▾ G11 Media Network: | ChannelCity | ImpresaCity | SecurityOpenLab | Italian Channel Awards | Italian Project Awards | Italian Security Awards | ...
InnovationOpenLab

Liquibase Financial Services Playbook Offers New Findings, Best Practices to Let FinServs Protect Data and Navigate the Mythos-Class Threat Age

#AI--Liquibase, provider of database change governance solutions used by many of the world’s leading financial services organizations, today announced The Financial Services Playbook for Governed Da...

Immagine

While Financial Institutions Primarily Focus on AI Models, Mythos‑Class Attackers Target Their Databases. Research Across Hundreds of Engagements Finds Universal Problems.

AUSTIN, Texas: #AI--Liquibase, provider of database change governance solutions used by many of the world’s leading financial services organizations, today announced The Financial Services Playbook for Governed Database Change, a new executive guide designed to help financial institutions modernize and secure one of the last major control gaps in enterprise technology delivery: database change.

Built for CIOs, CTOs, platform engineering leaders, database architects, and compliance teams, the playbook examines how banks, insurers, payment processors, fintechs, and capital markets firms continue to face a growing governance gap between highly automated application delivery pipelines and still-manual database change processes.

“Every other layer of the software delivery pipeline has been automated, policy-driven, and made auditable,” said Ryan McCurdy, Vice President at Liquibase. “But at many financial institutions, database changes are still routed through tickets, manually reviewed, and directly executed in production. In today’s regulatory environment, that is no longer simply inefficient. It is an operational and compliance exposure.”

Field research for the Playbook was conducted across hundreds of financial services engagements spanning enterprise banks, regional institutions, credit unions, global insurers, payment processors, fintechs, and capital markets firms.

Among key findings:

  • The problem is universal. Manual database change execution is the industry baseline, not a maturity problem at lagging organizations.
  • Compliance is the accelerant. SOX, PCI DSS, SOC 2, and DORA are driving purchase decisions. When auditors flag deficiencies, budget materializes.
  • The DBA bottleneck is structural. Executive mandates to remove DBA involvement from routine changes are appearing at the largest institutions.
  • The proven path is pilot, platform, enterprise. Start with two to five applications, build the pipeline through platform engineering, then scale.
  • Multi-database reality is the baseline. Oracle, SQL Server, PostgreSQL, Snowflake, DynamoDB, Databricks. Partial coverage is not governance.

Organizations that close this gap deliberately will set the standard. The rest will be forced to catch up by their auditors, their regulators, or a production incident.

Drawing on field research from hundreds of financial services engagements, the playbook argues that manual database change execution remains the industry norm, even at highly mature institutions. It outlines how mounting regulatory scrutiny from frameworks including SOX, PCI DSS 4.0, SOC 2, DORA, and emerging operational resilience requirements is accelerating demand for governed database delivery pipelines.

The playbook also addresses a growing concern around AI adoption in software delivery. “Financial institutions are entering a phase of AI adoption under a perilous assumption: that governance frameworks built for human-driven systems can simply be extended to autonomous agents,” said Chris Steffen, Research VP, Enterprise Management Associates. “That assumption is now clearly outdated. Governance that ends too early is a crucial misstep, one that leaves databases exposed to a kill chain that’s now moving with unprecedented speed and lethality.”

Liquibase recently explored that emerging threat in its analysis: Banks Focus on AI Models. Mythos Class Attackers Focus on Your Databases.

Rather than focusing narrowly on tooling, the playbook walks readers through the operational realities financial institutions face today, including DBA bottlenecks, fragmented deployment tooling, audit evidence reconstruction, schema drift, and growing separation-of-duties concerns.

The guide also details a practical maturity path for organizations seeking to modernize database governance. Chapters include:

  • The governance gap: why database delivery remains structurally different from application delivery
  • How governance failures create operational, audit, and regulatory exposure
  • The evolving role of DBAs, platform engineering, and compliance teams
  • An eight-principle target operating model for governed database change
  • A phased rollout strategy covering pilot, platform, and enterprise adoption
  • A framework for evaluating build-versus-buy governance approaches
  • Metrics financial leaders can use to justify modernization investments
  • The impact of AI-generated SQL and hybrid cloud database environments on governance strategy

TL;DR: FinServ Operational Resilience Is At Risk

Manual database change execution is throttling data security and is the FinServ industry baseline, not a maturity problem at slow-adopter organizations.

Organizations that embed governance directly into database delivery pipelines now will gain operational resilience and regulatory advantages. Institutions that delay modernization risk being forced into reactive remediation by data loss or corruption incidents, by audit pressures, and by competitive market forces.

The executive summary of The Financial Services Playbook for Governed Database Change is available now from Liquibase: https://www.liquibase.com/resources/ebooks/financial-services-playbook-for-governed-database-change

About Liquibase

Liquibase empowers teams to deliver mission-critical applications, data products, and AI initiatives by automating and governing database change. We are the company behind Liquibase Community, a project with deep open-source roots that has been downloaded more than 100 million times and is trusted by thousands of teams worldwide.

Liquibase Secure, built on that proven community foundation, is the only enterprise platform that unifies DevOps, security, and compliance at the database layer. It enables organizations to deliver applications and data products with velocity, safety, and confidence. Trusted by the world’s most innovative and highly regulated enterprises, Liquibase Secure powers the last mile of application and data delivery.

Learn more at www.liquibase.com. Follow us on LinkedIn and X.

Fonte: Business Wire

If you liked this article and want to stay up to date with news from InnovationOpenLab.com subscribe to ours Free newsletter.

Related news

Last News

RSA at Cybertech Europe 2024

Alaa Abdul Nabi, Vice President, Sales International at RSA presents the innovations the vendor brings to Cybertech as part of a passwordless vision for…

Italian Security Awards 2024: G11 Media honours the best of Italian cybersecurity

G11 Media's SecurityOpenLab magazine rewards excellence in cybersecurity: the best vendors based on user votes

How Austria is making its AI ecosystem grow

Always keeping an European perspective, Austria has developed a thriving AI ecosystem that now can attract talents and companies from other countries

Sparkle and Telsy test Quantum Key Distribution in practice

Successfully completing a Proof of Concept implementation in Athens, the two Italian companies prove that QKD can be easily implemented also in pre-existing…

Most read

Alibaba Group Announces March Quarter 2026 and Fiscal Year 2026 Results

$BABA #alibaba--Alibaba Group Holding Limited (NYSE: BABA and HKEX: 9988 (HKD Counter) and 89988 (RMB Counter), “Alibaba”, “Alibaba Group” or the “company”)…

Former Amazon, Meta Scientists Unveil Graphon AI, the First Pre-Model…

Graphon AI emerged from stealth today with $8.3 million in seed funding to build a new class of AI infrastructure: a pre-model intelligence layer that…

Resecurity is Exhibiting at São Paulo Innovation Week 2026 (SPIW) to Advance…

Resecurity, a U.S.-based cybersecurity and intelligence company protecting Fortune 100 companies and government agencies worldwide, is exhibiting at São…

Ridge Security’s RidgeBot® Wins 2026 GOVIES Award for AI-Powered Offensive…

#AISecurity--Ridge Security today announced that its RidgeBot® platform has been named a winner in the AI-Powered Offensive Security Platform category…

Newsletter signup

Join our mailing list to get weekly updates delivered to your inbox.

Sign me up!