RMAN backups on PCI DB's
How should we protect the shared administrative account SYS in a PCI DSS (Data Security Standards) Compliant manner.
The concern is that the SYS account needs to have the password passed in a backup script in order to execute a successful backup on a database that is a remote target.
Is there a white paper or a security best practice on implementing RMAN backups in an 11g PCI environment?
Any help would be greatly appreciated.