BeyondTrust

Security in Context: The BeyondTrust Blog

Welcome to Security in Context

Bringing you news and commentary on solutions and strategies for protecting critical IT infrastructure in the context of your business.

The Only Constant is Change

Posted April 27, 2011    Peter McCalister

Best practices in IT corporate security must acknowledge the intersection of technology, processes and people. Yet all too often the focus falls to the technology and processes while the people part of the equation is often overlooked.

It’s not that companies have always failed to recognize best of breed security software or developed robust enough policies with which to execute them; it’s just that they have often overlooked the weakest link in their implementation: human nature. This is especially true when it comes to privileged accounts on physical and virtual servers, desktops and cloud environments. We have covered the implications of the misuse of this privilege extensively in this blog, but one thing we haven’t covered to date is the elusive nature of human nature and the implications of the only true business constant that everything can, and usually does, change.

Why does it seem as if every time one security hole is filled another shows up?
Why do some audits (and auditors) allows somethings while others don’t?
Why does it seem like most executives suffer from bipolar disorder (expecting tight security come audit time but demand relaxed enforcement for great productivity all other times)?
Surprisingly these questions were answered back between 535 BC and 435 BC by the Greek philosopher Heraclitus who said “nothing endures but change”.

If you haven’t implemented a least privilege solution then all policy changes can be a very daunting task when it comes to roll out and enforcement. Having centralized policy management and endpoint policy enforcement is one way to solve this ever-present challenge. This is the core value of a privilege identity management solution and something you should be implementing enterprise-wide immediately.

Leave a Reply

Additional articles

{c4eae211-3ca2-4f8e-b2b9-6df0e970aab1}_g.markhardy

The “insider” threat. Is it real, or is it being blown out of proportion?

Posted March 4, 2015    G. Mark Hardy

A lot depends on whether or not you’ve been compromised. And therein lies the problem. Cyber threats are often ignored until they cause some damage, at which point management looks for people to blame and gives all kinds of attention to fixing the problem – until the next crisis in accounting or warehousing or staffing comes along.

Tags:
, , ,
webinar_chalk

Webinar March 4th: Recreating the Carbanak Breach & Techniques for Mitigating Similar Attacks

Posted March 3, 2015    Lindsay Marsh

Join BeyondTrust Research and Development team for an in-depth live webinar that will explore the attack vectors used in the Carbanak Bank Breach and share successful mitigation techniques needed to prevent this type of attack.

Tags:
, ,
VMware Hardening Guidelines-img3

How to Audit VMware ESX and ESXi Servers Against the VMware Hardening Guidelines with Retina CS

Posted February 27, 2015    BeyondTrust Research Team

Retina CS Enterprise Vulnerability Management has included advanced VMware auditing capabilities for some time, including virtual machine discovery and scanning through a cloud connection, plus the ability to scan ESX and ESXi hosts using SSH. However, in response to recent security concerns associated with SSH, VMware has disabled SSH by default in its more recent…

Tags:
, , , ,