Social Network For Security Executives: Network, Learn & Collaborate
The project was named 'Privilege Identity and Access Management'. Almost all the information exists or is processed in electronic form on various IT infrastructure devices. Subsequently managing the related infrastructure requires provisioning of privileged user/administrator accounts with super user privileges for carrying out necessary administrative tasks. However, the challenge in such environment is that, while privileged user accounts are essential for efficient administration, they are arguably the most potent means of compromising an organization’s information security of the sensitive data hosted or managed in the organization’s infrastructure.
Privileged user accounts provide complete access to systems & are so powerful that a person using them can do almost anything on the target systems like reconfigure, restart, install new systems, remove logs and even remove existing systems – without facing any restriction. To make matters worse, these IDs are almost always shared among the administrator teams, causing accountability concerns and regulatory non-compliance. Moreover, any sensitive business data can be changed or disclosed to unauthorized parties, if such privileged user accounts are compromised.
The risks of inadvertent or deliberate misuse and/or mismanagement of privileged user accounts can lead to the unauthorized disclosure of confidential information and intellectual property including but not limited to customer PI data which could eventually result in loss of consumer trust, affect customer retention, and cause significant damage to brand and company reputation.
( Read more: APT Secrets that Vendors Don't Tell )
Checklist for Evaluating PIAM Solution:
In view with the above concerns, the technology solution called Privilege Identity Access Management is required to monitor all the action performed by the by privileged users (IT Administrators) and log the same with the required audit trail will help us to protect company confidential information when an administrator leaves the organization and ensure accountability on privileged IDs usage.
-With Makesh Chandramohan,Birla Sun Life Insurance on How To Evaluate PIAM Solutions ClickToTweet
What are your views on Privilege Identity and Access Management solutions? How do you evaluate? Share your thoughts in comments below or write your article here