Reference no: EM133373576
COMP 0336A Database Security, Middle East College
Learning Outcome 1: Evaluate techniques used to ensure security in a database-oriented information system.
Learning Outcome 2: Manage user access and user profiles within a complex and DBMS.
Learning Outcome 3: Conduct database audit.
Assignment Objective
1. Understand the security attacks in the database.
2. Create database security auditing plan.
3. Implement user management controls to achieve security requirements.
Assignment Tasks
T1:
Life Care Hospital is one of the leading health care service provider in Oman. It is established in the year 2000 and has a current patient's strength of over 1500 patients. The patients belong to different parts of the country. It employs full-time and part-time personnel. It offers various medical services in the field of outpatient and Inpatient. The hospital has an online system operational round the clock.
Recently you have been hired As a Database Administrator (DBA) for Life Care. In this context consider the following :
A. Analyze the possible scenarios of security attacks that could compromise the database of this hospital and discuss its related consequences.
B. Suggest some security countermeasures to secure a healthcare database? Discuss the implementation techniques for your suggested countermeasures
T2:
There is no security without auditing, therefore security and auditing should be implemented in an integrated fashion. Auditing database activity and access can help identify security issues and resolve them quickly. You are working as a database security administrator in a hospital where a database oriented information system is in use. In this context, Create a database auditing plan with detailed specification on the auditing types and audit trail you will use for your organization.
T3:
Assume You are working as a database security administrator in a hospital where a database- oriented information system is in use. One responsibility of DBA is to manage the user access and user profiles within the DBMS. Perform the following tasks by writing the proper SQL statements:
a. Identify and create at least three relevant roles of the hospital and provide proper justification for all the three identified roles with proper references.
b. Create at least two (2) profiles with appropriate security policy
c. Create at least three (3) users and assign appropriate profiles from the profiles that you have created above.
d. Grant the appropriate roles from the three created roles to the users that have been created above and justify your answer.
e. Critically analyze the role of default and temporary tablespaces.
• All resources should be cited using APA referencing style.
• Explain with suitable diagrams wherever required. Diagrams must be drawn using suitable software or by pencil.
• Each student has to do the assignment individually / Students have to do the assignment collaboratively and each student should write a brief reflection on their contribution and learnings from group work.