Software // Enterprise Applications
11:10 AM

Reduce The Risk From Web Apps

Security gateway from Imperva helps ease security and compliance concerns

Web-based apps improve communication among companies, their employees, customers, and business partners, but they also introduce security and compliance concerns. When Imperva Inc.'s SecureSphere Database Security Gateway ships next week, it's expected to address both issues, offering monitoring and auditing capabilities of Oracle, IBM DB2, MS-SQL, Oracle, and Sybase databases.


FFF's Bob Coates has seen how Imperva's gateway guards against threats.

FFF Enterprises Inc., a distributor of plasma products, vaccines, clinical-trial drugs, and other biopharmaceuticals, already is checking out how Imperva's network security appliance does this. FFF in November will launch a Web-based application called IG Treatment Tracker that will let patients receiving home-based care for certain immune-system deficiencies track their treatments. Using patients' PCs, the application will let them input information about their immune globulin treatment. This data will be protected by Imperva's SecureSphere Database Security Gateway.

Barring Access
"This is unique, identifiable data subject to HIPAA requirements," says Bob Coates, VP of technology for FFF. One of Coates' primary concerns is unauthorized access to information by users or hackers. One way this could be done is through a "SQL Injection" attack that would trick the company's database into letting a hacker access as much of the company's data as they wanted.

Coates has seen how Imperva's gateway, with a starting price of $30,000, guards against internal threats. During tests, a developer accidentally tripped the gateway's alert mechanism while working on IG Treatment Tracker. "He wasn't doing anything wrong," Coates says. "But since he was accessing the database, the system put out an alert."

Comment  | 
Print  | 
More Insights
Threaded  |  Newest First  |  Oldest First
Building A Mobile Business Mindset
Building A Mobile Business Mindset
Among 688 respondents, 46% have deployed mobile apps, with an additional 24% planning to in the next year. Soon all apps will look like mobile apps and it's past time for those with no plans to get cracking.
Register for InformationWeek Newsletters
White Papers
Current Issue
Top IT Trends to Watch in Financial Services
IT pros at banks, investment houses, insurance companies, and other financial services organizations are focused on a range of issues, from peer-to-peer lending to cybersecurity to performance, agility, and compliance. It all matters.
Twitter Feed
InformationWeek Radio
Archived InformationWeek Radio
Join us for a roundup of the top stories on for the week of July 17, 2016. We'll be talking with the editors and correspondents who brought you the top stories of the week to get the "story behind the story."
Sponsored Live Streaming Video
Everything You've Been Told About Mobility Is Wrong
Attend this video symposium with Sean Wisdom, Global Director of Mobility Solutions, and learn about how you can harness powerful new products to mobilize your business potential.