| | October- 2019ENTERPRISE SECURITY8In My Opinionen years ago, organisations were protected by the `fortress', it was an era of locked down data centres and computing devices. Access to data and services required a person to have access to the right computing device, regardless of them being in the right location and network, and authenticate themselves to the data centre (firewalls) and before each service could be accessed. Fast forward to today's digital world, advances in technologies, networking, and smart devices (IoT) has changed the landscape to one of distributed services often hosted in the `cloud' by different organisations in shared data centres. Users want to use their own devices and they want to access services anywhere, anytime, and be protected whilst doing so. IoT devices are becoming smarter and increasingly autonomous, having access to data, services and decision-making.No longer can the fortress/firewall be the perimeter to protect scattered services/devices, Identity and Access Management (IDAM) is the new perimeter. To ensure effective security, authentication and authorisation must be wrapped around every person, device, service and network. Each protected with independent security measures that are far more complicated than the old fortress model. As a result, the business ecosystem is experiencing a proliferation of credentials for interconnected services/devices. Fortunately, IDAM technology has also evolved to provide the Single Sign On (SSO), Identity Provider (IDP) and Self-Sovereign Identity (SSI) models to reduce the number of credentials needed. SSO technology allows services to access and trust authentications from other service reducing the credentials needed. The IDP model enables users to have credentials and assurances provided by a single organisation or a federation of enterprises who authenticate and allow access to the services/devices. This means a user does not need to maintain different credentials and more importantly, does not need to proliferate their personal data to each service/device. IDPs can also provide assertions to support service risk profiles. TIdentity and Access Management is the new perimeter and Artificial Intelligence is the new sentinelBy Diane Joyce, Identity Management Consultant/Enterprise and Solution Architect/Information Architect, Matakite
<
Page 7 |
Page 9 >