Tech Notes · Security
The new era of access management
Why a locked door and a firewall no longer protect your data, and how identity and access management (IAM) secures a work-from-anywhere team.
September 15, 2023
Securing your business used to mean a good deadbolt on the office door and a password on every computer. Now that your team works from home, stores files in the cloud, and opens applications from any browser, that data has to travel with them, which means the old locks no longer cover it.
Identity is the key
When you hire someone new, you give them access to critical services and data with a username, a password, and a way to verify who they are.
What actually grants access is a combination of keys that only they could have at that moment, a blend of factors that proves their identity.
An identity and access management (IAM) solution is the padlock and firewall for the work-from-anywhere era. IAM first authenticates an identity, then authorizes that identity to reach specific services, and finally integrates with those services to grant the right level of access. No one gets in without meeting a clearly defined set of security requirements.
Improve the user experience
Good IAM integrates with all the technology in your organization: Gmail, Dropbox, laptops, WiFi, Slack, Zoom, Figma, even the lock on the front door of a shared workspace. That creates a single sign-on (SSO) experience and cuts the number of passwords each person has to remember.
IAM also gives you a central, securely managed provider for multi-factor authentication (MFA), plus centrally managed resets when something changes, such as a new iPhone.
It is a key part of a zero-touch setup for new computers, where a laptop ships directly to the user with their login already configured and ready to use out of the box.
Increase security
Centralizing IAM in a secure system with sound policies and strong authentication raises the security level for the whole organization. Enforcing password policies and MFA from one place closes the gaps that appear when access rules are scattered across many separate platforms.
IAM streamlines onboarding by giving new hires a single place to set their credentials. Just as important, it tightens security around terminations: HR can suspend access to every company resource with a single click.
Bottom line
When you hire someone new, do you give them an email account? A laptop? Access to company files in Dropbox? Before you give anyone access to business resources, assets, or information, put IAM in place as a core part of your security program.
Macktez Identity Management
Macktez Identity Management gives you:
- A single user directory managed reliably and safely across systems from one secure service.
- A simpler process for onboarding and offboarding new hires, with those actions logged.
- Capture of authentication events. (Details of user access to specific systems and platforms are centrally logged.)
- Centralized administration and access for integrated external services.
- Multi-factor authentication to key systems and services beyond Office 365 and Google Workspace.
- Control of local Mac or Windows user accounts on every company computer.
For more information, see Macktez Identity Management.