BeyondTrust

Security In Context

Bringing you news and commentary on solutions and strategies for protecting your critical IT infrastructure.

Security from Data Breaches Start from Within

Post by Peter McCalister March 22, 2012

Keeping the bad guys out is what comes to mind for a lot of us when we think of securing our companies’ IT environment. And to be honest, this mindsit might very well be the reason we hear about so many data breaches. Companies are getting hit with breach and breach of sensitive information despite the best firewall systems and anti-malware software available. And the reason? The security focus is not in the right place. While keeping intruders out is important, keeping the liabilities and risks (read: people) inside your company at bay is far more critical. It’s no wonder breaches and leaks are still occuring- unmonitored and unmanaged users are running around our organizations with access to sensitive information. If you haven’t already started examining how to keep your information safe from the inside out, it’s time to make it a priority.

According to Mark Diodatti of Gartner, “organizations continue to struggle with excessive user privilege as it remains the primary attack point for data breaches and unauthorized transactions.” It would make sense, then, to allocate appropriate budget and resources to projects surrounding the primary attack point. Technologies like Anti-virus, firewalls, intrustion detection and prevention, email security, and web security are obviously important. Billions of dollars are spent each year in security budget to secure the outside perimeter from hostile intent…and I’m not saying that’s a bad thing. It just seems to me that more focus should be allocated to the primary point of attack. With the majority of organizations still struggling with excessive user privileges, it’s clear priorities aren’t jiving with needs.

Now, more than ever, there is a strong need to evaluate the security inside our environments. Ensuring privilege identity management as well as data security and leak prevention are becoming corporate “need-to-haves” in order to prevent the insider threat from effecting your organization. Click here to learn how to get started.

Leave a Reply

Additional articles

BI-5.1-user-asset-visibility-img

Understanding Who Has Access to What with BeyondInsight v5.1

Today, it’s my pleasure to introduce you to BeyondInsight version 5.1, the latest release of our IT Risk Management platform, which unifies several of our solutions for Privileged Account Management and Vulnerability Management. BeyondInsight v5.1 embodies BeyondTrust’s mission to give our customers the visibility they need to make smart decisions and reduce risk to their…

Post by Morey Haber April 15, 2014
Tags:
, , , , , , , , , , , ,

PowerBroker for Unix & Linux Now Available via Web Services

This week BeyondTrust released a fully functional Web Services interface (REST API) for its PowerBroker for Unix & Linux product.  With this new feature users of the solution will now be able to remotely and securely configure and retrieve data via the API.  The Web Services interface implemented by BeyondTrust is an industry standard that…

Post by Paul Harper April 10, 2014
Tags:
, , , , ,

Heartbleed – When OpenSSL Breaks Your Heart

You’ve likely heard about the recent OpenSSL vulnerability, CVE-2014-0160, dubbed Heartbleed. The main takeaway of this vulnerability is that attackers can use this to obtain things like secret keys used for X.509 certificates, user names and passwords, instant messages, emails, and other highly sensitive information. For a technical analysis of the bug, check out this…

Post by BeyondTrust Research Team April 8, 2014
Tags:
, , ,