Avatier Urges IT Leaders to Go Beyond Risk Assessment

Avatier Urges IT Leaders to Go Beyond Risk Assessment

ID: 338594

Critical Remediation Often Dropped Due to Egos

(firmenpresse) - SAN RAMON, CA -- (Marketwired) -- 09/24/14 -- Most corporations regularly go through an IT risk assessment either by choice or government mandate, but when egos get in the way, the most critical portion of the evaluation process is sometimes lost. In his recent blog Ryan Ward, CISO of Avatier, one of the nation's largest identity and access management companies, stresses that IT managers can spend too much time defending unearthed problems rather than leading the way to fix them.

"As soon as security professionals start making excuses for security deficits because of lack of funding, limited support from technical groups or other political issues, they become ineffective as information security leaders," Ward stresses. "Management must understand that every organization faces challenges with these issues, so the focus should not be on blame, but rather on continuous improvement regardless of the current state of security."

The blog points out that an effective IT risk assessment should identify both the positive and negative aspects of a security program rather than only the negative issues. Ward claims that some risk assessments spend the majority of time trying to identify every unique vulnerability and process issue across every tier of the environment. "While this provides a laundry list of things-to-do," he warns, "it is equally important to assess the full information security landscape against business needs and business risks so that a clear roadmap and strategy can be provided to improve. Without this approach, it is not possible to show where IT security processes and technology are excessive; just right; or below par."

Ultimately, assessing the state of information security is just one piece of the puzzle the blog concludes. A remediation plan should be incorporated with every IT Risk Assessment project since there are almost always observations of weaknesses to be addressed. Ideally, some form of security remediation activities should be built into a vendor's Statement of Work and an internal remediation project should be aligned to closely follow an IT risk assessment, Ward adds.





"If a follow-on remediation project is prepared at the onset of the engagement," he concludes, "there will be less reason to block support for remediation, since the commitment will have already been established."



Avatier is the identity management company designed for business users. We automate and unify enterprise operations by standardizing business processes with an IT store. Our IT service catalog creates a single system of record for access requests and IT audit.

Our easily extensible identity management system lowers operational costs and provides corporate governance visibility. Avatier automates workflow and compliance reviews to reduce IT governance risks.

Founded in 1997, Avatier is headquartered in the San Francisco Bay area with offices in Chicago, Dallas, New York, Washington DC, London, Munich, Singapore, Dublin, and Sydney. Our products operate globally for customers like Marriott, DHL, Halliburton, Starbucks and hundreds more. For more information, please visit and follow on Twitter.

Image Available:



Weitere Infos zu dieser Pressemeldung:

Themen in dieser Pressemitteilung:


Unternehmensinformation / Kurzprofil:
drucken  als PDF  an Freund senden  Oracle OpenStack for Oracle Linux Now Generally Available Green Hills Software to Present and Exhibit at ARM TechCon 2014 in Santa Clara, CA
Bereitgestellt von Benutzer: Marketwired
Datum: 24.09.2014 - 12:00 Uhr
Sprache: Deutsch
News-ID 338594
Anzahl Zeichen: 0

contact information:
Town:

SAN RAMON, CA



Kategorie:

Hardware



Diese Pressemitteilung wurde bisher 217 mal aufgerufen.


Die Pressemitteilung mit dem Titel:
"Avatier Urges IT Leaders to Go Beyond Risk Assessment"
steht unter der journalistisch-redaktionellen Verantwortung von

Avatier (Nachricht senden)

Beachten Sie bitte die weiteren Informationen zum Haftungsauschluß (gemäß TMG - TeleMedianGesetz) und dem Datenschutz (gemäß der DSGVO).

Avatier CEO Forecasts Top 2015 Identity Management Trends ...

SAN RAMON, CA -- (Marketwired) -- 01/22/15 -- Avatier Corp., the leader of cutting edge identity management, released predictions by CEO Nelson Cicchitto that will have the most impact in the market. In his blog, "" Cicchitto makes the poi ...

Alle Meldungen von Avatier



 

Werbung



Facebook

Sponsoren

foodir.org The food directory für Deutschland
News zu Snacks finden Sie auf Snackeo.
Informationen für Feinsnacker finden Sie hier.

Firmenverzeichniss

Firmen die firmenpresse für ihre Pressearbeit erfolgreich nutzen
1 2 3 4 5 6 7 8 9 A B C D E F G H I J K L M N O P Q R S T U V W X Y Z