Direkt zum Inhalt

Kunz, Michael ; Puchta, Alexander ; Groll, Sebastian ; Fuchs, Ludwig ; Pernul, Günther

Attribute Quality Management for Dynamic Identity and Access Management

Kunz, Michael, Puchta, Alexander , Groll, Sebastian , Fuchs, Ludwig and Pernul, Günther (2019) Attribute Quality Management for Dynamic Identity and Access Management. Elsevier Journal of Information Security and Applications 44, pp. 64-79.

Date of publication of this fulltext: 12 Dec 2018 12:14
Article
DOI to cite this document: 10.5283/epub.38092

This is the latest version of this item.


Abstract

Identity and access management (IAM) has become one main challenge for companies over the last decade. Most of the medium-sized and large organizations operate standardized IAM infrastructures in order to comply with regulations and improve the level of IAM automation. A recent trend is the application of attribute-based access control (ABAC) for automatically assigning permissions to employees. ...

Identity and access management (IAM) has become one main challenge for companies over the last decade. Most of the medium-sized and large organizations operate standardized IAM infrastructures in order to comply with regulations and improve the level of IAM automation. A recent trend is the application of attribute-based access control (ABAC) for automatically assigning permissions to employees. The success of ABAC, however, heavily relies on the availability of high-quality attribute definitions and values. Up to now, no structured attribute quality management approach for IAM environments exists. Within this paper, we propose TAQM, a comprehensive approach building on a tool-supported structured process for measuring and improvement of IAM data quality. During the evaluation of three real-life use cases within large industrial companies we underline the applicability of TAQM for the identification and cleansing of attribute errors by IT and non-IT experts as well as the general introduction of quality management processes for IAM.



Involved Institutions


Details

Item typeArticle
Journal or Publication TitleElsevier Journal of Information Security and Applications
Publisher:Elsevier
Volume:44
Page Range:pp. 64-79
DateFebruary 2019
InstitutionsBusiness, Economics and Information Systems > Institut für Wirtschaftsinformatik > Lehrstuhl für Wirtschaftsinformatik I - Informationssysteme (Prof. Dr. Günther Pernul)
Informatics and Data Science > Department Information Systems > Lehrstuhl für Wirtschaftsinformatik I - Informationssysteme (Prof. Dr. Günther Pernul)
Identification Number
ValueType
10.1016/j.jisa.2018.11.004DOI
KeywordsIdentity management Identity and access management Access management Attribute quality Quality management Attribute-based access control ABAC
Dewey Decimal Classification000 Computer science, information & general works > 004 Computer science
300 Social sciences > 330 Economics
StatusPublished
RefereedYes, this version has been refereed
Created at the University of RegensburgYes
URN of the UB Regensburgurn:nbn:de:bvb:355-epub-380929
Item ID38092

Export bibliographical data

Owner only: item control page

nach oben