Masterclass: Hacking and Securing SQL Server [HSS]

Tijdsduur
Startdatum en plaats
Logo van Global Knowledge Network Netherlands B.V.
Opleiderscore: starstarstarstarstar_border 7,5 Global Knowledge Network Netherlands B.V. heeft een gemiddelde beoordeling van 7,5 (uit 26 ervaringen)

Tip: meer info over het programma, startdatum, prijs, en inschrijven? Download de brochure!

Startdata en plaatsen

Amsterdam (Kingsfordweg 43)
27 jan. 2020 tot 31 jan. 2020
Nieuwegein (Iepenhoeve 5)
2 mrt. 2020 tot 6 mrt. 2020
Amsterdam (Kingsfordweg 43)
20 apr. 2020 tot 24 apr. 2020
Nieuwegein (Iepenhoeve 5)
25 mei. 2020 tot 29 mei. 2020
Amsterdam (Kingsfordweg 43)
29 jun. 2020 tot 3 jul. 2020

Beschrijving

OVERVIEW

In this training you will analyze, learn and practice critical tasks for implementing highly secure SQL Server infrastructure. We’ll start with identifying security needs regarding database servers and look at the most common attack types and use them on ‘out of the box’ installation. In simple words we will hack our systems!

Then we will discuss impact of system and network security on databases server. Next we will go through every layer of protection offered by SQL Server with lots of real life examples and hands on labs. At the end we will look at the monitoring and auditing our infrastructure to detect threats and react to them. Additionally we’ll play with security of other SQ…

Lees de volledige beschrijving

Veelgestelde vragen

Er zijn nog geen veelgestelde vragen over dit product. Als je een vraag hebt, neem dan contact op met onze klantenservice.

Nog niet gevonden wat je zocht? Bekijk deze onderwerpen: SQL Server, Microsoft SQL Server, Business intelligence, Database ontwerp / design en MySQL.

OVERVIEW

In this training you will analyze, learn and practice critical tasks for implementing highly secure SQL Server infrastructure. We’ll start with identifying security needs regarding database servers and look at the most common attack types and use them on ‘out of the box’ installation. In simple words we will hack our systems!

Then we will discuss impact of system and network security on databases server. Next we will go through every layer of protection offered by SQL Server with lots of real life examples and hands on labs. At the end we will look at the monitoring and auditing our infrastructure to detect threats and react to them. Additionally we’ll play with security of other SQL Services and Azure SQL Databases. Our goal is to show and teach you how to protect your precious data in SQL Server environment and how database security mechanisms work. After the course you will be able to test and secure your SQL Server infrastructure. And to get more practice we offer three extra weeks of labs online!

We want you to leave the class with scripts, checklists and practical, ready-to-use knowledge of how to hack, test and secure your SQL Server infrastructure.

This course is a must-go for database administrators, IT professionals and security officers dealing with database servers. Delivered by hilly skilled SQL and database enthusiast with practical knowledge, multiple successful projects, many years of real-world experience and great teaching skills. The course has a form of intense workshop where we make a deep dive inside the SQL Server. All exercises are based on SQL Server 2016 and Windows Server 2016.

AUDIENCE

Database administrators, infrastructure architects, security professionals, system engineers, advanced database developer, IT professionals, security consultants and other people responsible for implementing databases security.

CONTENT

Module 1 Hacking SQL Server Infrastructure

  • a) Discovering SQL Server instances
  • b) SQL injection using men in the middle
  • c) Capturing SQL credentials using men in the middle
  • d) Decrypting SQL Logins passwords
  • e) Gaining access to SQL Server on compromised Windows Server

Module 2: SQL Server security baseline concepts

  • a) Defining security objectives
  • b) Configuring service accounts
  • c) Auditing database permissions
  • d) Implementing physical protection
  • e) Configuring firewall
  • f) Securing client-server communication

Module 3: SQL Server Instance security

  • a) Limiting permissions
  • b) Securing CLR
  • c) Implementing protection for extended procedures
  • d) Protecting linked servers (OPENROWSET)
  • e) Securing by using policies
  • f) Hiding instance metadata

Module 4: Managing Logins and Passwords

  • a) Authentication options
  • b) Implementing password policies
  • c) Securing connection strings
  • d) Customizing login / user authorization

Module 5: Encryption in SQL Server

  • a) Key management
  • b) Code and data encryption
  • c) Managing certificates
  • d) Transparent database encryption
  • e) Encryption in HA and Disaster Recovery

Module 6: Protecting database backups

  • a) Securing backup files
  • b) Setting backup file passwords and encryption
  • c) Handling keys and certificate backups
  • d) Security considerations while restoring to another SQL Server instance

Module 7: Monitoring and auditing

  • a) Login auditing options
  • b) Data access auditing
  • c) Data Manipulation Language custom auditing
  • d) Policy-based management
  • e) Forensics case study

Module 8: Securing other SQL Server services

  • a) SQL Server Agent
  • b) SQL Server Analysis Services
  • c) SQL Server Reporting Services
  • d) Azure SQL Database

Bij Global Knowledge worden de klassikale trainingen gegeven door trainers die ook werkelijk expertise hebben: hooggekwalificeerde instructeurs die allen een pedagogische achtergrond hebben en hun praktijkervaring meenemen naar het klaslokaal. Trainers bij Global Knowledge hebben oog voor de persoonlijke leerstijlen om zo de trainingservaring van de cursisten te optimaliseren.

Blijf op de hoogte van nieuwe ervaringen

Er zijn nog geen ervaringen.

Deel je ervaring

Heb je ervaring met deze cursus? Deel je ervaring en help anderen kiezen. Als dank voor de moeite doneert Springest € 1,- aan Stichting Edukans.

Er zijn nog geen veelgestelde vragen over dit product. Als je een vraag hebt, neem dan contact op met onze klantenservice.

Download gratis en vrijblijvend de informatiebrochure

Aanhef
(optioneel)
(optioneel)
(optioneel)
(optioneel)
infoEr is een telefoonnummer vereist om deze informatieaanvraag in behandeling te nemen. (optioneel)
(optioneel)
(optioneel)
(optioneel)

Heb je nog vragen?

(optioneel)
We slaan je gegevens op om je via e-mail en evt. telefoon verder te helpen.
Meer info vind je in ons privacybeleid.