Enterprise-grade data security in Couchbase

Couchbase Server has a full suite of data security features for authentication, authorization, encryption, enterprise key management, and auditing to meet the needs of your most critical and sensitive database workloads.

Deliver value to your customers while ensuring their
information is safe

cb-icon-manage

Management

Use centrally managed controls to keep data access aligned with your shifting business priorities.

cb-icon-scale-2

Scale

Ensure your database meets your security needs as it scales.

cb-icon-expand

Integration

Integrate Couchbase’s logging data and monitoring capabilities into your daily tools.

cb-icon-compliance-2

Compliance

Couchbase Capella DBaaS delivers SOC 2, HIPAA, GDPR, PCI DSS, and ISO 27001.

Security key capabilities

The majority of sensitive information is subject to stringent regulations. Couchbase offers a comprehensive array of data security capabilities designed to cater to the demands of your most vital and sensitive database operations.

cb-icon-authenticate-1

Authentication (AuthN)

Teams use LDAP, Active Directory, x.509 certs, & policies to enforce password changes & manage account restoration.

cb-icon-authorize

Authorization (AuthZ)

Users and groups can be assigned roles with role-based access control permissions.

encrypt

Encryption

Native data encrypted at rest, in transit, & app layer with cipher/protocol tools. KMIP solution enabled.

cb-icon-audit

Auditing

Every action performed across the cluster can be audited with full details.

Easy-to-manage user and application access

Couchbase Server’s secure authentication protocols and role-based access controls (RBAC) let you align groups of users in a centrally managed system to control access and permissions. Enforce strong password policies and manage local accounts to further harden access. Administrators can use granular controls to minimize risk exposure.

BF-security-page-images-1b

Strong encryption with minimal performance impact

Multiple levels of high-strength encryption protect data at rest natively, in transit, and in process to meet a wide range of regulatory requirements. Integrate with your enterprise key management infrastructure via KMIP to centralize control over encryption keys. Our key security features are available across the entire Couchbase Server set of services to support key-value, transaction, and analytic use cases both on premises and when using our Capella DBaaS.

BF-security-page-images-2

Auditing for rapid situational awareness

Collect and integrate security-related information from Couchbase Server into a corporate SIEM system using a secure REST API and standard JSON data formats. Monitor key system configuration changes and respond to incidents or perform forensic analysis.

BF-security-page-images-3

What customers are saying

FICO
“We found that the replication technology across data centers for Couchbase was superior, especially for the large workloads.”
Claus Moldt, CIO, FICO, Couchbase
Vodafone
“Couchbase provides blazing speed thanks to its in-memory processing. And auto-failover raises a replica without losing data if a node fails.”
Yolanda Fernandez, Product Owner, Project Dracarys, Vodafone Spain
cnaf
“Couchbase provides a solution no others do. It gives us the modularity we need with immediate operational simplicity, high performance, and scalability.”
Xavier Gainon, Senior Database Manager, CNAF

Cloud Trust Center

Access Capella DBaaS whitepapers and review its compliance achievements.