Reference no: EM132805225
Assignment: Part 1: White Box Database Security Test You have been hired as a security professional for your company. You are to create and implement a white box informal database security testing schedule for the organization. Create a paper that addresses the following:
? Create a table that includes a rotating schedule for the 12 months of security testing. Include columns that identify time estimations for each test listed.
? Create a planning and preparation checklist common to all security tests as a whole.
? Identify any special planning and preparation needed for each test.
? Identify the scope for each test and identify any special considerations that need to be addressed.
? Create a list of at least five testing activities for each audit.
? Provide recommendations for securing the database that are unique to Oracle.
? Provide recommendations for securing the database that are unique to MySQL.
? Provide recommendations for securing the database that are unique to SQL Server. Hands-On Project
Part 2: 10-2: Black Box Database Security Test You have been hired as a security consultant for XYZ Company. You are to create and implement a black box, external database security test. Write a paper that responds to the following:
? How will the scope be identified?
? What will indicate the end of a test?
? What special skills or characteristics will be required from the assessor that are not as necessary in white box testing scenarios?
? Identify and describe the first three main goals of the test.
? Explain at least three specific techniques that will be used to gather information.
? Explain at least three specific techniques that will be used as an attempt to obtain access to the system.
? Provide at least two special considerations unique to Oracle.
? Provide at least two special considerations unique to MySQL.
? Provide at least two special considerations unique to SQL Server.