Part ofPosture and Discovery
Database Vulnerability Assessment
Find Database Weaknesses and Know What to Fix
Check database versions and security settings for known vulnerabilities or unsafe configurations, then review the problems and recommended fixes in one place.
- Find Known Vulnerabilities
- Review Security Settings
- Verify Fixes
Why teams assess
Turn scattered security checks into a clear priority list
Database weaknesses can come from outdated software, unsafe settings, or gaps in managed cloud configuration. Reviewing each area separately makes it harder to see what needs attention first.
DataSunrise checks selected databases, groups the findings by instance and severity, and explains what to review or fix. Teams can export the results and rerun the assessment after making changes.
Assessment workflow
Run an assessment in three steps
Choose the databases, run the relevant checks, and review the problems in one place.
-
Scope
Choose what to assess
Select the database instances or managed cloud databases the team wants to review.
-
Assessment
Run the relevant checks
Check for known vulnerabilities, database security settings, or managed cloud configuration issues.
-
Findings
Review what needs attention
See the affected instance, severity, explanation, and recommended fix, then export or schedule another assessment.
Choose the Assessment You Need
Work Through the Findings
See what needs attention first
The dashboard groups findings by database instance and shows the severity and details for each issue.
Plan the fix
Open a finding to review the problem, reference, and recommended remediation.
Confirm the result
Run the assessment again after a configuration or patching change, then export PDF or CSV reports for remediation, audit, or management review.
Frequently Asked Questions
Does DataSunrise fix vulnerabilities automatically?
No. DataSunrise identifies the issue and recommends a fix. Database or infrastructure teams make the change and can rerun the assessment to verify the result.
Which standards and databases are covered?
DataSunrise includes supported CIS Benchmark and DISA STIG checks. Current CIS coverage includes IBM DB2, MariaDB, MongoDB, Microsoft SQL Server, MySQL, Oracle, and PostgreSQL. DISA coverage includes those database families and available Redis Enterprise packs. Available checks and benchmark versions depend on the database and product release.
Which managed cloud databases can it review?
Cloud Database Configuration covers Microsoft SQL Server, MySQL, and PostgreSQL on AWS RDS and Microsoft Azure, plus MySQL and PostgreSQL on Google Cloud. It uses cloud permissions to review settings such as logging, encryption, and network access.
Can assessments be scheduled and exported?
Yes. Teams can run an assessment manually or schedule recurring checks, then export the results in PDF or CSV format.
Is a vulnerability finding the same as a Database Risk Score?
No. Database Risk Score Analytics is a separate prioritization capability in Active DSPM.
Map the right workflow