Skip to Content
Proactive EarlyThreat Detection and Securing Oracle Database with IBM QRadar, IBM Security Guardium Data Protection, and IBM Copy Services Manager by using IBM FlashSystem Safeguarded Copy
book

Proactive EarlyThreat Detection and Securing Oracle Database with IBM QRadar, IBM Security Guardium Data Protection, and IBM Copy Services Manager by using IBM FlashSystem Safeguarded Copy

by Shashank Shingornikar, Raninder Ravi Bhandari
August 2022
Intermediate to advanced
44 pages
1h 4m
English
IBM Redbooks

Overview

This IBM® blueprint publication focuses on early threat detection within a database environment by using IBM Security Guardium® Data Protection and IBM QRadar®. It also highlights how to proactively start a cyber resilience workflow in response to a cyberattack or potential malicious user actions.

The workflow that is presented here uses IBM Copy Services Manager as orchestration software to start IBM FlashSystem® Safeguarded Copy functions. The Safeguarded Copy creates an immutable copy of the data in an air-gapped form on the same IBM FlashSystem for isolation and eventual quick recovery.

This document describes how to enable and forward Oracle database user activities (by using IBM Security Guardium Data Protection) and IBM FlashSystem audit logs by using IBM FlashSystem to IBM QRadar.

This document also describes how to create various rules to determine a threat, and configure and launch a suitable response to the detected threat in IBM QRadar.

The document also outlines the steps that are involved to create a Scheduled Task by using IBM Copy Services Manager with various actions.

Become an O’Reilly member and get unlimited access to this title plus top books and audiobooks from O’Reilly and nearly 200 top publishers, thousands of courses curated by job role, 150+ live events each month,
and much more.
Start your free trial

You might also like

Proactive Early Threat Detection and Securing Oracle Database with IBM QRadar, IBM Security Guardium Database Protection, and IBM Copy Services Manager by using IBM FlashSystem Safeguarded Copy

Proactive Early Threat Detection and Securing Oracle Database with IBM QRadar, IBM Security Guardium Database Protection, and IBM Copy Services Manager by using IBM FlashSystem Safeguarded Copy

Shashank Shingornikar, Raninder Ravi Bhandari
IBM FlashSystem Safeguarded Copy Implementation Guide

IBM FlashSystem Safeguarded Copy Implementation Guide

Andrew Greenfield, Jackson Shea, Hemanand Gadgil, Vasfi Gucer
Securing Data on Threat Detection by Using IBM Spectrum Scale and IBM QRadar: An Enhanced Cyber Resiliency Solution

Securing Data on Threat Detection by Using IBM Spectrum Scale and IBM QRadar: An Enhanced Cyber Resiliency Solution

Boudhayan Chakrabarty, Sandeep R Patil, Shashank Shingornikar, Ashish Kothekar, Praphullachandra Mujumdar, Smita Raut, Digvijay Ukirde
Getting Started with IBM Hyper Protect Data Controller

Getting Started with IBM Hyper Protect Data Controller

Bill White, Andy Coulson, Guillaume Hoareau, Jason Katonica, Roy Panting, Philippe Richard, Maxwell Weiss, Eva Yan

Publisher Resources

ISBN: 9780738460710Other