Computerworld
Quick Menu
Search



Ads by TechWords

See your link here


Subscribe to our e-mail newsletters
For more info on a specific newsletter, click the title. Details will be displayed in a new window.
Finance
Security
Computerworld Daily News (First Look and Wrap-Up)
Computerworld Blogs Newsletter
The Weekly Top 10
More E-Mail Newsletters 
Computerworld 2007Subscribe to Computerworld
40 years of the most authoritative source of news and information for IT leaders.

Seven habits of highly effective identity management

Bilhar Mann, Computer Associates International Inc.   Today’s Top Stories   or  Other Security Stories  
 

Sign up to receive Security Resource Alerts

August 12, 2004 (Computerworld) -- The emergence of Web-based technologies has forced organizations to change the way they conduct business. They must find new ways and new tools to securely control access to corporate resources and manage the security risks associated with the escalating volume of user administration.
To be successful, companies must integrate their information systems and combine disparate technologies, particularly as a result of business mergers and acquisitions. To accommodate these changes, the IT department must administer a large number of heterogeneous systems and applications, manage a huge influx of new users and adjust their privileges accordingly. To add to this complexity, many organizations have implemented point security solutions, which are often time-consuming and costly for the IT department to integrate and customize.
Integrated identity management systems help IT managers reduce risks, manage user administration demands and adapt to new regulations. Identity management systems with the right requirements can help companies realize benefits across the business, from employees and partners to customers.
The following are seven "must-haves" to look for when selecting the best identity management system for your organization.
1. Role-based user provisioning
User provisioning is the process for managing user identities enterprisewide and beyond. User provisioning encompasses the following:

  • Types of users an organization will manage

  • Systems, applications and other business resources users need access to

  • Levels of access to those resources

  • Creation, update and deletion of user accounts

  • Measurement of administrative overhead associated with user management

  • Metrics for success

User provisioning provides the proper resources to users at minimal cost. It manages a user's work cycle, including things such creating accounts on different systems, extending access to external services and temporarily suspending access or permanently revoking accounts. Effective user provisioning reduces security risks, including weak passwords, and minimizes obstacles to user productivity. User provisioning also provides centralized management capabilities and automation via role-based account creation and workflow access rights to business resources.
2. Managing user identity
Organizations can identify different types of users according to their business functions: employees, customers, suppliers, partners and more. Each user within these groups owns a separate online "identity" that can be managed efficiently to reduce risks and lower business costs.
It's far easier to manage a single user identity than multiple identities for one user. Identities can be managed according to users' needs, enabling the organization to deliver quality and increased customer satisfaction.
Internally, user provisioning tools are implemented by the IT department and integrated with the human resources application. Particular user roles should have predefined access rights. When an employee joins a specific role, his access permissions to business resources are dynamically updated according to the permissions preset by the IT department. This approach ultimately reduces costs and effectively
Continued...
1 | 2 | 3 | NEXT  



Print this Story Send Us Feedback E-mail this Story Digg! Digg this Story Slashdot this Story
"I had a chuckle when I read Gregg Keizer's article "..." Read more...
"In Monday's IT Blogwatch, Richi Jennings watches bots compete in the 18th Loebner Prize for Artificial Intelligence. Not to mention..." Read more...
Read more Security posts or See all Blogs
'Experimental' security fix is malware, Microsoft says
Top security suites fail exploit tests
Gartner: Financial meltdown may mean hiring freezes, staffing cuts for IT
More top stories...
Microsoft readies first attack forecast
NASA follows Mars successes with plans for $2B super rover
Microsoft sticks with 'Windows 7' for next OS
How bad? 'I thought I was going to throw up,' Jennifer Brunner recalls.
Think your project's off track and over budget? Learn a lesson or two from these infamous project flameouts.
In our hands-on testing, the new Xohm WiMax network from Sprint was fast and smooth -- but for now, you have to be in Baltimore to get it.
College student David Kernell allegedly broke into a middle school server eight years ago, according to a former teacher.
Reviews, analyses, how-tos, visual tours, hot issues and predictions about Microsoft's new OS.
Four years from now, the IT field will be a vastly different place. Will you be ready?
All Zones
Application Performance Zone
Business Continuity Zone
The File Data Management Zone
Security Management Zone
The SAS Zone
Business Intelligence and Analytics Zone
Windows Protection Zone
The Enterprise Search Zone
Software as a Service Zone
The Security Zone

Ads by TechWords

See your link here
Moving to Windows Vista: The Promise, The Reality
Moving to Windows Vista: The Promise, The Reality
View this exclusive webcast today!
Go to the webcast 
Computerworld Executive Bulletin: Building a Robust Antivirus Defense
Download this Executive Bulletin (a $49.95 value) for free, compliments of MessageLabs.
(Source: MessageLabs) Antivirus software alone isn't enough to prevent today's speedy, sophisticated virus attacks. Security managers should consider multitiered approaches that include behavior scanning, appliances that check e-mail for worms, and restricting user access to dangerous Web sites. Download this Executive Bulletin (a $49.95 value) for free, compliments of MessageLabs, to learn more.
Download this executive briefing download
Quick Sizing Guide for SAS Grid Running on HP BladeSystems and EVA Storage
Download this white paper today!
(Source: HP) Designed for CIOs, IT managers, data center managers and grid computing architects seeking to improve performance, SAS Grid Computing on the HP BladeSystem c-Class helps accelerate growth and mitigate risks with a simplified, consolidated infrastructure that's agile enough to efficiently handle change. SAS Grid Manager on HP BladeSystem can lower costs through automation, virtualization and improved IT efficiency.
Download this white paper go
White Papers
Read up on the latest ideas and technologies from companies that sell hardware, software and services.
Business Transaction Management: Facilitating the Management of Virtual Environments
Quick Sizing Guide for SAS Grid Running on HP BladeSystems and EVA Storage
Prudential Financial protects its brand with Symantec Data Loss Prevention solutions
View more whitepapers