Insight Technology, Inc

Insight Technology, Inc.

Japanese | English

Security Compliance

Defense Information Systems Agency (DISA)

Defense Information Systems Agency (DISA) has come up with a set of database security guidelines called "Database Security Technical Implementation Guide (STIG)" to assist in the improvement of the security of Department of Defense (DoD) information systems. This document is provided under the authority of DOD Directive 8500.1 that requires "all information assurance (IA) and IA-enabled IT products incorporated into DOD information systems shall be configured in accordance with DOD approved security configuration guidelines" and tasks to DISA is to "develop and provide security configuration guidance for IA and IA-enabled IT products in coordination with the Director of National Security Agency (NSA)."

The Access Control STIG details a security framework for use when planning and selecting access control for protecting sensitive and classified information in the DoD. This STIG presents a practical methodology for selecting and integrating logical and physical authentication techniques while linking the solution to the asset's value, environment, threat conditions and operational constraints. For classified access, the solution must protect access to sensitive or classified systems and data while considering the need for appropriate and authorized access in uncontrolled areas for DoD personnel, contractors and coalition forces. STIG is meant for use in conjunction with the appropriate Operating System (OS) as well as related to the requirements of any applications accessing the database.


Insight Technology, Inc (ITI) empowers you with the database management solutions to address guidelines for the Defense Information Systems Agency's Database Security Technical Implementation Guide.

PISO

PISO

PISO provides a real-time database monitoring and auditing. PISO monitors the suspicious or unauthorized access to your critical data and notifies alert without time delay with detailed information, such as a full SQL text, the number of rows accessed, etc, with minimum performance overhead. PISO enables enterprise to levarage the security solution for fortifying internal control.

For example, PISO helps organizations to control the followings:

  • Segregation of duties
  • Development staff running transactions in the production database
  • Many users accessing administrator or super user transactions in the production database
  • Terminated employees or partners access
  • etc...