﻿<?xml version="1.0" encoding="utf-8"?>
<rss version="2.0">
  <channel>
    <title>Identity and Access Assessment (IdAA) Resources</title>
    <link>http://cloud-compliance.web5.hubspot.com</link>
    <description>RSS feed for Identity and Access Assessment (IdAA) Resources</description>
    <ttl>60</ttl>
    <item>
      <link>http://docs.google.com/fileview?id=0ByKj0QGxVTJ2MWEyMzAwMGMtYTgwYS00MzEyLWI5OWItOTNjYzI2ZTgzOTQz&amp;hl=en</link>
      <guid>http://docs.google.com/fileview?id=0ByKj0QGxVTJ2MWEyMzAwMGMtYTgwYS00MzEyLWI5OWItOTNjYzI2ZTgzOTQz&amp;hl=en</guid>
      <title>Identity and Access Assessment (IdAA)</title>
      <date>2010-01-03T22:08:04.0770000Z</date>
      <description>This white paper discusses Identity and Access Assessment (IdAA) solutions, which improve the efficacy of access controls and entitlement management systems, and reduce the cost of achieving compliance.  </description>
      <tags>
        <tag>(IdAA)</tag>
        <tag>access control</tag>
        <tag>entitlements</tag>
        <tag>excessive access rights</tag>
        <tag>Identity and Access Assessment</tag>
      </tags>
      <pubDate>Sun, 03 Jan 2010 16:08:04 GMT</pubDate>
    </item>
    <item>
      <link>http://www.amazon.com/Cloud-Security-Privacy-Enterprise-Perspective/dp/0596802765/ref=sr_1_1?ie=UTF8&amp;s=books&amp;qid=1257620387&amp;sr=1-1</link>
      <guid>http://www.amazon.com/Cloud-Security-Privacy-Enterprise-Perspective/dp/0596802765/ref=sr_1_1?ie=UTF8&amp;s=books&amp;qid=1257620387&amp;sr=1-1</guid>
      <title>Cloud Security and Privacy: An Enterprise Perspective on Risks and Compliance</title>
      <date>2009-11-07T19:03:36.0300000Z</date>
      <description>Tim Mather, Subra Kumaraswarmy, and Shahed Latif provide a thoughtful analysis of cloud-related swecurity and privacy issues.</description>
      <tags>
        <tag>compliance</tag>
        <tag>risk management</tag>
        <tag>security</tag>
      </tags>
      <pubDate>Sat, 07 Nov 2009 13:03:36 GMT</pubDate>
    </item>
    <item>
      <link>http://mba.tuck.dartmouth.edu/digital/Research/ResearchProjects/DataFinancial.pdf</link>
      <guid>http://mba.tuck.dartmouth.edu/digital/Research/ResearchProjects/DataFinancial.pdf</guid>
      <title>Field Study Results from Financial Institutions</title>
      <date>2009-10-06T01:10:36.7530000Z</date>
      <description>Excerpt from the study: &amp;quot;The frequent shifting of staff may result in information users collecting system entitlements over time if the system access is not actively managed, resulting in a toxic combination of privileges.&amp;quot;</description>
      <pubDate>Mon, 05 Oct 2009 20:10:36 GMT</pubDate>
    </item>
    <item>
      <link>http://www.gartner.com/DisplayDocument?ref=g_search&amp;id=1158212</link>
      <guid>http://www.gartner.com/DisplayDocument?ref=g_search&amp;id=1158212</guid>
      <title>SIEM and IAM Technology Integration</title>
      <date>2009-10-06T01:08:20.8470000Z</date>
      <description>Gartner states that SIEM + IAM = user activity monitoring, and that user activity monitoring is important for both threat management and compliance management. But isn't there a better way?</description>
      <pubDate>Mon, 05 Oct 2009 20:08:20 GMT</pubDate>
    </item>
    <item>
      <link>http://searchsecurity.techtarget.com/magazineFeature/0,296894,sid14_gci1365957_mem1,00.html</link>
      <guid>http://searchsecurity.techtarget.com/magazineFeature/0,296894,sid14_gci1365957_mem1,00.html</guid>
      <title>Schneier-Ranum Face-Off: Is Perfect Access Control Possible?</title>
      <date>2009-10-06T01:05:24.3100000Z</date>
      <description>Article in which Bruce Schneier, the Chief Security Technology Officer of BT and a highly regarded security guru, states &amp;quot;In the end, a perfect access control system just isn’t possible; organizations are simply too chaotic for it to work.&amp;quot;</description>
      <pubDate>Mon, 05 Oct 2009 20:05:24 GMT</pubDate>
    </item>
    <item>
      <link>http://www.amazon.com/Security-Metrics-Replacing-Uncertainty-Doubt/dp/0321349989</link>
      <guid>http://www.amazon.com/Security-Metrics-Replacing-Uncertainty-Doubt/dp/0321349989</guid>
      <title>Security Metrics: Replacing Fear, Uncertainty, and Doubt (Paperback)</title>
      <date>2009-10-06T01:01:45.4000000Z</date>
      <description>Book by Andrew Jaquith, a Forrester analyst, describes the value of good metric and benchmarks. He states &amp;quot;Today’s information security battleground is all about entitlements—who’s got them, whether they were granted properly, and how to enforce them.&amp;quot;</description>
      <pubDate>Mon, 05 Oct 2009 20:01:45 GMT</pubDate>
    </item>
    <item>
      <link>http://www.rsa.com/solutions/business/insider_risk/wp/10388_219105.pdf</link>
      <guid>http://www.rsa.com/solutions/business/insider_risk/wp/10388_219105.pdf</guid>
      <title>Insider Risk Management: A Framework Approach to Internal Security</title>
      <date>2009-10-06T00:58:08.0830000Z</date>
      <description>Survey of over 400 respondents in the U.S. and Europe reports that out of date and/or excessive privilege and access control rights for users are viewed as having the most financial impact on organizations.</description>
      <pubDate>Mon, 05 Oct 2009 19:58:08 GMT</pubDate>
    </item>
    <item>
      <link>http://www.deloitte.com/dtt/cda/doc/content/dtt_gfsi_GlobalSecuritySurvey_20070901.pdf</link>
      <guid>http://www.deloitte.com/dtt/cda/doc/content/dtt_gfsi_GlobalSecuritySurvey_20070901.pdf</guid>
      <title>Deloitte's 5th Annual Global Security Survey</title>
      <date>2009-10-06T00:54:33.6570000Z</date>
      <description>Global security survey, includes top audit findings for 2007</description>
      <pubDate>Mon, 05 Oct 2009 19:54:33 GMT</pubDate>
    </item>
    <item>
      <link>http://www.deloitte.com/assets/Dcom-Shared%20Assets/Documents/dtt_fsi_GlobalSecuritySurvey_0901.pdf</link>
      <guid>http://www.deloitte.com/assets/Dcom-Shared%20Assets/Documents/dtt_fsi_GlobalSecuritySurvey_0901.pdf</guid>
      <title>Deloitte's 6th Annual Global Security Survey</title>
      <date>2009-10-06T00:53:05.2470000Z</date>
      <description>Global security survey, includes top audit findings for 2008</description>
      <pubDate>Mon, 05 Oct 2009 19:53:05 GMT</pubDate>
    </item>
  </channel>
</rss>