Some Thoughts about Privileged Identity Management and Privileged Account Management

Main Author: Flavio Gerbino
Other Authors: Marc Ruef
Format: Article
Bahasa: eng
Terbitan: , 2015
Subjects:
Law
Online Access: https://zenodo.org/record/3521420
Daftar Isi:
  • Privileged Identity Management (PIM) is a domain of Identity Management. It focuses on the particular requirements of privileged accounts in the IT environment of a company. Among them are admin, root and super-user. PIM is also referred to as an information security and governance instrument in order to support companies to fulfil legal and regulatory compliance requirements (such as FINMA in Switzerland, PCI-DSS and so on). In addition to that, PIM helps to hinder attackers from using privileged accounts in order to misuse internal data. And if that doesn’t work, then PIM should at least help to detect and document the misuse.
  • This paper was written in 2015 as part of a research project at scip AG, Switzerland. It was initially published online at https://www.scip.ch/en/?labs.20150205 and is available in English and German. Providing our clients with innovative research for the information technology of the future is an essential part of our company culture.