<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>tuesdaynight &#187; access certification</title>
	<atom:link href="http://www.tuesdaynight.org/tag/access-certification/feed" rel="self" type="application/rss+xml" />
	<link>http://www.tuesdaynight.org</link>
	<description>spots of thoughts: ian glazer and friends rant, rave and ruminate</description>
	<lastBuildDate>Sun, 11 Sep 2011 18:33:47 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>Thinking about Matt&#8217;s Simple Question: Correlating accounts and people</title>
		<link>http://www.tuesdaynight.org/2008/09/04/thinking-about-matts-simple-question-correlating-accounts-and-people.html</link>
		<comments>http://www.tuesdaynight.org/2008/09/04/thinking-about-matts-simple-question-correlating-accounts-and-people.html#comments</comments>
		<pubDate>Thu, 04 Sep 2008 17:15:53 +0000</pubDate>
		<dc:creator>Ian Glazer</dc:creator>
				<category><![CDATA[Identity Management]]></category>
		<category><![CDATA[access certification]]></category>
		<category><![CDATA[Burton Group]]></category>
		<category><![CDATA[identity mapping]]></category>

		<guid isPermaLink="false">http://www.tuesdaynight.org/?p=424</guid>
		<description><![CDATA[<p>Matt Hamlin, over at Sun, mentioned a conversation we had last week about a topic in identity management which doesn&#8217;t usually get a lot of airtime: the correlation of accounts to people.  The exercise is the first step in answering Matt&#8217;s simple question of &#8220;Who has access to what?&#8221;  Matt writes:</p> <p>This step is the [...]]]></description>
			<content:encoded><![CDATA[<p>Matt Hamlin, over at Sun, <a href="http://blogs.sun.com/elemental/entry/simple_question_who_has_access">mentioned a conversation</a> we had last week about a topic in identity management which doesn&#8217;t usually get a lot of airtime: the correlation of accounts to people.  The exercise is the first step in answering Matt&#8217;s simple question of &#8220;Who has access to what?&#8221;  Matt writes:</p>
<blockquote><p>This step is the foundation for Access Certification, Role Mining, Entitlements Management, Policy Evaluation, Identity Auditing, and numerous other custom services developed by our customers.</p></blockquote>
<p>There were two major omissions in his list: password management and user provisioning.  The reality is the correlating of accounts to people is a requirement for all identity management exercises.  This correlation isn&#8217;t glamorous work and isn&#8217;t a one time affair.  None the less, it is crucial &#8220;Identity Gold&#8221; for identity management projects, but also as the foundation for risk mitigation exercises as well.</p>
<p>Here&#8217;s a tip to enterprises out there &#8211; ask your software vendors and deployment teams what capabilities they have to help facilitate this correlation.  Ask early and before you start down the path of an identity project.  Make it an on-going process governed by your overall identity management program.</p>
<p>I&#8217;ll be touching on this a bit in an upcoming <a href="http://www.burtongroup.com">Telebriefing</a> I am doing.  On October 1st and 2nd, I&#8217;ll be giving a sneak peak of my research on access certification and will cover this and other topics.  If you are a Burton Group subscriber, you should check it out.  If you aren&#8217;t a BG customer, you should become one.  ;-)</p>
<div id="crp_related"><h3>Related Posts:</h3><ul><li><a href="http://www.tuesdaynight.org/2007/04/06/you-mean-people-actually-use-this-stuff.html" rel="bookmark" class="crp_title">You mean people actually use this stuff?</a></li><li><a href="http://www.tuesdaynight.org/2008/01/14/erm-and-the-organization-kevins-response.html" rel="bookmark" class="crp_title">ERM and the organization: Kevin&#8217;s response</a></li><li><a href="http://www.tuesdaynight.org/2008/07/23/chasing-the-magical-grc-animal.html" rel="bookmark" class="crp_title">Chasing the magical GRC animal</a></li><li><a href="http://www.tuesdaynight.org/2007/09/24/didw-suns-deployment-of-sun-identity-manager.html" rel="bookmark" class="crp_title">DIDW: Sun&#8217;s deployment of Sun Identity Manager</a></li><li><a href="http://www.tuesdaynight.org/2006/01/05/truer-words-were-never-spoken.html" rel="bookmark" class="crp_title">Truer words were never spoken</a></li></ul></div>]]></content:encoded>
			<wfw:commentRss>http://www.tuesdaynight.org/2008/09/04/thinking-about-matts-simple-question-correlating-accounts-and-people.html/feed</wfw:commentRss>
		<slash:comments>1</slash:comments>
		</item>
	</channel>
</rss>

