The New School of Enterprise Authentication |
 |
| 21 Jul 2008 | SearchSecurity.com |
 |


|
Video: Strategies for single sign-on success
Enterprises have realized that single sign-on (SSO) may eliminate some security-related quandries, but it introduces new ones as well. Some have even given up the Holy Grail of single sign-on and want to use the tools at their disposal to pragmatically reduce the number of user logons. With so many tools in the SSO stack -- Kerberos, enterprise SSO, Web access management, federation, authentication as a service -- what's an enterprise to do? In this video, learn about the "80/20" rule of SSO, best practices for reducing sign-ons, and where most organizations "draw the line" on SSO.
Technical article: The steps of privileged account management implementation
Privileged accounts have no accountability, can breach confidential information, change transactions, and destroy audit logs. These accounts have always been difficult to secure, and remain the focal point for the insider attack. Learn about the new class of privileged account management products and best practices for their implementation.
Podcast: Countdown -- Top 5 technologies on the leading edge of authentication
Length: 18 minutes
Authentication technologies have made great strides as of late, and the timing couldn't be better: privilege creep, insider abuse and numerous other issues are causing enterprises to turn to innovative techniques to solve emerging problems. In this podcast, Mark Diodati will count down his top five leading edge authentication technologies, including authentication as a service, personal portable security devices, and the credit card OTP form factor.
Quiz: The new school of enterprise authentication
Take this five-question quiz to see how much you've learned about the new class of authentication technologies.
About the instructor
Mark Diodati, CPA, CISA, CISSP, MCP, CISM, has more than 18 years of experience in the development and deployment of information security technologies. He has served as vice president of worldwide IAM for CA, as well as senior product manager for RSA Security's smart card, SSO, UNIX security, mobile PKI and file encryption products. He has had extensive experience implementing information security systems for the financial services industry since starting his career at Arthur Andersen & Co. He is a frequent speaker at information security conferences, a contributor to numerous publications, and has been referenced as an authority on IAM in a number of academic and industry research publications. |
');
// -->

|
 |
|
 |