It is nice to see you have planned to shift over too web based solution. do take
a look at the following resources

www.sqlsecurity.com
www.oswap.org
of course www.google.com