Posts

SQL Server security admins, attention: Auditing is missing attempts to change permissions, leading to repudiation and miss elevation attempts

Protecting database data at rest: Transparent Data Encryption, Backup Encryption or Always Encrypted

Use TLS 1.2 and trusted certificates to encrypt data in transit for all SQL Servers, including development environments

Using Extended Events for Tracing SQL Server and Azure SQL DB in compliance with Principle of Least Privilege – Example role separation

The Need-to-know security principle

Principle of Least Privilege (POLP)