Oracle Data Security for PDPA
Based on today's criminal cases in data threats, in Thailand, PDPA is announced to encourage personal data
protection. Therefore, “Database Security Solution” is now highlighted as a priority task in database management for
applying the organization’s policy to PDPA. Capabilities of Database therefore play an important role in the system.
We bring Data Security Solution to take part in data protection and ensuring the security of database systems, in
accordance with the PDPA, with the ability of the Oracle Database technology that we confidently employ to deliver
the best solution to our customers. The solution can be divided regarding the platform as follows:
Security Assessment
Oracle offers database security assessments to help you discover the sensitive and personal data in your database,
assess how securely your database is configured, and provide recommendations on improving your database security
posture.
- Oracle Database Security Assessment Tool
Data Protection
With data encryption and redaction, Oracle protects the data at rest and in use, respectively. Capabilities such as
key storage and management address both regulatory needs and management challenges posed by managing multiple
keys/wallets. In addition, with data masking, Oracle minimizes security risk by exchanging sensitive data for
realistic-looking artificial data for use in development, test, and partner environments.
- Oracle Advanced Security
- Oracle Key Vault
- Oracle Data Masking and Subsetting
Data Access Control
Data access control will mitigate two of the most common database attacks: stolen application service accounts and
compromised/rogue administrator accounts. With Oracle Database security, you can count on strong separation of
duties that delineate database administration from data administration and multifactor authentication that enforces
granular access control policies based upon each user’s individual security privileges.
- Oracle Database Vault
- Oracle Label Security
Auditing and Monitoring
With a centralized information and audit management repository, owners have an easy way to collect, analyze, and
report on database activities, such as which users are showing risky behavior, where your new sensitive data is
located, and password status.
- Oracle Audit Vault and Database Firewall
Oracle Data Security for PDPA Benefit
- Support Regulatory Compliance
- Personal Data Protection Act (PDPA)
- Sarbanes-Oxley (SOX), J-SOX, GLBA
- Payment Card Industry (PCI)
- HIPAA, EU Privacy Directives
- California Breach Disclosure Act
- COSO, COBIT
- Separation of duty, Proof of compliance, Risk Assessment and Monitoring
- Prevent Insider/External Threats
- Large percentage of threats go undetected
- Outsourcing and off-shoring trend
- Customers want to monitor insider/DBA