Skip to main content

SQL Job Group

The SQL Job Group reports on SQL Server, AzureSQL, or both depending on which collection jobs you run. The SQL Job Group is a comprehensive set of pre-configured audit jobs and reports that provide information on users and roles, activity, permissions, configuration, sensitive data, and overall security assessment.

Supported Platforms

  • Azure SQL

  • SQL Server 2025

  • SQL Server 2022

  • SQL Server 2019

  • SQL Server 2017

  • SQL Server 2016

Requirements, Permissions, and Ports

See the Target SQL Server Requirements, Permissions, and Ports topic for additional information.

Sensitive Data Discovery Considerations

You must install the Sensitive Data Discovery Add-On on the Enterprise Auditor Console server, which enables Sensitive Data criteria for scans. If running Sensitive Data Discovery (SDD) scans, you must increase the minimum amount of RAM. Each thread requires a minimum of 2 additional GB of RAM per host. For example, if you configure the job to scan 8 hosts at a time, you need an extra 16 GB of RAM (8 x 2 = 16).

note

The Sensitive Data Discovery Add-on installation package installs the appropriate JDK (Java) version on the server. The JDK deployed is prepackaged and doesn't require any configuration. Netwrix preconfigures it to work with Enterprise Auditor, and you shouldn't customize it through Java. It doesn't conflict with other JDKs or Java Runtimes in the same environment.

Location

The SQL Job Group within the Jobs tree, as part of the Database Solution: Jobs > Database > SQL.

The Database Solution license includes all database platforms that Enterprise Auditor supports. Additionally, the Sensitive Data Discovery Add-On enables the solution to search database content for sensitive data.

SQL Job Group

The SQL Job Group includes:

  • Databases > 0.Collection > SQL > 0.Collection > SQL Job Group – This job group collects high level summary information from Microsoft SQL servers. Other jobs in the SQL solution set use this information for further analysis and for producing respective reports.
  • Databases > 0.Collection > AzureSQL > 0.Collection > Azure SQL Job Group — This job group collects high level summary information from targeted Azure SQL Instances. Other jobs in the Azure SQL solution set use this information to provide further analysis and to produce respective reports.
  • 1.Users and Roles Job Group– This job group provides insight into user security, roles, and object permissions to all the SQL server objects
  • 2.Activity Job Group – This job group provides insight into use login activity, object permission changes, any unusual database activity, SQL activity against sensitive data, SQL activity against selective or all database objects
  • 3.Permissions Job Group – This job group provides insight into all types of permissions at the instance, database, and object level across all the targeted SQL servers
  • 4.Configuration Job Group – This job group provides insight into potential vulnerabilities related to SQL server configuration settings
  • 5.Sensitive Data Job Group– This job group provides insight into where sensitive data exists and who has access to it across all the targeted SQL server databases
    • Requires the Sensitive Data Discovery Add-On.
  • SQL_SecurityAssessment Job – This job summarizes and categorizes the security findings into HIGH, MEDIUM, LOW, and NO FINDING categories based on their severity.