Is the Security Bubble Within the Banking Sector About to BURST?
Proceeding: The International Conference on Information Security and Cyber Forensics (InfoSec)Publication Date: 2014-10-08
Authors : Mumina Uddin; Ameer Al-Nemrat;
Page : 11-19
Keywords : Identity Access Management; Access Control; Provision; RBAC; Information Security;
Abstract
In the context of Access provision, Identity access management holds the key to administering, monitoring and assurance of access to information within the Bank, both internal premises and application hosted on cloud. It is vital that the information is available when required providing both integrity and confidentiality. Failure to deliver information on time, lacking in integrity could results in compensation, loss of business, disclosure of company secrets and compliance issues. Identity management is widely herald as an opportunity for enhancing the operational process in information security, reducing cost, enhanced reporting capability and regulatory compliance. However in recent year this has proven to be the concept misunderstood, complex and costly. A case study within an investment Bank information system department is used to highlight issues around access management and the controls. Organisation is still reliant of manual provisioning of information access, user access addition, removal and update. This leave user under-privilege or over privilege access, high risk of human error and this could open up the organisation fraud risk. In this paper we extend the, issues within the previous unsuccessful implementation of Identity access management solution and highlight flaws within the access control provisioning requirements within investment banks by proposing a model framework to be used by the banks to enhance the process of access control and to be use by software vendors as a guideline in developing access provisioning identity access management software.
Other Latest Articles
- Authentication using Audio Key Phrase Integrated with Random Number Generated Keypad
- Bending Strength Classification of Some Common Nigerian Timber Species
- Management of car motion with the driver’s mobile assistant using
- The algorithm of optimum linear extrapolation of vector casual sequence with the complete account of crosscorrelation connections for every constituent
- Construction of model of criteria of estimation of efficiency and optimization of management processes by competitive edges in Institution of higher learning
Last modified: 2014-10-08 00:37:08