The Cyber Security Review | Wednesday, February 17, 2021
Considering how firms segment and store identity data, particularly as it relates to CIAM, is vital than ever before.
FREMONT, CA: Today’s organizations are faced with the problem of offering their employees the right level of access to the right resources at the right time. Workforces have transformed to a mobile-first strategy, and helping user access from several locations and devices can launch new sets of risks if not managed appropriately. Today, firms need to adopt governance practices and solutions to manage these risks and address operational inefficiencies. This demand can be met by adequately deploying an effective identity and access management plan.
Stay ahead of the industry with exclusive feature stories on the top companies, expert insights and the latest news delivered straight to your inbox. Subscribe today.
As the Internet has evolved to accommodate billions of identities, so has the requirement to systematically manage those identities. Without an organized way to store identity information, modern identity and access management processes would be virtually impossible. Issues would ensue as individuals battle for access to needed digital resources. The directory services are not necessarily the ones that will serve people going forward. Presently, directory services in the form of LDAP Servers or RMDBS-based meta directories are the core repositories in use. But the identity data has gone through several changes over the last few years, particularly with regards to the scale and the types of identities, and people need to reexamine how to best handle them within the directory framework.
Meta directories are useful for acting as the backend for user provisioning and campaign compliance applications. Still, they don’t work for high-volume use cases like what is seen in customer identity and access management (CIAM) authentication and authorization. Legacy directories aren’t tailored for peak usage and battle with the attribute flexibility needed in an environment of complex customer profiles. Also, they don’t offer vital security features like tamper-evident logs, admin alerts, and data access limitations that are needed to guard consumer data.
When enterprises consider what needs to be done with the several types of identities being managed in today’s IT shops, it becomes essential than ever to consider how identities are managed in infrastructure. One needs to evolve thinking about how this data is stored for various use cases. Creating organized repositories of data for access under the right circumstances is vital for meeting use case, compliance, and operational needs.
More in News