BeyondTrust

Security in Context: The BeyondTrust Blog

Welcome to Security in Context

Bringing you news and commentary on solutions and strategies for protecting critical IT infrastructure in the context of your business.

An Ounce of Least Privilege Is Worth A Pound Of Compliance

Posted September 9, 2011    Peter McCalister

If an ounce of prevention is worth a pound of cure then an ounce of least privilege is worth a pound of compliance for your extended enterprise.

The best thing about compliance is this- by implementing the necessary IT infrastructure to ensure it, you have also protected your organization from most potential security infractions as well.

Information security breaches will almost always yield a compliance audit failure. These can be prevented if compliance is a priority in your enterprise. It may sound like a blatant statement of the obvious but if an organization takes the time to plan and execute a security plan that preemptively allows for the avoidance of breaches of secured data, that company is in a much better place as far as security tempests go. The best way to get compliant fast is to implement a least privilege solution.

By now you’re aware of what that is. By now you understand how crucial it is to the protection of your mission-critical information. Letting users have full access to data they don’t necessarily need is both irresponsible and in direct violation of regulations provided to protect your enterprise’s greatest asset. It’s easier than it seems, and such a principle makes logical sense. Give users access to information based on what is essential to their job. This will stabilize, secure, and streamline your system, and make your enterprise a compliant environment.

Leave a Reply

Additional articles

powerbroker-for-mac-diagram-small

PowerBroker for Mac: A Least-Privileged Apple a Day…

Posted July 27, 2015    Jason Silva

BeyondTrust PowerBroker for Mac reduces the risk of privilege misuse by enabling standard users on Mac OS X to perform administrative tasks successfully without entering elevated credentials.

Tags:
, ,
PrivilegedAccountManagement

On Demand Webinar – Now is the time for Privileged Account Management

Posted July 24, 2015    BeyondTrust Software

In this webinar, SANS Instructor and Founder of Voodoo Security, Dave Shackleford, will revisit several hacking and breach scenarios that involved privileged accounts, and use these as examples while discussing tools and tactics to get this problem under control once and for all.

Tags:
, ,
dave-shackleford-headshot

Privileged Account Management: The Time is Now

Posted July 22, 2015    Dave Shackleford

There’s plenty of problems we don’t have great options for in InfoSec today. Malware is a pain point that keeps evolving rapidly. 0-day exploits are tough to prepare for. Privileged account management? We got this. We know the root causes, we know how it manifests, we know how to get it under control effectively, and there are great technology solutions that are enterprise-class.

Tags:
, ,