HISTORIC WEAPONS RECALL BRITISH WARS AND BATTLES I... » * Sabre linked to the Indian Mutiny * Chinese cannon captured in Boxer Rebellion * Viking Fighting... How Alpro has transformed BBC's former building at... » Transom door closers, bespoke pull handles and locks from Alpro Architectural Hardware have been ins... ARM launches biggest ever recruitment drive in par... » Havant, Hampshire: ARM (Advanced Resource Managers) has partnered with Raw Talent Academy to hire 12... Defence Driven by Understanding the Attacker’s M... » LONDON, UK: MWR InfoSecurity, has confirmed details of its latest service – Countercept, a complete ... Cheshire West & Chester Council use Becrypt tVol... » London, UK: Becrypt has announced that Cheshire West & Chester Council have chosen tVolution Mini to... Secunia and Blue Cube Security announce new partne... » Secunia has signed a Value Added Reseller agreement with specialist reseller Blue Cube Security. The... Ipswitch Network and Server Performance Monitoring... » Denmark: Ipswitch Inc. has announced that its WhatsUp Gold® network and server performance monitorin... LANDESK and WinMagic partner to provide enterpri... » LONDON: LANDESK has announced it has certified and is now reselling WinMagic's suite of SecureDoc pr... How Muhammadu Buhari is camouflaging as the silent... » In the 21st century Nigeria, naivety still pervades its politics: It is shocking and embarrassing t... Enterprises signing up for more than one new cl... » LONDON: European enterprises are adding new cloud services at a rapid rate, finds a new report from ...

CLICK HERE TO

Advertise with Vigilance

Got News?

Got news for Vigilance?

Have you got news/articles for us? We welcome news stories and articles from security experts, intelligence analysts, industry players, security correspondents in the main stream media and our numerous readers across the globe.

READ MORE

Subscribe to Vigilance Weekly

Information Security Header

London (UK): Varonis, the leading provider of comprehensive data governance software, today detailed how it has helped AXA Wealth identify and control its data permissions. The financial services company has been able to simplify its network sharing system with Varonis DatAdvantage, gaining clear visibility into every file opened, created, modified and deleted by every user accessing its file servers. Using DataPrivilege it has introduced an automated permissions process where its users can request access to a group, and the data owners are automatically involved in the decision to either grant or revoke access without IT intervention.

Speaking about the benefits of the project, Serena Lee, senior security analyst, AXA Wealth, explains: “As soon as we installed DatAdvantage we were able to answer many of the previously elusive questions – a major breakthrough. We now simply check DatAdvantage to see which groups grant access to any given folder, or which folders a group can access, to make the appropriate permissions allocation. By utilising DatAdvantage’s automated recommendations we could identify excessive group memberships and remove users from the groups they no longer needed to be in. It didn’t take long for us to get all our permissions sorted out.”

With a complete, bi-directional view into the permissions structure of its unstructured and semi-structured file systems AXA Wealth’s service desk could immediately answer the question of who had access to any given folder. As it aggregates Active Directory user and group details, ACL information and all data access events — without requiring native OS auditing — AXA Wealth has clear visibility into every file open, create, modify and delete, by every user. Monitoring this intelligence allows AXA Wealth to identify who the correct data owners are, and then get them involved in making sure the right access and usage is assigned.

With DataPrivilege, AXA Wealth has introduced a self-service authorisation process. Like many organisations, the company had a traditional file server where access control lists contain Active Directory security groups. In its case, each security group has an owner, and the owner manages access to that security group to authorise access to the shared directory. Previously, one full-time person spent their day manually collating and circulating lists to the group owners, who then had to review and take people out who did not need access, and add others who did.

Today, using DataPrivilege, the process is fully automated and this time can be spent otherwise. Lee concludes: “Today users can request access to a group, and the data owners are automatically involved in the decision to either grant or revoke access without IT intervention. This not only speeds the process up, but also frees up IT to perform other tasks.