By Francisco Munoz Alvarez
Don’t be afraid of Auditing
Francisco Munoz Alvarez• Oracle ACE Director
• President CLOUG, LAOUC & NZOUG
• IOUC LA Spokesperson
• 8/9/10g/11g OCP, RAC OCE, AS OCA, E-Business OCP, SQL/PLSQL OCA, Oracle 7 OCM
• Oracle 7, 11GR2 & OVM 3.1 and 3.2 Beta Tester
• ITIL Certified
• 2010 Oracle Ace Director of the year by Oracle Magazine
• Blog: http://oraclenz.wordpress.com
• Email: [email protected]
• Twitter : fcomunoz
Oracle Professional Services Manager
Revera
www.revera.co.nz
2 Copyright 2009
DBIS - Copyright 20103
Born here
Grow up here
Got Married Here
Mature here
Now Living here
4 Copyright 2009
Going to be Audit?
• PWC ?
• KPMG ?
• Deloitte ?
• ….
5 Copyright 2009
Be Prepared!
Copyright 20096
Create Procedures
AGENDA
Be Prepared - Document all
Show Control over Environment
Ensure Security
Ensure Recoverability
1
2
3
4
5
Always have all documented, it will make your life more easy and
make a good impression to the auditors.
7 Copyright 2009
Be Prepared - Document all
PROJECTS AND ACTIVITIES
Always ensure that any project which interacts with any database is well documented.
1 2
Always track all software and licenses in your Environment.
It is relevant to show that you really know what is in use, how is it used, and a key point is to never forget to include support information that is key to reduce any possible risk to the business continuity.
1 2
SOFTWARE AND LICENSES
8 Copyright 2009
Show Control Over Environment
.
9 Copyright 2009
Be Proactive –Create Procedures
10 Copyright 2009
Ensure Security
• No share Passwords or Public Passwords
• Implement Strong Passwords
• Create a Safe Procedure
• Control super users
• Activate audit
11 Copyright 2009
Ensure Recoverability
• Backup Strategy vs. SLA’s
• DRP 1
• Backup & Recovery Test and Doc
• Involve everyone
12 Copyright 2009
Now you are ready!
Francisco Munoz Alvarez
13 Copyright 2009
Questions? Need More Information?Feel free to contact me