AegisUSA is entering its 6th year of business and recently implemented its 50th instance of Sun Identity Manager. Over those 50 implementations of the Sun Identity Manager product, Aegis continues to develop unique products that allow for low cost, rapid deployments capable of solving many common identity problems inadequately addressed by out of the box software. This is no different with AegisUSA’s latest product “AegisUSA Privileged Access Management”, which greatly enhances the Sun IDM software.
One key issue that is often overlooked in complex identity implementations is Privileged Access Management. You have an expensive and robust new identity system that handles everything you could have possibly thought of except one thing…. auditing and security for the users who implemented the system in the first place. Users like database/directory admins and IDM admins who essentially have “the keys to the kingdom” can login using these accounts leaving no trace of the physical identity behind the virtual super user. Essentially, the most powerful accounts with the greatest potential for damage are in no way controlled or audited by your IdM implementation. Wouldn’t it be helpful to have the capability to audit who has access to these accounts and furthermore, limit access to these accounts using the Identity Management System that was set up to prevent auditing nightmares like this in the first place?
There are many products out there today, which do some pretty amazing things when it comes to Privileged Access Management. What we have noticed, however, is that after spending large sums of money on an Identity Management System, organizations are somewhere between hesitant, frustrated, and downright angry having to dig back into their pockets to handle the security issues they thought they were addressing with the first purchase.
This is where AegisUSA’s Privileged Access Management Product fits into our client’s environment. Rather than addressing privileged access management as separate problem and solution, AegisUSA has used its expertise and real-world implementation requirements to develop a PAM solution as an add-on for Sun Identity Manager. This approach allows customers to add critical identity functionality to their environment while using their existing skill sets and software licenses. Some of the key features of the AegisUSA PAM product include:
- Identity-based access to privileged accounts allowing for all actions to be traced back to a physical identity
- Role based access control providing limited accessibility to the privileged request process
- Customizable approval before access is granted
- Auditing of all access beginning and end dates as well as request history
All requests for access and approvals are made through the familiar Sun IdM interface. After receiving approval for access, the privileged accounts password is changed and the password is made available to the requestor. No one else is able to log in with this account until the requestor’s access time expires or the requestor relinquishes control. The PAM solution is designed to be configured and in production in less than 5 days.
The PAM product represents another tool in AegisUSA’s toolbox to help provide affordable and quality Identity Management solutions without the long timelines and extraordinary costs that are generally associated with Identity projects. More details available on the product page: http://www.aegisusa.com/identity_management_solutions/pam/index.php
Please contact info@aegisusa.net for more information.
