DataSunrise Achieves AWS Data & Analytics Competency. Learn more →

Part ofPosture and Discovery

Database Vulnerability Assessment

Find Database Weaknesses and Know What to Fix

Check database versions and security settings for known vulnerabilities or unsafe configurations, then review the problems and recommended fixes in one place.

  • Find Known Vulnerabilities
  • Review Security Settings
  • Verify Fixes

Turn scattered security checks into a clear priority list

Database weaknesses can come from outdated software, unsafe settings, or gaps in managed cloud configuration. Reviewing each area separately makes it harder to see what needs attention first.

DataSunrise checks selected databases, groups the findings by instance and severity, and explains what to review or fix. Teams can export the results and rerun the assessment after making changes.

Run an assessment in three steps

Choose the databases, run the relevant checks, and review the problems in one place.

  1. Scope

    Choose what to assess

    Select the database instances or managed cloud databases the team wants to review.

  2. Assessment

    Run the relevant checks

    Check for known vulnerabilities, database security settings, or managed cloud configuration issues.

  3. Findings

    Review what needs attention

    See the affected instance, severity, explanation, and recommended fix, then export or schedule another assessment.

DataSunrise reports the issue and recommended fix. Teams apply the change and can rerun the assessment to confirm the result.
01

Choose the Assessment You Need

  • Known vulnerabilities

    See whether a database version is linked to a known CVE, with the reference, severity, description, and affected instance.

  • Security configuration

    Find supported CIS Benchmark or DISA STIG checks that need attention, with an explanation and recommended fix.

  • Managed cloud configuration

    Review logging, encryption, private-access, and other available settings, with guidance for anything that needs to change.

02

Work Through the Findings

See what needs attention first

The dashboard groups findings by database instance and shows the severity and details for each issue.

Plan the fix

Open a finding to review the problem, reference, and recommended remediation.

Confirm the result

Run the assessment again after a configuration or patching change, then export PDF or CSV reports for remediation, audit, or management review.

FAQ

Frequently Asked Questions

Does DataSunrise fix vulnerabilities automatically?

No. DataSunrise identifies the issue and recommends a fix. Database or infrastructure teams make the change and can rerun the assessment to verify the result.

Which standards and databases are covered?

DataSunrise includes supported CIS Benchmark and DISA STIG checks. Current CIS coverage includes IBM DB2, MariaDB, MongoDB, Microsoft SQL Server, MySQL, Oracle, and PostgreSQL. DISA coverage includes those database families and available Redis Enterprise packs. Available checks and benchmark versions depend on the database and product release.

Which managed cloud databases can it review?

Cloud Database Configuration covers Microsoft SQL Server, MySQL, and PostgreSQL on AWS RDS and Microsoft Azure, plus MySQL and PostgreSQL on Google Cloud. It uses cloud permissions to review settings such as logging, encryption, and network access.

Can assessments be scheduled and exported?

Yes. Teams can run an assessment manually or schedule recurring checks, then export the results in PDF or CSV format.

Is a vulnerability finding the same as a Database Risk Score?

No. Database Risk Score Analytics is a separate prioritization capability in Active DSPM.

See how DataSunrise works with your technology stack

View Integration Examples