August 22, 2014 By Ravi Srinivasan 2 min read

IBM recently acquired CrossIdeas, adding to the IBM Security Systems division and its existing identity and access management (IAM) portfolio.

Prior to this acquisition, the company had already partnered with IBM in the Ready for IBM Security Intelligence program, and it integrated its identity and access governance solution platform with the IBM Security Identity Manager. CrossIdeas’ identity and access governance capabilities work to help enterprises reduce the risk of insider fraud while addressing regulatory compliance and audit exposures.

Organizations are increasingly relying on ongoing compliance reviews, new audit findings and identity and access governance tools to help determine security risks and govern who should have access to which resources and why.

A comprehensive identity and access governance solution integrated with enterprise IAM helps determine the granularity and integrity of user entitlements so that governance, risk and compliance policy guidelines are met. Granularity is granting access only to those who need it, while integrity ensures no unauthorized access is available from the existing business processes. With key capabilities such as role and entitlement management, identity analytics, context-based access control and ongoing monitoring/reporting in place, organizations are able to protect their business’s critical applications from unauthorized access — and be able to prove it to auditors.

What Analysts Have to Say About the CrossIdeas Acquisition

According to leading industry analysts, CrossIdeas’ solutions offer a business-centric focus on identity governance and analytics. This approach helps minimize the cost and complexity of automating access certification campaigns, auditing granular segregation of duties violations and managing access requests for all enterprise and cloud applications.

In a Forrester Research report, analysts stated that with the acquisition of CrossIdeas, “IBM will add a number of notable IAM capabilities to its product line, including access governance, access request management, role design and management, separation of duties and SAP governance.”

Further, analyst firm Gartner just issued a First Take report on the CrossIdeas acquisition, saying that CrossIdeas brings fine-grained segregation of duties, risk-based role mining, attribute-based access control, IAM-as-a-service readiness and compliance reporting based on the way auditors define policies. These functions, it said, could enable IBM to take a leading role within the identity governance and administration market.

More from CISO

Why security orchestration, automation and response (SOAR) is fundamental to a security platform

3 min read - Security teams today are facing increased challenges due to the remote and hybrid workforce expansion in the wake of COVID-19. Teams that were already struggling with too many tools and too much data are finding it even more difficult to collaborate and communicate as employees have moved to a virtual security operations center (SOC) model while addressing an increasing number of threats.  Disconnected teams accelerate the need for an open and connected platform approach to security . Adopting this type of…

The evolution of a CISO: How the role has changed

3 min read - In many organizations, the Chief Information Security Officer (CISO) focuses mainly — and sometimes exclusively — on cybersecurity. However, with today’s sophisticated threats and evolving threat landscape, businesses are shifting many roles’ responsibilities, and expanding the CISO’s role is at the forefront of those changes. According to Gartner, regulatory pressure and attack surface expansion will result in 45% of CISOs’ remits expanding beyond cybersecurity by 2027.With the scope of a CISO’s responsibilities changing so quickly, how will the role adapt…

X-Force Threat Intelligence Index 2024 reveals stolen credentials as top risk, with AI attacks on the horizon

4 min read - Every year, IBM X-Force analysts assess the data collected across all our security disciplines to create the IBM X-Force Threat Intelligence Index, our annual report that plots changes in the cyber threat landscape to reveal trends and help clients proactively put security measures in place. Among the many noteworthy findings in the 2024 edition of the X-Force report, three major trends stand out that we’re advising security professionals and CISOs to observe: A sharp increase in abuse of valid accounts…

Topic updates

Get email updates and stay ahead of the latest threats to the security landscape, thought leadership and research.
Subscribe today