Sila and Ponemon Institute Study Finds Rampant Lapses in Securing Access to Sensitive Information
Sila Solutions Group, a North American technology and management consulting firm, in partnership with the Ponemon Institute (News - Alert), a leading research organization on data protection and emerging information technologies, today released the results of The 2019 Study on Privileged Access Security. The primary takeaway from this study is that insufficient privileged access management (PAM) practices continue to be a critical challenge for many organizations despite significant risks of data breaches and security incidents. According to more than 650 North American respondents, 70 percent think it likely that privileged users within their organizations are accessing sensitive or confidential data for no discernible business need and more than half expect privilege user abuse to increase in next 12-24 months.
Interestingly, the primary reason users have unnecessary access to sensitive resources is that all users at their level are given privileged access, even if it is not required to perform their job assignment. According to respondents, privileged access rights also regularly remain active even after a role change (30 percent). 62 percent of participants felt it likely that their organization assigns privileged access rights that go beyond an individual's role or responsibilities. This proliferation of access is emphasized with more than 75 percent of respondents having privileged access to three or more IT resources.
According to study participants, the biggest challenges organizations face in granting and enforcing privileged user access rights are:
"The results of The 2019 Study on Privileged Access Security shed light on the fact that privileged access is more prevalent than people may realize. It touches every part of an organization and has far-reaching implications for an organization's business objectives as well as its security," said Tapan Shah, managing director at Sila. "Leaders need to step back and ask why individuals have the access they do, and how that aligns with the mission of their business - unnecessary privileged access puts data, employees, customers, and the overall business at risk."
Additional key findings from the report state:
"With organizations facing a multitude of threats on a daily basis and as the risks related to PAM continue getting worse, this year's survey shows that overall progress toward effective PAM implementation continues to stagnate in many areas," said Dr. Larry Ponemon of the Ponemon Institute. "The status quo is not secure. Business and IT leaders need to look beyond simple tool integration and a 'check the box' mentality solely driven by compliance demands. Organizations take a big risk by not properly investing in effective PAM strategies that not only promote security, but propel business success."
Sila is a technology and management consulting firm that provides substantial solutions in the areas of identity and access management, data analytics, cybersecurity and risk, software engineering and integration, strategy and transformation, and digital and creative services. Our clients include Fortune 500 companies and Federal government agencies.
Sila is headquartered in Arlington, VA, with offices in Seattle, WA; Shelton, CT; and Chicago, IL. For more information visit?www.silasg.com.
Follow Sila at: