cyber secuity

profileluckyqloo
W8D2JP.docx

W8D2

Disagree… 100 min

One method I researched that allows for the building and vetting of a strong protected computing environment that can pass compliance inspections and still serve stakeholders efficiently is identification and authentication. In today’s digitally enabled world, Identity and Access Management (IAM) play a critical role in any enterprise security plan, as it is inseparably linked to the security and productivity of companies. It is technically two controls, but I believe you can’t have without the other. When it comes to identification there is a user who has a unique name or image that interacts with information. Authentication is a set of methods used to verify the user’s match with the name or the unique image. Authentication and identification are intended to provide or deny access to data. Authenticity is established in three ways: by a program, by an apparatus, or by a man. Apart from a person being an object of authentication, it can extend to hardware (computer, monitor and carriers) or data. Setting a password is the easiest method of protection. These two concepts technically serve different purposes and are independent of each other, but both are central to security design, and the failure to get either one correct opens up the avenue to compromise. These are also ways to show compliance as part of the NIST standards.

 

                                                                        References

Misslier Daniel. (2005, Oct 4,). Security: Identification, authentication, and authorization. Retrieved from https://danielmiessler.com/blog/security-identification-authentication-and-authorization/

Sullivan Peter. (2016). How identity management systems strengthen cybersecurity readiness. Retrieved from https://searchsecurity.techtarget.com/tip/How-identity-management-systems-strengthen-cybersecurity-readiness