Skip to Content

Who Changed the Production Database?

Auditing Direct DB Access, Data Integrity and Unauthorized Production Changes

Asia/Calcutta
Add to calendar:

Production database changes can have serious consequences — from incorrect business data and system failures to security incidents and compliance issues. But when a change happens directly in production, can you actually determine who made it, what was changed, why it was changed, and whether it was authorized?

This practical session explores how IT Auditors, Security professionals, and GRC teams can audit direct database access, production changes, and data integrity. Participants will learn how to identify unauthorized access, review database activity and change logs, assess controls around privileged access, and determine whether production changes are properly authorized, documented, and traceable.

What You Will Learn

  • How direct production database access creates audit and security risks
  • Identifying and reviewing privileged database access
  • Auditing database activity logs and user activity
  • Detecting unauthorized production changes
  • Assessing change authorization and approval controls
  • Checking data integrity and identifying suspicious modifications
  • Reviewing segregation of duties around database administration
  • Evaluating monitoring, logging, and alerting controls
  • Practical approaches to documenting audit findings
  • Real-world scenarios involving unauthorized database changes

Who Should Attend?

This session is ideal for IT Auditors, Information Security professionals, GRC professionals, Database Administrators, Risk and Compliance teams, and anyone responsible for production systems and access controls.

Takeaway: Learn how to follow the evidence and answer the question every auditor wants to resolve: Who changed the production database?