Frost & Sullivan: Confusion about identity and access management

  • Email a Friend
  • Print Page
Frost & Sullivan: Confusion about identity and access management
Jun 28, 2006 9:01 AM
Tags: frost | sullivan confusion | identity access | management james

Security within Australian organisations is being threatened by the confusion between the concepts of IT security and information security, researchers Frost & Sullivan have said.

Security within Australian organisations is being threatened by the confusion between the concepts of IT security and information security, researchers Frost & Sullivan have said.

In its Managing the Information Security Risk From People, Both Internal and External white paper the company said people were confused by the differnces between hardware and software – the ‘how’ - and information - the ‘what’ - of IT.

“The risk in focusing exclusively on technology hinders a business from meeting the needs of their ever-changing organisations. Nor does it effectively protect an organisations from ever-changing threats – both internal and external,” James Turner, industry analyst, security and services, said.

Turner said Frost's recent 2006 Australian Information Security Satisfaction Monitor (AISSM) also found that security standards were slipping.

The report found that 35 percent of respondents reported that a legitimate network user had accessed information they should not have been permitted to view. Another 16 percent reported that a formerly legitimate network user had maliciously compromised data.

Looking at the external threat, the report found that 22 percent of respondents reportedly had proof that a hacker had penetrated their network, while 36 percent had suspicions that a hacker had penetrated them.

Turner claims that no single security solution can address the range of threats from internal and external sources and recommends clearly defined processes to control access and activity on corporate networks.

Many of these checks and processes can be automated through identity and access management tools – but it is the process that counts, he said.

“We need the process defined and clearly understood before we start deploying the technology,” he said.

The need for authentication is growing as more organisations are linking their resources and supply chains are becoming supply webs – intricate and multi-layered relationships that run on trust, Turner claimed.

Without authentication an organisation cannot establish trusted identities, and without trusted identities it cannot effectively use technology to leverage the skills of its workforce and partners for growth and profit.

“That’s why we should not confuse information security with IT security,” said Turner. “Data is generally of greater value than the infrastructure (the technology) that stores and manages it. And it is people, both within the organisation and externally, who are often overlooked as a threat to corporate information.”

 
 


Comments

Be the first to comment on this article.
Thoughts on this article? Add a comment below.
Comment:
Want to participate in the discussion?
Or log in now to comment


Top Stories
S Central to finally enter liquidation
Mavridis looks to Government to pay staff entitlements.
 
Microsoft announces Azure launch date
Australia in second wave of country releases.
 
Opinion: Avaya tries to out-Cisco Cisco
Ex-Cisco execs head up Avaya.
 

Shortcutsall you need to know on...

  • NBN 
  • Windows 7 
  • Unified Communications 
  • Smart Power 
  • Virtualisation 

Latest Comments

"Though wireless broadband is quite expensive but I like mobility so I can always prefer wireless ..."
by katiegardner Feb 9, 2010 5:51 PM
 
"I must say Telstra customers can also have confidence in the fact that their wireless broadband ..."
by katiegardner Feb 9, 2010 5:50 PM
 
"Hang on a minute! Why is Australia any different from anywhere else. I know that this type of ..."
by webxopt Feb 9, 2010 2:31 PM
 
"Avatar..did not do to bad at the box office!! 3D has given the industry the boot it needed. What ..."
by jimmydee4 Feb 5, 2010 5:04 AM
 
"I totally agree. As has been said before the copyright holder would be better off to engage an ..."
by fagtatts Feb 4, 2010 8:25 PM

Polls

What is the sweet spot for Apple's entry 16GB Wi-Fi iPad?




   |   View results
$549
  69%
 
$579
  18%
 
$619
  2%
 
$649
  6%
 
$699
  5%
TOTAL VOTES: 123

Vote now

CRN Magazine

Issue: 275 | January, 2010

CRN Magazine looks in-depth at the emerging issues and developments for the Channel, and provides insight, analysis and strategic information to help resellers better run their businesses.