In any organization or business, information security, privacy and protection of data plays a vital role. There are various ways of providing security by DBA to manage user accounts, granting privileges and roles and auditing user activities. This paper provides us with the guidelines from database administrative point of view for protecting databases (including the data, the database applications or stored functions, the database systems, the database servers and the associated network links) against unauthorized access. It also describes how the backup administrator devises, implements, and manages a backup and recovery strategy. Generally, the purpose of a backup and recovery strategy is to protect the database against data loss and reconstruct the database after data loss. This paper mainly focuses on security issues that are associated with the database system that are often used by many firms in their operations.