Access denied – enforcing least privilege
The strength of any system is only as strong as the weakest link; in the case of technology, humans are the weakest link. We are in the information sharing age where data is everywhere, available, and systems can be accessed all over the network and Internet; but this comes with a cost. Access to data and systems can lead to unintended consequences especially if the access is not necessary. This is common for the enterprise data center. All data center assets are available over the network. Though application access may be limited, this does not stop all threats to the data accessed through the applications or that which resides in databases and network shares located in the data center. The need for accessibility has overridden the integrity and security of enterprise data leaving it vulnerable to whatever or whoever finds a way onto the network.
In our trust model paradigm, a careful examination of the present processes, applications, and users...