June 15, 2015 By Nick Oropall 2 min read

With the ongoing focus around security risk and compliance, governance is a hot topic within identity and access management. While identity governance is valuable for securing user access, properly deploying a governance solution can be a tricky endeavor.

In a recent webinar, IBM and KuppingerCole brought together two identity governance gurus to discuss some of the challenges and rewards of identity governance implementations. Mike Small, a fellow analyst at KuppingerCole, opens the webinar up by discussing the governance challenges that the world’s agile connected businesses are facing. Then Andrea Rossi, IBM’s worldwide identity governance sales leader, describes how IBM works to solve those challenges and provide security for all kinds of businesses.

Small begins by defining the new ABC — Agile Businesses Connected. The example he uses is a U.K.-based television company that can now identify viewers of a television show within 60 minutes in order to sell targeted advertising via social media. While this may be just one example, it represents where the marketplace is going. Organizations want to connect with their users in an effort to make faster and more efficient business decisions. But this isn’t easy. Some of the challenges Small sees clients facing revolve around the need to balance benefits, such as the ease of use and accessibility of applications and data, with compliance and risk, need for access, cloud and bring-your-own-device (BYOD) functionality and awareness of cybercrime.

Andrea Rossi follows by taking the audience through some of his customer experiences in the past 10 years, noting how these relate to managing the risk of identity governance. He uses this experience to discuss the four typical starting points for an identity governance project and the lessons he has learned from each one. The three simple pieces of advice he leaves with the audience are: to devote a significant effort to translation, to enlarge your identity governance vision and to talk risk.

Small and Rossi finish off the session by answering questions from the audience that make this David Bowie-themed webinar one that you don’t want to miss.

To get the full experience of the webinar, watch it on demand or listen to the podcast version of the event. There will be more events like this one in the near future. Registration is open for another webinar, titled, “Identity Governance: Not Just for Compliance,” which is taking place June 24.

More from CISO

Overheard at RSA Conference 2024: Top trends cybersecurity experts are talking about

4 min read - At a brunch roundtable, one of the many informal events held during the RSA Conference 2024 (RSAC), the conversation turned to the most popular trends and themes at this year’s events. There was no disagreement in what people presenting sessions or companies on the Expo show floor were talking about: RSAC 2024 is all about artificial intelligence (or as one CISO said, “It’s not RSAC; it’s RSAI”). The chatter around AI shouldn’t have been a surprise to anyone who attended…

Why security orchestration, automation and response (SOAR) is fundamental to a security platform

3 min read - Security teams today are facing increased challenges due to the remote and hybrid workforce expansion in the wake of COVID-19. Teams that were already struggling with too many tools and too much data are finding it even more difficult to collaborate and communicate as employees have moved to a virtual security operations center (SOC) model while addressing an increasing number of threats.  Disconnected teams accelerate the need for an open and connected platform approach to security . Adopting this type of…

The evolution of a CISO: How the role has changed

3 min read - In many organizations, the Chief Information Security Officer (CISO) focuses mainly — and sometimes exclusively — on cybersecurity. However, with today’s sophisticated threats and evolving threat landscape, businesses are shifting many roles’ responsibilities, and expanding the CISO’s role is at the forefront of those changes. According to Gartner, regulatory pressure and attack surface expansion will result in 45% of CISOs’ remits expanding beyond cybersecurity by 2027.With the scope of a CISO’s responsibilities changing so quickly, how will the role adapt…

Topic updates

Get email updates and stay ahead of the latest threats to the security landscape, thought leadership and research.
Subscribe today