DataPlus
  • Home
  • Products
    • – – – – Oracle DB Core Security – – – –
    • Omega Core Audit
    • Omega DB Security Reporter
    • – – – – SIEM Integration – – – –
    • Omega Core Audit App For Splunk
    • Omega Core Audit CP for GrayLog
  • Services
  • Company
    • Company Profile

Omega CA Test

Home Omega CA Test

Your Oracle database is usually the company’s most valuable informational assets, containing data on customers, partners, transactions, financial and much more. With the advent of the information age, millions of such records are now owned by even medium and relatively small companies.

Database security has become one of the top concerning priorities of the companies that need to comply with more internal and external regulatory compliance practices and standards, that require stronger information security controls.

Omega Core Audit is an out-of-box, software-only security and compliance solution that addresses the above compliance
issues by providing Access Control, Continuous Audit Monitoring and Real-Time Protection, thus enforcing duty separation,
control of privileged accounts and meeting compliance requirements. With built-in support for Splunk SIEM.

PDF20x20px Omega Core Audit Datasheet
PDF20x20px Omega Core Audit Whitepaper

Related Item: Omega Core Audit App For Splunk

Free Download

Current Version: 3.3.0
Download File Size: 84 MB
Free Standard Edition

Overview
Features
Specifications
Resources
Support
Screenshots
Buy
Overview

Overview

Omega Core Audit provides a software security solution to help customers approach the complex and difficult security challenges in Oracle Database Systems – protecting against outsider and/or insider threats, unauthorized access and enforcing duty separation in meeting regulatory compliance requirements, those being external or internal.

Omega Core Audit implements strong practices of Access Control, Continuous Auditing and Real-Time Protection, providing clear visibility and control into database activity, even for privileged users and more, the DBA-s, thus leading to a safer and more secure information system.

This is a top requirement for database owners looking to protect sensitive business or privacy related data of their customers, employees and partners, thus conforming to best security compliance standards and recommendations.

Omega Core Audit can be virtually used by any organization that uses an Oracle Database and it is looking to implement database information security compliance standards, best industry practices and strong internal security controls.

The type of out-of-box, software-only solution, allows for quick implementation without interfering with existing functionalities and needs no additional software licenses or devices.

Introducing Omega Core Audit

Omega Core Audit is an out-of-box, software-only security and compliance solution. It is a full back-end solution that is installed in minutes and easily managed by its applicative interface. It combines the Oracle native auditing and security features with state-of-art and added value programming and automation. It brings easiness to its users letting them focus only on the conceptual security tasks, without concentrating on complex technical security configurations, made easy and plainly presented to them via its rich user interface.

Security applied at the core – from within the database – ensures same rigid level of compliance from all possible connection directions, applications, users or devices and offers immediate auditing and protection action before user’s actions or transactions. It also requires no (or very minimal, industry recommended) changes in existing security configurations and it is not dependent by them.

Omega Core Audit approaches the Access Control, Auditing and Protection security requirements by implementing a policy-rule-condition evaluation system and user multi-factorial authorization. Auditing and Real-Time Protection are triggered by defining Protection Area and applying authorization rules on them.

Controlling privileged accounts

Database privileged accounts, DBA-s, Application Owners and Batch Accounts also represent the most common “door” for attacks. This can lead to unauthorized access and information compromising. Omega Core Audit restricts privileged accounts and DBA-s from accessing and modifying application data and also from manipulating the database beyond their regular duties, even if they have (and many do) the necessary privileges that permit so.

Separation of Duty

Omega Core Audit separates duties of normal database management from those related to audit, security and compliance. Furthermore it comes with four out-of-box predefined roles: Auditor, Account Manager, Security Analyst and Administrator for full functionalities.

Database Auditing and Protection for Compliance made easy

Omega Core Audit relives the information owners and system administrators from the complex tasks of performing auditing and protection tasks that can take long and periodic hours to develop, setup, maintain and report. It combines native security with a policy-rule-condition evaluation system that makes its usage simple for all Information Security staff, be those Managers, Officers, or Auditors and also DBA’s and System Administrators assigned with information security compliance duties. Omega Core Audit ensures an answer to the classical questions – Who/What/How/When/Where in regard to users’ activity in the system. To best meet compliance requirements you need to control access, audit and protect data from unauthorized access and also have an effective and accurate reporting.

Software Editions – Basic vs Full

The Omega Core Audit deployment comes in two editions:

* Basic Edition The Basic edition is free solution that you can use in Live and Production environments.
The Basic edition is the default on install.

* Full Edition The Full Edition is a commercial solution and uses all features of the software.

SIEM and Log Management Systems Integration

Omega Core Audit’s open structure allows and enables automatic delivery of audited events to SIEMs and Log Management Systems that support records ingest through one of:
Push directly through TCP in XML format – built-in supported by the LMS module
Pull by Oracle query – supported by its open structure and as specifically by each SIEM

Splunk is the first SIEM to be officially supported in built-in and full mode.

Features

Omega Core Audit main components and features

  • Access Control Establishes database perimeter defense by applying mandatory access control to all connections to the database. No users, including highly privileged accounts and DBAs, can log on to the database without complying with the predefined access policies. Standard
  • Auditing Audits the system for user activity, user statements and operations on system objects, thus enforcing security controls and meeting regulatory compliance.
  • Real-Time Protection Real-time protection on top of fine-grained auditing for data access and changes (DML commands, SELECT included); Change management control for structural changes (DDL commands) and system events with object source code history.
  • Policy-based evaluation Complex and difficult tasks of auditing and protection are presented to the user into a policy-rule-condition evaluation hierarchic model, according to specific modules. Conditions are evaluated based on operand values, trust level or logical expressions.
  • Multi-factor authorization of user, environment and application context Multiple factor like user, hostname, IP address, program name, client identifier, other date like and dozens more, offer multiple combinations of user environment authorization. Row and column authorization achieves the same for application context.
  • Unified Audit Trails A single unified audit trail that captures audit trails from different sources offers benefits in visualization, management and provides a better look into the monitored database activity.
  • SIEM integration Supports Splunk SIEM – enhanced support through Omega Core Audit App for Splunk! Opened to all SIEMs/Log Management Systems supporting records ingest via TCP or pull by Oracle query.

Detailed Features:

Key features & benefits

  • Real-Time Access Control, mandatory authorization of the database logon process.
  • Continuous Audit Monitoring, highly detailed, up to the full SQL text and SQL bind parameters.
  • Real-Time Protection for structural (DDL commands) and data (DML commands) changes.
  • Enforcement on privileged accounts and DBAs.
  • Unified Security Events Trail.
  • Separation of Duty and out-of-box Roles for system’s main components.
  • Secured Protected Areas.
  • Change Control, full object source history before and after audited/protected event.
  • Policy-based evaluation.
  • Multi-factorial User & environment context authorization in real time.
  • Row value and column authorization.
  • Middle-tier Application Level Auditing and Protection by CLIENT_IDENTIFIER.
  • Mapping of standard audit trails with audit settings (statement/privilege and object).
  • Automatic management of audit trail records.
  • Issue tracking module to mark and classify Security Events.
  • Security Management, made easy for batch operations handling multiple commands.
  • Full back-end solution – ensuring protection from all directions.
  • Out-of-box, Software-only solution.
  • Transparent implementation – no (or tiny, industry recommended) change of existing setup.
  • Detailed reporting – dynamic reporting for all modules.
  • SIEM Integration
Specifications
Technical Specifications

Oracle DB version for Omega Core Audit Engine and Repository: 10g R2, 11g, 12c, 18c and 19c.

Windows version for Omega Core Audit Application: All NT-based, XP, Vista, Win 2007, Win 8 and later.

Resources

Software Resources

PDF20x20px Omega Core Audit Datasheet
PDF20x20px Omega Core Audit Whitepaper
PDF20x20px Omega Core Audit User Guide
PDF20x20px Omega Core Audit Deployment Guide
PDF20x20px Omega Core Audit Evaluation Guide

Videos

Omega Core Audit - Introduction

Omega Core Audit - Introduction

Close
Omega Core Audit - Deployment

Omega Core Audit - Deployment

Close
Support

Support

Omega Core Audit comes in two editions:

  • Standard limited edition – free to use on production, commercial and test systems!
  • Professional full edition – a commercial solution and the default for 30 Trial days!

Omega Core Audit users of the free Standard edition are entitled to:

  • new (Standard) versions
  • upgrades and fixes
  • new security controls
  • online/offline documentations

Users of the Professional edition are entitled to professional commercial annual support that, cumulatively, features:

  • discounts for new (Professional) versions
  • online support
Basic Edition SLA
Response Time SLA: 2 Business Days
Support Call/Online: 09:00 GMT to 21:00 GMT, Monday to Friday
Emergencies: we are here to help
Resolution Time: case-related

To purchase or renew the Profesional annual support, send an e-mail to sales@dataplus-al.com, containing:

Name: Organization’s name
Action: “Professional Support”
Licence: Type and number

For technical issues, comments, ideas and impressions, e-mail us at: support@dataplus-al.com

Screenshots
Omega_CA_3.2_01Omega_CA_3.2_02Omega_CA_3.2_03Omega_CA_3.2_04Omega_CA_3.2_05Omega_CA_3.2_06Omega_CA_3.2_07Omega_CA_3.2_08Omega_CA_3.2_09Omega_CA_3.2_10
Buy

Buy

 

License

Annual Support

Omega Core Audit – Professional

1499 

299 


Omega Core Audit licensing model is based on the number and type of the processors and the number of cores per processor available, where this late applies, of the machine where the database server resides.

Licenses = Processors * Cores/Processor * CPLF

Licenses are perpetual. License includes one year of support.
The license fees are quoted in USD (United States Dollars) and are net of any VAT, which will be added where appropriate.

For custom quotes on licenses, annual renewals, or to purchase via a Bank transfer, please contact us at sales@dataplus-al.com – reminding to include the following:

Client Name: Name of the organization/individual
Order Type: License Purchase/Annual Renewal
License No: Number of Licenses

Core Processor Licensing Factor by Vendor and Processor

Vendor and Processor

CPLF

Sun and Fujitsu SPARC64 VI, VII

0.75

Sun UltraSPARC IV, IV+, or earlier Multicore chips

0.75

Sun UltraSPARC T2

0.75

HP PA-RISC

0.75

IBM POWER6 or earlier Multicore chips

0.75

Intel XEON/Itanium Series 93XX

0.75

Intel Itanium Series 95XX

1.0

IBM – POWER7, POWER8, POWER9

1.0

IBM System z (z10 and earlier)

1.0

All Other Single and Multi core chips

1.0

Buy: Omega Core Audit – Licenses
Buy: Omega Core Audit – Annual Support
Test $1 Buy
  • Terms of Use
  • Privacy Policy
© 2007-2018 DATAPLUS. All rights reserved. Powered by SmartSite