Mission-Critical Operations

Security and Compliance

Take advantage of the built-in security and compliance capabilities in Microsoft SQL Server 2008 R2 for effective configuration management, strong authentication and access control, powerful encryption and key management capabilities, and enhanced auditing. SQL Server 2008 has been audited for HIPAA and PCI Data Security Standard Compliance, and SQL Server 2008 Enterprise completed a Common Criteria IT security evaluations at the Basic Assurance Level EAL1+ and at Evaluation Assurance Level EAL4+ with compliance to the U.S. government procurement required “U.S. Government Protection Profile for Database Management Systems in Basic Robustness Environments, V1.2". Learn more about SQL Server Common Criteria certifications.

Key Capabilities
  • Use Policy-Based Management to detect noncompliance.
  • Rely on transparent data encryption at the database level.
  • Manage encryption keys by using Hardware Security Modules.
  • Implement fast, granular auditing with SQL Server Audit.
  • Address needs around regulations, such as HIPAA and PCI.

Technical Highlights

SQL Server 2008 R2 offers built-in, transparent data encryption at the database level and exposes encryption functionality to third-party vendors to provide enterprisewide, dedicated key management.

Encrypt data transparently
  • Simplify application development by performing all encryption transparently at the database level.

  • Enable application developers to access encrypted data without changing existing applications.

  • Guard against security breaches if backups or disks are lost or stolen.

  • Encrypt all data without increasing database size or impacting performance.

  • Ensure consistent data encryption across the enterprise.

Employ extensible key management
  • Consolidate your enterprise encryption by using an extensible key management system.

  • Use third-party hardware security modules to store encryption keys in a separate system from data.

  • Store, retire, and regenerate as many keys as you need without impacting security.

Sign code modules
  • Use a certificate to add a digital signature to code modules, such as stored procedures and functions.

  • Associate additional permissions to the signature for the duration of the code module execution.

Reduce attack surface area
  • Use Policy-Based Management to control which services and features are available.

  • Selectively turn on key services that are off by default, as you need them.

  • Reconfigure manual services that you deem essential to be automatically started.

Take advantage of a built-in cryptography hierarchy
  • Use the built-in cryptography hierarchy in SQL Server 2008 R2 to create asymmetric keys, symmetric keys, and certificates.

Site Map

  • Find Us
  • Facebook Twitter YouTube
  • MTNL/BSNL Toll free number: 1800 11 11 00
    Bharti Toll %free number: 1800 102 1100
    Toll number: +91 80 40103000