2011年5月6日,Forrester發佈了數據庫審計與實時保護產品的市場分析報告(Forrester Wave)。
報告摘要:
In Forrester's 147-criteria evaluation of database auditing and real-time protection vendors, we found that the market is rife with mature products. IBM(注:收購了Guardium), Imperva, and Sentrigo(注:被McAfee收購) lead the pack because of their strong user activity auditing, policy management, real-time protection, and application support capabilities as well as their forward-thinking strategies. Application Security, Oracle, and Fortinet are Strong Performers; their products have reporting, real-time detection and protection, and user-activity auditing capabilities that are slightly weaker than capabilities of the Leaders' offerings. However, all of the products we evaluated are mature database auditing and real-time protection solutions. Given this, rather than basing their choice of database auditing and real-time protection product on traditional auditing functions, application development and delivery professionals should base their decision on the more cutting-edge functionality, such as real-time attack activity blocking(***行爲實時阻斷), privileged-user monitoring(特權用戶監測), drilldown analytics(下鑽分析), and centralization repository(集中管理).
Forrester估計當前整個DAM市場規模約爲6.5億美圓。整個市場相對較爲成熟,過去幾年併購不斷,產品趨於向大廠集中。
其實,Forrester的這份報告實際上就是針對業界的DAM(Database Activity Monitoring)產品。下圖是Forrester的Wave圖:數據庫
另外,分析的這6個廠商外,還有一類DAM廠商,他們通常多以SIEM廠商的身份出現。app