Access and Feeds

Compliance: High Failure Rate of DB Security Audits

By Dick Weisinger

Tough times and lean IT budgets mean that many companies are skimping on data security. And that has led to what some are calling a crisis in data security.

For example, nearly 40 percent of enterprises fail internal audits of database security; and 33 percent fail a Sarbanes-Oxley audit.  Those numbers are based on a survey by the Enterprise Strategy Group of 175 enterprises with 1000+ employees.  One might wonder if the numbers are even higher in smaller companies where often security takes a backseat to other business objectives.

Sixty percent of the companies say that their database controls to protect sensitive data is lacking, and 70 percent say that their controls on security are not well defined.

As a direct result of not being prepared, these companies also admit that they need to spend a significant amount of time to fix the compliance problems and work with database auditors.

Leave a Reply

Your email address will not be published. Required fields are marked *

*