-time Speech Recognition on Low-c...
Edge AI and Vision Alliance
 
PDF
CIFDAQ Token Spotlight for 9th July 2025
CIFDAQ
 
PPTX
COMPARISON OF RASTER ANALYSIS TOOLS OF QGIS AND ARCGIS
Sharanya Sarkar
 
PPTX
Future Tech Innovations 2025 – A TechLists Insight
TechLists
 
PDF
Transcript: Book industry state of the nation 2025 - Tech Forum 2025
BookNet Canada
 
PDF
Staying Human in a Machine- Accelerated World
Catalin Jora
 
PDF
LOOPS in C Programming Language - Technology
RishabhDwivedi43
 
PDF
Peak of Data & AI Encore AI-Enhanced Workflows for the Real World
Safe Software
 
PDF
New from BookNet Canada for 2025: BNC BiblioShare - Tech Forum 2025
BookNet Canada
 
PDF
Jak MŚP w Europie Środkowo-Wschodniej odnajdują się w świecie AI
dominikamizerska1
 
PPTX
The Project Compass - GDG on Campus MSIT
dscmsitkol
 
PPTX
Designing_the_Future_AI_Driven_Product_Experiences_Across_Devices.pptx
presentifyai
 
PDF
Automating Feature Enrichment and Station Creation in Natural Gas Utility Net...
Safe Software
 
PDF
Bitcoin for Millennials podcast with Bram, Power Laws of Bitcoin
Stephen Perrenod
 
PPTX
Seamless Tech Experiences Showcasing Cross-Platform App Design.pptx
presentifyai
 
PDF
Book industry state of the nation 2025 - Tech Forum 2025
BookNet Canada
 
DOCX
Python coding for beginners !! Start now!#
Rajni Bhardwaj Grover
 
PDF
Reverse Engineering of Security Products: Developing an Advanced Microsoft De...
nwbxhhcyjv
 
Agentic AI lifecycle for Enterprise Hyper-Automation
Debmalya Biswas
 
Q2 FY26 Tableau User Group Leader Quarterly Call
lward7
 
“Voice Interfaces on a Budget: Building Real-time Speech Recognition on Low-c...
Edge AI and Vision Alliance
 
CIFDAQ Token Spotlight for 9th July 2025
CIFDAQ
 
COMPARISON OF RASTER ANALYSIS TOOLS OF QGIS AND ARCGIS
Sharanya Sarkar
 
Future Tech Innovations 2025 – A TechLists Insight
TechLists
 
Transcript: Book industry state of the nation 2025 - Tech Forum 2025
BookNet Canada
 
Staying Human in a Machine- Accelerated World
Catalin Jora
 
LOOPS in C Programming Language - Technology
RishabhDwivedi43
 
Peak of Data & AI Encore AI-Enhanced Workflows for the Real World
Safe Software
 
New from BookNet Canada for 2025: BNC BiblioShare - Tech Forum 2025
BookNet Canada
 
Jak MŚP w Europie Środkowo-Wschodniej odnajdują się w świecie AI
dominikamizerska1
 
The Project Compass - GDG on Campus MSIT
dscmsitkol
 
Designing_the_Future_AI_Driven_Product_Experiences_Across_Devices.pptx
presentifyai
 
Automating Feature Enrichment and Station Creation in Natural Gas Utility Net...
Safe Software
 
Bitcoin for Millennials podcast with Bram, Power Laws of Bitcoin
Stephen Perrenod
 
Seamless Tech Experiences Showcasing Cross-Platform App Design.pptx
presentifyai
 
Book industry state of the nation 2025 - Tech Forum 2025
BookNet Canada
 
Python coding for beginners !! Start now!#
Rajni Bhardwaj Grover
 
Reverse Engineering of Security Products: Developing an Advanced Microsoft De...
nwbxhhcyjv
 

Geek Sync | Understanding Oracle Database Security