APPENDIX T Database SQL Server Security SOP 6100038971
APPENDIX T Database SQL Server Security SOP 6100038971
Database Team
Version 1.4
Date: 05/22/2014
File Name: Database SQL Server Security SOP
SECURITY WARNING
The information contained herein is proprietary to the Commonwealth of Pennsylvania and must not be
disclosed to un-authorized personnel. The recipient of this document, by its retention and use, agrees to
protect the information contained herein. Readers are advised that this document may be subject to the
terms of a non-disclosure agreement.
DO NOT DISCLOSE ANY OF THIS INFORMATION WITHOUT OBTAINING PERMISSION FROM
THE MANAGEMENT RESPONSIBLE FOR THIS DOCUMENT.
COMMONWEALTH OF PENNSYLVANIA PENNSYLVANIA STATE POLICE
Version History
Date Version Modified By / Approved By Section(s) Comment
09/30/2011 1.2 S. Greer Header, footer, Replaced Enterprise Server Farm (ESF) with Enterprise
1.2 Data Center (EDC)
Table of Contents
1 INTRODUCTION................................................................................................................................4
1.1 PURPOSE / BRIEF OVERVIEW...........................................................................................................4
1.2 ASSUMPTIONS..................................................................................................................................4
2 SQL SERVER PERMISSIONS..........................................................................................................5
2.1 APPLICATION PERMISSIONS.............................................................................................................5
2.2 USER PERMISSIONS..........................................................................................................................5
2.3 DATABASE ROLES............................................................................................................................5
3 SQL Server Security Checklist...............................................................................................................6
1 Introduction
1.2 ASSUMPTIONS
This document includes specific information about the SQL Server day-to-day operations performed by
the Database team. A working knowledge of SQL Server and database management is beneficial.
Execute No No No Yes
Create No No No Stored
procedures
Functions
Views
User ID No No No Yes
Application ID No No No No