2011年5月6日,Forrester发布了数据库审计与实时保护产品的市场分析报告(Forrester Wave)。
报告摘要:
In Forrester's 147-criteria evaluation of database auditing and real-time protection vendors, we found that the market is rife with mature products. IBM(注:收购了Guardium), Imperva, and Sentrigo(注:被McAfee收购) lead the pack because of their strong user activity auditing, policy management, real-time protection, and application support capabilities as well as their forward-thinking strategies. Application Security, Oracle, and Fortinet are Strong Performers; their products have reporting, real-time detection and protection, and user-activity auditing capabilities that are slightly weaker than capabilities of the Leaders' offerings. However, all of the products we evaluated are mature database auditing and real-time protection solutions. Given this, rather than basing their choice of database auditing and real-time protection product on traditional auditing functions, application development and delivery professionals should base their decision on the more cutting-edge functionality, such as real-time attack activity blocking(***行为实时阻断), privileged-user monitoring(特权用户监测), drilldown analytics(下钻分析), and centralization repository(集中管理).
Forrester估计当前整个DAM市场规模约为6.5亿美圆。整个市场相对较为成熟,过去几年并购不断,产品趋于向大厂集中。
其实,Forrester的这份报告实际上就是针对业界的DAM(Database Activity Monitoring)产品。下图是Forrester的Wave图:数据库
另外,分析的这6个厂商外,还有一类DAM厂商,他们通常多以SIEM厂商的身份出现。app