Policy Violations

Business Challenge

When user access to systems and applications is managed manually, errors and inconsistencies are inevitable. Administrators may not be aware of pre-existing security entitlements or of all of an organization's policies.

The result of manual administration of users and entitlements is that users often wind up with:

  • Too many entitlements, due to privilege accumulation.
  • Mutually contradictory entitlements, violating segregation of duties policies.
  • Orphan and dormant accounts, which are no longer required.

Each of these policy violations has the potential to be used to compromise the organization's security.

Hitachi ID Identity Manager Solution
  • Identity Manager creates user access using templates and roles, ensuring that access rights are standardized and appropriate.
  • Identity Manager can be used to find and remove orphan and dormant accounts.
  • Identity Manager can check all change requests against a list of segregation of duties policies and prevent changes from triggering violations.

Using Identity Manager, organizations can eliminate most of the policy violations that result from manual security administration.

