No Account Left Behind: Cleaning up users accounts and reducing risk

Please join Randy Franklin Smith from the Monterey Technology Group and George Cerbone, Principal Solutions Architect, for a webcast.

 

Register NOW

So many risks can be reduced by cleaning up user accounts and keeping them that way. Just think if, for any system your auditors looked at, you could instantly reconcile each and every account by showing its legitimate business purpose and ownership in terms of the

  • account existing in the first place
  • privileges the account is assigned
  • account's current status
  • timeliness of relevant business events in relation to actual changes to the account

That isn't just good for compliance – that helps reduce all kinds of security risks.

So why is that so hard? And I know it is difficult because of what I see in my audit practice.

Normally I base my real-training for free webinars on showing you methods and processes and how to leverage your existing technology to solve problems. And in this webinar I will

  • show you key ways to link accounts in different systems with its corresponding employee, contractor or other organization structure
  • share tips on cleaning up user accounts
  • trap important business events that should trigger changes to accounts

While manual cleanup is possible for some organizations, automation is advisable if any of the following conditions exist:

  • more than 1,000 users
  • no reliable master structure for administration of unique IDs
    • HR systems in principle could suffices I've found using the HR system to assign IDs is problematic. Actually employees are sometimes using company systems for weeks before being entered into HR systems just in time for payroll processing. There are many people that aren't employees at all but still need accounts.
  • organization structures have grown over time
    • lack of documentation
    • uncompleted migration projects that have left behind old, unmaintained systems
    • mergers and acquisitions
    • multiple HR and ERP systems
    • multiple directory services
  • data models are too different between different instances of even the same system

These and other factors require automation and I'm going to show you how a good identity management solution can

  • automate the account cleanup process
  • map the organizational complexity between all systems under management
  • ensure each person has a unique ID that is valid organization-wide
  • ensure each account on each IT system is assigned a unique ID
  • ensure assignment of employees to organizational structures and functional units is unique and consistent

Register NOW

Anonymous