DocumentCode :
3672835
Title :
Advanced Identity and Access Policy Management Using Contextual Data
Author :
Matthias Hummer;Michael Kunz;Michael Netter;Ludwig Fuchs;Günther
Author_Institution :
Dept. of Inf. Syst., Univ. of Regensburg, Regensburg, Germany
fYear :
2015
Firstpage :
40
Lastpage :
49
Abstract :
Due to compliance and IT security requirements, company-wide Identity and Access Management within organizations has gained significant importance in research and practice over the last years. Companies aim at standardizing user management policies in order to reduce administrative overhead and strengthen IT security. Despite of its relevance, hardly any supportive means for the automated detection and refinement as well as management of policies are available. As a result, policies outdate over time, leading to security vulnerabilities and inefficiencies. Existing research mainly focuses on policy detection without providing the required guidance for policy management. This paper closes the existing gap by proposing a Dynamic Policy Management Process which structures the activities required for policy management in Identity and Access Management environments. In contrast to current approaches it fosters the consideration of contextual user management data for policy detection and refinement and offers result visualization techniques that foster human understanding. In order to underline its applicability, this paper provides a naturalistic evaluation based on real-life data from a large industrial company.
Keywords :
"Companies","Data mining","Context","Access control"
Publisher :
ieee
Conference_Titel :
Availability, Reliability and Security (ARES), 2015 10th International Conference on
Type :
conf
DOI :
10.1109/ARES.2015.40
Filename :
7299897
Link To Document :
بازگشت