Friday, May 10, 2013
From RBAC to CBAC: Claim Based Access Control
Many organizations that are in the process of defining the various different organizational roles for the purpose of Role Based Access Control (RBAC) will realize that this is a major or even unachievable undertaking. After all, mapping out all the roles for each department and job title is a time-consuming job. A consultant will have to check with every department to create an inventory of user privileges, formalize it and gain approval. Also, a high level of detail is to be avoided, as this would make it necessary to define as many roles as there are employees, which would undermine the value of automation.
To solve problems like these, Tools4ever has developed an Identity and Access Management solution that combines RBAC with Claim Based Access Control (CBAC). CBAC involves the assignment of access rights to applications and other services based on a so-called claim (proof of authenticity) through which a third party vouches for the authenticity of the person who is requesting access rights or a particular service.
In actual practice, this means that difficult scenarios, exceptions and doubts in the area of authorizations are handled by members in the organization rather than automatically assigned/revoked. To this end, Tools4ever offers a self-service portal which requests for access privileges can be delegated to the relevant manager or employee. Following their approval, the changes will be implemented across the network.
CBAC allows organizations to quickly and intelligently gain control over user access to network resources. All the decisions regarding the assignment of access rights are directly made by the responsible staff members.
For more information on Identity Management solutions, and other Tools4ever products, please visit our website.
Friday, May 3, 2013
South Jersey Healthcare uses Tools4ever
As a leader in providing quality identity and access management solutions, Tools4ever continues to be especially proficient in developing, implementing and automating user account management processes within the healthcare setting.
Tools4ever, the worldwide market leader in identity and access management solutions with more than five million user accounts, announced today that South Jersey Healthcare, based in Vineland, New Jersey, has implemented User Management Resource Administrator (UMRA) to standardize and streamline its user account management processes throughout the organization.
A nonprofit healthcare organization made up three major regional hospitals and more than 60 outpatient care locations, South Jersey Healthcare uses UMRA to assist with the standardization of account creation and management for the more than 6,000 employees, as well as to provide employees within the organization with the correct access rights to internal systems.
Before UMRA, South Jersey Healthcare employees entered account data using their own conventions - such as custom passwords and logins - which often led to error, confusion and lost productivity. Tools4ever's UMRA easily allows leaders at South Jersey Healthcare to customize electronic forms for account creation while not burdening the employees in charge of this task with elevated rights. Instead of free form data entry, UMRA's electronic templates have drop-down menus with information including department names, radio buttons with locations and addresses built in, as well as mandatory fields required to create an account.
"UMRA has helped clean up Active Directory to make it more consistent and useful for our entire organization," says Andrew Gahm, systems and security engineer at South Jersey Healthcare.
Departmental, IT and health system directors at South Jersey Healthcare now are assured that the information included in their account is accurate and correct, and the organization no longer needs to focus time on cleaning up messes or correcting account disparities from accounts that were not previously created correctly, says Gahm.
As a worldwide leader in identity and access management solutions, Tools4ever is especially proficient in developing, implementing and automating user account management processes within the healthcare setting. Tools4ever has carried out thousands of implementations for healthcare organization such as South Jersey Healthcare including South County Hospital in Wakefield, Rhode Island, CentraState Healthcare System in Freedom Township, New Jersey, and Providence Hospital, in Columbia, South Carolina.
"As hospital and healthcare leaders continue to be met with mandates and reform, solutions such as automated user account management will be increasingly vital to them and ever important as they seek new ways to not only manage data, but managing who has access to certain and specific data," says Dean Wiech, managing director of Tools4ever. "Tools like UMRA are powerful allies to IT leaders and organizational management as they allow for regular information audits to be conducted and even streamline the account creation and data management process."
For more information, please visit our website
Tools4ever, the worldwide market leader in identity and access management solutions with more than five million user accounts, announced today that South Jersey Healthcare, based in Vineland, New Jersey, has implemented User Management Resource Administrator (UMRA) to standardize and streamline its user account management processes throughout the organization.
A nonprofit healthcare organization made up three major regional hospitals and more than 60 outpatient care locations, South Jersey Healthcare uses UMRA to assist with the standardization of account creation and management for the more than 6,000 employees, as well as to provide employees within the organization with the correct access rights to internal systems.
Before UMRA, South Jersey Healthcare employees entered account data using their own conventions - such as custom passwords and logins - which often led to error, confusion and lost productivity. Tools4ever's UMRA easily allows leaders at South Jersey Healthcare to customize electronic forms for account creation while not burdening the employees in charge of this task with elevated rights. Instead of free form data entry, UMRA's electronic templates have drop-down menus with information including department names, radio buttons with locations and addresses built in, as well as mandatory fields required to create an account.
"UMRA has helped clean up Active Directory to make it more consistent and useful for our entire organization," says Andrew Gahm, systems and security engineer at South Jersey Healthcare.
Departmental, IT and health system directors at South Jersey Healthcare now are assured that the information included in their account is accurate and correct, and the organization no longer needs to focus time on cleaning up messes or correcting account disparities from accounts that were not previously created correctly, says Gahm.
As a worldwide leader in identity and access management solutions, Tools4ever is especially proficient in developing, implementing and automating user account management processes within the healthcare setting. Tools4ever has carried out thousands of implementations for healthcare organization such as South Jersey Healthcare including South County Hospital in Wakefield, Rhode Island, CentraState Healthcare System in Freedom Township, New Jersey, and Providence Hospital, in Columbia, South Carolina.
"As hospital and healthcare leaders continue to be met with mandates and reform, solutions such as automated user account management will be increasingly vital to them and ever important as they seek new ways to not only manage data, but managing who has access to certain and specific data," says Dean Wiech, managing director of Tools4ever. "Tools like UMRA are powerful allies to IT leaders and organizational management as they allow for regular information audits to be conducted and even streamline the account creation and data management process."
For more information, please visit our website
Friday, April 26, 2013
84% of Helpdesk Employees said they Could Save Time if they had the Ability to Reset their Own Passwords
IT and helpdesk employees often deal with an overwhelming amount of calls to the helpdesk each day. The survey found that over half the respondents (55%), said their helpdesk receives over 100 calls a week! It also found that 56% of respondents felt that the overwhelming amount of calls to the helpdesk were due to people having too many passwords to remember leading them to need to reset many of them. Many of those surveyed also said their company requires complex passwords in conjunction with requirements to change their passwords every month. All of this leads to a lot of time spent on password resets, which could be easily done by end users with Self Service Reset Password Management software.
Key Findings
There were a total of 110 respondents which consisted of helpdesk and IT employees. A summary of the key findings:
Many of the password reset calls are for Active Directory
Active Directory passwords are critical to reset quickly because without them users cannot access their computers or any additional applications to get their work done. 71% of respondents said that password reset calls are usually for AD accounts, which shows the importance and time critical nature of the password resets which most help desk employees are dealing with.
The helpdesk could save a great deal of time if end users could reset their own passwords:
If end users were able to safely and securely reset their own passwords without having to contact the helpdesk, it would save both the end users and the help desk a great deal of time and allow them to focus on other important tasks. 84% of respondents agreed that they could save a lot of time if a self service reset password solution was introduced at their companies. Many help desk employees also felt that this type of solution could save a great deal of money as well as increase the level of service for end users.
Self Service Reset Password Manager
Self service reset password solutions are applications that allow end-users to reset their password on the basis of a number of simple, predefined questions. They simply click the ‘forgot my password’ button and provide answers to the security questions. The results of this survey clearly indicate that employees and employers both can reap the benefits and time savings associated with an automated solution to provide self service when it comes to forgotten passwords.
For the complete survey results, click here.
For more information on SSRPM, please visit our website.
Key Findings
There were a total of 110 respondents which consisted of helpdesk and IT employees. A summary of the key findings:
- The helpdesk receives an overwhelming amount of calls each week:
- Helpdesk and IT employees spend an inordinate amount of time on tasks that are simple but are time consuming such as password resets. The survey found that 55% of the respondents said that they receive over 100 calls a week! This shows how extremely busy they are with simple tasks which take time away from other projects.
Many of the password reset calls are for Active Directory
Active Directory passwords are critical to reset quickly because without them users cannot access their computers or any additional applications to get their work done. 71% of respondents said that password reset calls are usually for AD accounts, which shows the importance and time critical nature of the password resets which most help desk employees are dealing with.
The helpdesk could save a great deal of time if end users could reset their own passwords:
If end users were able to safely and securely reset their own passwords without having to contact the helpdesk, it would save both the end users and the help desk a great deal of time and allow them to focus on other important tasks. 84% of respondents agreed that they could save a lot of time if a self service reset password solution was introduced at their companies. Many help desk employees also felt that this type of solution could save a great deal of money as well as increase the level of service for end users.
Self Service Reset Password Manager
Self service reset password solutions are applications that allow end-users to reset their password on the basis of a number of simple, predefined questions. They simply click the ‘forgot my password’ button and provide answers to the security questions. The results of this survey clearly indicate that employees and employers both can reap the benefits and time savings associated with an automated solution to provide self service when it comes to forgotten passwords.
For the complete survey results, click here.
For more information on SSRPM, please visit our website.
Friday, April 19, 2013
Tools4ever Develops Connector with Microsoft Lync
Tools4ever’s new connector make it possible to configure a host of settings for Lync users based on information from the source system, such as setting a phone number for the use of Microsoft Exchange Unified Messaging, among other features.
Tools4ever announced recetnly that is has developed a connector for the enterprise instant messenger application Microsoft Lync (previously Microsoft Office Communicator). The new connector drastically simplifies the management of user accounts and access privileges by eliminating the need for manual and error-prone procedures.
Tools4ever’s Identity and Access Management suite, including User Management Resource Administrator (UMRA), allows users to have actions performed in Microsoft Lync based on data from any source system. For instance, a Lync user is created when a new employee is added to the human resource system. It is also possible to disable a Lync user when the associated employee leaves service.
Besides enabling and disabling user accounts in Microsoft Lync, the new Lync connector make it possible to configure a host of settings for users based on information from the source system, such as setting a phone number for the use of Microsoft Exchange Unified Messaging, as well as makes it possible to retrieve information from Lync for various reporting purposes, such as a list of Lync users including their status, phone number, rights and/or Lync group, or to select a group of Lync users based on their location specified in Active Directory.
Since these actions are performed without the need for intervention or manual procedures by systems administrators, valuable time can be saved and errors prevented.
UMRA is deployed by many organizations for the day-to-day management of user accounts in the Active Directory. As part of the influx, progression and departure of employees, UMRA serves as a graphic shell around the network with which, for instance, a service desk can use electronic forms to carry out these user account management tasks safely and by delegation. Alongside the basic management of user accounts in the Active Directory, UMRA offers (default) connectors for handling the user management for various other systems, including facility management, content management, email and helpdesk systems.
“Tools4ever continuously develops new tools and products to help our clients achieve the most from their solutions, and to automate, access and manage their accounts in the most efficient manner,” said Dean Wiech, managing director of Tools4ever. “Tools4ever’s new Lync connector enables more internal automation and dramaticly simplifies the management of user accounts.”
A full overview of UMRA connectors is available on the website. For more about Tools4ever, visit www.tools4ever.com.
Tools4ever announced recetnly that is has developed a connector for the enterprise instant messenger application Microsoft Lync (previously Microsoft Office Communicator). The new connector drastically simplifies the management of user accounts and access privileges by eliminating the need for manual and error-prone procedures.
Tools4ever’s Identity and Access Management suite, including User Management Resource Administrator (UMRA), allows users to have actions performed in Microsoft Lync based on data from any source system. For instance, a Lync user is created when a new employee is added to the human resource system. It is also possible to disable a Lync user when the associated employee leaves service.
Besides enabling and disabling user accounts in Microsoft Lync, the new Lync connector make it possible to configure a host of settings for users based on information from the source system, such as setting a phone number for the use of Microsoft Exchange Unified Messaging, as well as makes it possible to retrieve information from Lync for various reporting purposes, such as a list of Lync users including their status, phone number, rights and/or Lync group, or to select a group of Lync users based on their location specified in Active Directory.
Since these actions are performed without the need for intervention or manual procedures by systems administrators, valuable time can be saved and errors prevented.
UMRA is deployed by many organizations for the day-to-day management of user accounts in the Active Directory. As part of the influx, progression and departure of employees, UMRA serves as a graphic shell around the network with which, for instance, a service desk can use electronic forms to carry out these user account management tasks safely and by delegation. Alongside the basic management of user accounts in the Active Directory, UMRA offers (default) connectors for handling the user management for various other systems, including facility management, content management, email and helpdesk systems.
“Tools4ever continuously develops new tools and products to help our clients achieve the most from their solutions, and to automate, access and manage their accounts in the most efficient manner,” said Dean Wiech, managing director of Tools4ever. “Tools4ever’s new Lync connector enables more internal automation and dramaticly simplifies the management of user accounts.”
A full overview of UMRA connectors is available on the website. For more about Tools4ever, visit www.tools4ever.com.
Friday, April 5, 2013
Major Time Saver for Helpdesk...
Tools4ever recently conducted a survey on the issue of allowing end users reset their own passwords, and if and how this could benefit the helpdesk or IT employees .
IT and helpdesk employees often deal with an overwhelming amount of calls to the helpdesk each day. The survey found that over half the respondents (55%), said their helpdesk receives over 100 calls a week! It also found that 56% of respondents felt that the overwhelming amount of calls to the helpdesk were due to people having too many passwords to remember leading them to need to reset many of them. Many of those surveyed also said their company requires complex passwords in conjunction with requirements to change their passwords every month. All of this leads to a lot of time spent on password resets, which could be easily done by end users with Self Service Reset Password Management software.
Key Findings
There were a total of 110 respondents which consisted of helpdesk and IT employees. A summary of the key findings:
The helpdesk receives an overwhelming amount of calls each week:
Helpdesk and IT employees spend an inordinate amount of time on tasks that are simple but are time consuming such as password resets. The survey found that 55% of the respondents said that they receive over 100 calls a week! This shows how extremely busy they are with simple tasks which take time away from other projects.
Many of the password reset calls are for Active Directory:
Active Directory passwords are critical to reset quickly because without them users cannot access their computers or any additional applications to get their work done. 71% of respondents said that password reset calls are usually for AD accounts, which shows the importance and time critical nature of the password resets which most help desk employees are dealing with.
The helpdesk could save a great deal of time if end users could reset their own passwords:
If end users were able to safely and securely reset their own passwords without having to contact the helpdesk, it would save both the end users and the help desk a great deal of time and allow them to focus on other important tasks. 84% of respondents agreed that they could save a lot of time if a self service reset password solution was introduced at their companies. Many help desk employees also felt that this type of solution could save a great deal of money as well as increase the level of service for end users.
Self Service Reset Password Manager:
Self service reset password solutions are applications that allow end-users to reset their password on the basis of a number of simple, predefined questions. They simply click the ‘forgot my password’ button and provide answers to the security questions. In reference to the survey results, Dean Wiech, Managing Director of Tools4ever, Inc. stated, ”The results of this survey clearly indicate that employees and employers both can reap the benefits and time savings associated with an automated solution to provide self service when it comes to forgotten passwords.”
Read the full survey results:
For more details on SSRPM and its full functionality please visit our website.
IT and helpdesk employees often deal with an overwhelming amount of calls to the helpdesk each day. The survey found that over half the respondents (55%), said their helpdesk receives over 100 calls a week! It also found that 56% of respondents felt that the overwhelming amount of calls to the helpdesk were due to people having too many passwords to remember leading them to need to reset many of them. Many of those surveyed also said their company requires complex passwords in conjunction with requirements to change their passwords every month. All of this leads to a lot of time spent on password resets, which could be easily done by end users with Self Service Reset Password Management software.
Key Findings
There were a total of 110 respondents which consisted of helpdesk and IT employees. A summary of the key findings:
The helpdesk receives an overwhelming amount of calls each week:
Helpdesk and IT employees spend an inordinate amount of time on tasks that are simple but are time consuming such as password resets. The survey found that 55% of the respondents said that they receive over 100 calls a week! This shows how extremely busy they are with simple tasks which take time away from other projects.
Many of the password reset calls are for Active Directory:
Active Directory passwords are critical to reset quickly because without them users cannot access their computers or any additional applications to get their work done. 71% of respondents said that password reset calls are usually for AD accounts, which shows the importance and time critical nature of the password resets which most help desk employees are dealing with.
The helpdesk could save a great deal of time if end users could reset their own passwords:
If end users were able to safely and securely reset their own passwords without having to contact the helpdesk, it would save both the end users and the help desk a great deal of time and allow them to focus on other important tasks. 84% of respondents agreed that they could save a lot of time if a self service reset password solution was introduced at their companies. Many help desk employees also felt that this type of solution could save a great deal of money as well as increase the level of service for end users.
Self Service Reset Password Manager:
Self service reset password solutions are applications that allow end-users to reset their password on the basis of a number of simple, predefined questions. They simply click the ‘forgot my password’ button and provide answers to the security questions. In reference to the survey results, Dean Wiech, Managing Director of Tools4ever, Inc. stated, ”The results of this survey clearly indicate that employees and employers both can reap the benefits and time savings associated with an automated solution to provide self service when it comes to forgotten passwords.”
Read the full survey results:
For more details on SSRPM and its full functionality please visit our website.
Friday, March 29, 2013
IT Trends for 2013
As the US economy slowly gains traction, IT budgets are likely to remain flat or only have modest increases for 2013. As such, IT personnel will continue to look for ways to make the organization and infrastructure run more efficiently. CIOs will definitely focus on projects that provide a substantial return on investment and high visibility projects – those that have a significant impact on the most number of employees possible. Below are several areas we predict will be of particular interest to the technology departments in business, government, education and healthcare.
Employee Self Service
Any time a process is put in place that can eliminate calls to the help desk, it will result in a tremendous time savings. As such, the trend towards employee self-service will continue through 2013. HR departments started this trend decades ago when they allowed employees to look up benefits, vacation time remaining and other repetitive tasks without contact a representative. The trend is continuing in the IT group with tasks such as password reset and requesting access to distribution list, network shares and specific applications.
Self Service Reset Password applications have been around for several years now and continue to prove their value. Businesses and schools that have not already adopted this technology will do well to investigate in the coming year. Much like a banking website, end users enroll via a series of challenge questions and, should they forget their password, are able to reset directly from the network login screen or a website. This eliminates a call to the help desk and allows the employee to become productive immediately instead of waiting in the helpdesk phone queue. Two-factor authentication (2FA) enhances security in this area as well. Delivery of a one-time use PIN code via SMS or email insures the person resetting the password is the actual employee.
Another area of self-service involves employees who need access to distribution groups, network shares or applications they currently cannot access. Normally this involves a phone call to the help desk or a paper process requiring multiple signatures that end up in the IT group. Using workflow processes, the employees can initiate the request from a web page on the company intranet and, depending on the request, have it electronically routed to the individuals responsible for approval. In some scenarios, involvement from the IT department may not be necessary if an automated provisioning process is in place or may only need to perform the final step when notified via the workflow system.
Cloud Applications
As solutions like Gmail and Office 365 continue to gain traction in the corporate and education environments, being able to provision and de-provision accounts in a timely fashion becomes critical to controlling costs. While many companies have implemented Identity management solutions for Active Directory, implementing a seamless process to these cloud applications can be a challenge. Though both Google and Microsoft offer tools to synchronize AD with their respective products, they reportedly fall short in many areas and can make account management a tedious chore.
Many vendors offer advanced tools to allow for painless synchronization and management of accounts in these, and many other cloud applications. As most cloud solution providers invoice based on the number of active users in any given month, insuring that user accounts are decommissioned in a timely fashion can lead to incremental savings.
Security and Audit
As in past years, security of the network and providing accurate reporting to auditors will have a large impact on the IT department. Providing employees the access required to applications and network functional areas needed to perform their jobs, while insuring unnecessary accesses are never granted will continue to occupy a large portion of IT resources. IAM providers will continue to enhance solutions to provide automated and seamless interfaces to the myriad of applications in an average organization thereby reducing the overhead to maintain proper access rights.
Controlling the access rights properly when employees join an organization, change positions or leave, makes the audit process that much easier and insures compliance at all times. This will continue to be a driving force in the coming year, especially as the “bring your down device” (BYOD) concept surges.
About Tools4ever
Tools4ever distinguishes itself with a no-nonsense approach and a low total cost of ownership. In contrast to comparable identity and access management solutions, Tools4ever implements a complete solution in several days rather than weeks or months. Because of this approach, Tools4ever is the undisputed identity and access management market leader with more than five million managed users. Tools4ever supplies a variety of software products and integrated consultancy services involving identity management, such as user provisioning, role-based access control, password management, single sign on and access management. For more information, please visit www.tools4ever.com.
Employee Self Service
Any time a process is put in place that can eliminate calls to the help desk, it will result in a tremendous time savings. As such, the trend towards employee self-service will continue through 2013. HR departments started this trend decades ago when they allowed employees to look up benefits, vacation time remaining and other repetitive tasks without contact a representative. The trend is continuing in the IT group with tasks such as password reset and requesting access to distribution list, network shares and specific applications.
Self Service Reset Password applications have been around for several years now and continue to prove their value. Businesses and schools that have not already adopted this technology will do well to investigate in the coming year. Much like a banking website, end users enroll via a series of challenge questions and, should they forget their password, are able to reset directly from the network login screen or a website. This eliminates a call to the help desk and allows the employee to become productive immediately instead of waiting in the helpdesk phone queue. Two-factor authentication (2FA) enhances security in this area as well. Delivery of a one-time use PIN code via SMS or email insures the person resetting the password is the actual employee.
Another area of self-service involves employees who need access to distribution groups, network shares or applications they currently cannot access. Normally this involves a phone call to the help desk or a paper process requiring multiple signatures that end up in the IT group. Using workflow processes, the employees can initiate the request from a web page on the company intranet and, depending on the request, have it electronically routed to the individuals responsible for approval. In some scenarios, involvement from the IT department may not be necessary if an automated provisioning process is in place or may only need to perform the final step when notified via the workflow system.
Cloud Applications
As solutions like Gmail and Office 365 continue to gain traction in the corporate and education environments, being able to provision and de-provision accounts in a timely fashion becomes critical to controlling costs. While many companies have implemented Identity management solutions for Active Directory, implementing a seamless process to these cloud applications can be a challenge. Though both Google and Microsoft offer tools to synchronize AD with their respective products, they reportedly fall short in many areas and can make account management a tedious chore.
Many vendors offer advanced tools to allow for painless synchronization and management of accounts in these, and many other cloud applications. As most cloud solution providers invoice based on the number of active users in any given month, insuring that user accounts are decommissioned in a timely fashion can lead to incremental savings.
Security and Audit
As in past years, security of the network and providing accurate reporting to auditors will have a large impact on the IT department. Providing employees the access required to applications and network functional areas needed to perform their jobs, while insuring unnecessary accesses are never granted will continue to occupy a large portion of IT resources. IAM providers will continue to enhance solutions to provide automated and seamless interfaces to the myriad of applications in an average organization thereby reducing the overhead to maintain proper access rights.
Controlling the access rights properly when employees join an organization, change positions or leave, makes the audit process that much easier and insures compliance at all times. This will continue to be a driving force in the coming year, especially as the “bring your down device” (BYOD) concept surges.
About Tools4ever
Tools4ever distinguishes itself with a no-nonsense approach and a low total cost of ownership. In contrast to comparable identity and access management solutions, Tools4ever implements a complete solution in several days rather than weeks or months. Because of this approach, Tools4ever is the undisputed identity and access management market leader with more than five million managed users. Tools4ever supplies a variety of software products and integrated consultancy services involving identity management, such as user provisioning, role-based access control, password management, single sign on and access management. For more information, please visit www.tools4ever.com.
Friday, March 22, 2013
Five ways Hospitals can Improve Information Security
- Easily eliminate the security risk of shared accounts- Often times in hospitals, doctors and nurses use shared accounts with one set of credentials for everyone. This is especially common in Emergency Rooms where employees use one PC to access important information. To avoid spending valuable time logging into Windows and launching applications, one generic user account is often used, which is not secure since users can gain access to specific information. It is also makes it difficult when it comes to audits and compliance. Instead doctors and nurses will need their own credentials for each application, but requiring them to remember all new credentials for each of the applications can be difficult, and logging in and out is a time consuming process. A single sign on application will ease this process and allow the employees to only have to remember one set of credentials, making the process of eliminating shared accounts easy. Combining this with a smartcard is even more efficient. Once a user presents the smartcard to the reader, it is recognized by the SSO software and the user is automatically switched, logged in and the right applications are launched.
- No written down passwords-Hospitals would like to implement strong and complex passwords due to audits requirements. Implementing complex passwords though has major consequences for end users. Often if users have to remember several different and complex passwords, which also need to be changed once in a while, they will write them down and store them somewhere. This makes the applications and systems insecure since people can easily find out the credentials. With a single sign on solution doctors and nurses will not need to write down there credentials since they will only need to remember one combination of username and password. This will eliminate this security risk and give hospitals the possibility to easily implement complex passwords.
- Give employees correct access rights - To ensure security of the network and information in a hospital, employees need to be given the correct security permissions depending on their job roles. Ensuring that employees have the proper access rights will improve security. Doing so requires setting controls which can take the IT department months to implement. Using a role based access control solution can assist with this process. It will help the IT department easily populate the RBAC matrix and provide a simple overview of network resources available to an employee base on their job role.
- User provisioning - Often when employees leave employment at a hospital, the IT staff is not notified right away and the employees accounts are left open allowing ex-employees the ability to access information. This makes the systems and information not secure and can lead to serious problems. With an automated account management solution in place, the IT department can quickly and easily de provision accounts as soon as an employee leaves, to ensure security and easily comply with audit standards.
- Stored Information- With a single sign on solution information can be stored about who is logging into each application and what they are doing. This will allow the IT department to easily review who has access to what and if their applications and systems are secure. It will also allow them to easily comply with audit standards.
Subscribe to:
Posts (Atom)