SQL Server Customer Advisory Team - SQL Server Best Practices

Enabling SQL Server customers to navigate the most challenging frontiers of large scale data management.

Whitepapers

Reaching Compliance: SQL Server 2008 Compliance Guide

Published: November 2008

Writers: JC Cannon, Denny Lee 
Contributors / Reviewers: Andy Roberts, Ayad Shammout, Dan Jones, Craig Gick, Jack Richins, Raul Garcia, Devendra Tiwari, Steven Gott, Al Comeau, Lara Rubbelke
 

Organizations across the globe are being inundated with regulatory requirements. They also have a strong need to better manage their IT systems to ensure they are operating efficiently and staying secure. Microsoft is often asked to provide guidance and technology to assist organizations struggling with compliance. The SQL Server 2008 Compliance Guidance white paper was written to help organizations and individuals understand how to use the features of the Microsoft® SQL Server® 2008 database software to address their compliance needs. This paper serves as an accompaniment to the SQL Server 2008 compliance software development kit (SDK), which provides sample code and guidance for understanding SQL Server 2008 compliance features and using them for developing solutions. 

This paper is breaks down the main elements of:

  • Understanding Compliance
  • Implementing IT Controls with SQL Server 2008
  • Securing the Platform
  • Controlling Identity and Separation of Duties
  • Separation of Duties
  • Encrypting Database Data
  • Auditing Sensitive Operations
  • Using Policy-Based Management to Define, Deploy, and Validate Policy

As well, it contains a whole list of Helpful scripts and tips including:

  • Programming Interfaces to SQL Server
  • Ensuring Security Settings
  • Managing Separation of Duties
  • Managing Encryption Keys
  • Managing Auditing including a full end-to-end centralized Auditing project including reports
  • Managing Policy-Based Management Policies

For more information, please refer to the whitepaper Reaching Compliance.

You can also download the samples scripts, presentations, and tools for this guide.

Comments

 

Reaching Compliance: SQL Server 2008 Compliance Guide | bestwebhostingservices.com said:

Pingback from  Reaching Compliance: SQL Server 2008 Compliance Guide | bestwebhostingservices.com

November 15, 2008 8:34 AM
 

Swiss IT Professional and TechNet Blog said:

The Microsoft SQL Server Customer Advisory Team ( SQLCAT ) have published a compliance guide for SQL

November 16, 2008 2:03 PM
 

Schweizer IT Professional und TechNet Blog said:

Die Microsoft SQL Server Customer Advisory Team ( SQLCAT ) haben eine compliance-Handbuch für SQL Server

November 16, 2008 2:16 PM
 

SQL Server Security said:

John Halamka , Harvard CIO, has blogged about the Caregroup Auditing project that was the basis for the

December 11, 2008 12:30 AM
 

Top 10 Lists said:

Author: Mike Weiner Contributor: Burzin Patel Reviewers: Lubor Kollar, Kevin Cox, Bill Emmert, Greg Husemeier

January 30, 2009 7:17 PM
 

denny.lee said:

For those who like to better understand SQL and Compliance en français, you can also check out the great presentation Session DAT211 – Prendre ou Reprendre le Contrôle de Vos Instances SQL Server (blogs.technet.com/.../session-dat211-prendre-ou-reprendre-le-contr-le-de-vos-instances-sql-server.aspx) by Patrick Guimonet and Regis Mauger

February 14, 2009 2:11 AM
 

Philip Kelso said:

For reaching sql server complince there is a nice tool called enterprise security reporter - a part of scriptlogic's file server compliance solution.

The tool provides a powerful way for analyze and report on sql database security and configuration.

www.scriptlogic.com/.../enterprisesecurityreporter

March 11, 2009 12:21 PM
 

Microsoft SQL Server Development Customer Advisory Team said:

Author : Denny Lee Reviewers : Prem Mehra, Kevin Cox With the terabytes of data that are being stored

April 20, 2009 2:14 PM
 

SQL Resources for Compliance | ButtonForums said:

Pingback from  SQL Resources for Compliance | ButtonForums

August 11, 2009 9:44 PM
 

Top 10 SQL Server 2008 Features for the Database Administrator (DBA) « Weblog for all users. said:

Pingback from  Top 10 SQL Server 2008 Features for the Database Administrator (DBA) «  Weblog for all users.

December 2, 2009 7:21 AM
 

техническая документация на русском языке said:

Автор: Майк Вайнер ( Mike Weiner ) Соавтор: Бурцин Пэйтел ( Burzin Patel ) Редакторы: Любор Коллар (

January 26, 2010 6:30 AM
 

SQLCAT Blogs said:

Author : Denny Lee Reviewers : Prem Mehra, Kevin Cox With the terabytes of data that are being stored

April 16, 2010 6:55 PM
 

Whitepaper in deutsch said:

Autor: Mike Weiner Mitwirkender: Burzin Patel Lektoren: Lubor Kollar, Kevin Cox, Bill Emmert, Greg Husemeier

May 3, 2010 4:58 AM
 

sql server2008 ??????????????? ?????? ?????????????????????????????? - MS SQL Server???????????? - sql server2008 ??????????????? ?????? ????????? ?????????????????? MS-SQL Server ???????????? - 123Doing said:

Pingback from  sql server2008 ??????????????? ?????? ?????????????????????????????? - MS SQL Server???????????? - sql server2008 ??????????????? ?????? ????????? ?????????????????? MS-SQL Server ???????????? - 123Doing

August 9, 2010 11:52 PM

About denny.lee

Denny Lee is a Senior Program Manager based out of Redmond, WA in the SQL Customer Advisory Team (SQLCAT) - DW/BI Group. He has more than 13 years experience as a developer and consultant implementing software solutions to complex OLTP and data warehousing problems. His industry experience includes accounting, human resources, automotive, retail, web analytics, telecommunications, and healthcare. He had helped create the first OLAP Services reporting application in production at Microsoft and is a co-author of "Professional Microsoft PowerPivot for Excel and SharePoint", “Professional Microsoft SQL Server Analysis Services 2008 with MDX”, “Professional Microsoft SQL Server 2000 Data Warehousing with Analysis Services” and “Transforming Healthcare through Information [Ed. Joan Ash] (2009)”. In addition to contributing to the SQLCAT Blog, SQL Server Best Practices, and SQLCAT.com, you can also review Denny's Blog (http://dennyglee.com). Denny specializes in developing solutions for Enterprise Data Warehousing, Analysis Services, and Data Mining; he also has focuses in the areas of Privacy and Healthcare.
sql, server, best practices, whitepapers, analysis services, data mining, olap, datawarehouse, datawarehousing, availability, clustering, capacity, collation, data types, data warehouse, database, design, index, mirroring, optimization, partitions, performance, precision, processing, querying, scalability, security, reporting services, integration services
Copyright 2008 Microsoft Corporation. All Rights Reserved.