| Published Version Download ( PDF | 306kB) |
Managing the Access Grid - A Process View to Minimize Insider Misuse Risks
Meier, Stefan, Fuchs, Ludwig and Pernul, Günther (2013) Managing the Access Grid - A Process View to Minimize Insider Misuse Risks. In: 11th International Conference on Wirtschaftsinformatik (WI2013), 27.2.-1.3.13, Leipzig.Date of publication of this fulltext: 15 Mar 2013 07:09
Conference or workshop item
DOI to cite this document: 10.5283/epub.27930
Abstract
It is generally agreed upon the fact that the quality of Identity- and Access Management (IAM) data such as user accounts, access privileges or consistent user representation among different security domains is low. Growing user populations in medium- and large-sized organizations lead to a so called “identity chaos” in which over-privileged employees increase the risk of insider misuse. Recent ...
It is generally agreed upon the fact that the quality of Identity- and Access Management (IAM) data such as user accounts, access privileges or consistent user representation among different security domains is low. Growing user populations in medium- and large-sized organizations lead to a so called “identity chaos” in which over-privileged employees increase the risk of insider misuse. Recent governance and compliance mandates have amplified the importance of minimizing these risks. In order to fulfill these requirements, organizations focus on implementing role-based user management. To set up a role-based access control system, they face the challenge of modeling suitable roles for their employees. In this paper we show how the role modeling process can be improved by utilizing the so called access grid, a visualization technique to incorporate human interaction into the process of role creation.
Involved Institutions
Details
| Item type | Conference or workshop item (Paper) |
| Page Range: | pp. 1051-1065 |
|---|---|
| Date | 2013 |
| Institutions | Business, Economics and Information Systems > Institut für Wirtschaftsinformatik > Lehrstuhl für Wirtschaftsinformatik I - Informationssysteme (Prof. Dr. Günther Pernul) Informatics and Data Science > Department Information Systems > Lehrstuhl für Wirtschaftsinformatik I - Informationssysteme (Prof. Dr. Günther Pernul) |
| Dewey Decimal Classification | 000 Computer science, information & general works > 004 Computer science |
| Status | Published |
| Refereed | Yes, this version has been refereed |
| Created at the University of Regensburg | Yes |
| URN of the UB Regensburg | urn:nbn:de:bvb:355-epub-279301 |
| Item ID | 27930 |
Download Statistics
Download Statistics