addressing password creep

21
1 © 2010 DigitalPersona, Inc. © 2010 DigitalPersona, Inc. Addressing Password Creep with DigitalPersona Pro Jim Fulton Vice President, DigitalPersona

Upload: digitalpersona

Post on 01-Jun-2015

1.104 views

Category:

Technology


0 download

DESCRIPTION

This slide presentation provides an overview of the challenges of password creep and the solutions to solve these issues.

TRANSCRIPT

Page 1: Addressing Password Creep

1

© 2010 DigitalPersona, Inc.© 2010 DigitalPersona, Inc.

Addressing Password Creep withDigitalPersona ProJim FultonVice President, DigitalPersona

Page 2: Addressing Password Creep

2

© 2010 DigitalPersona, Inc.

Who is DigitalPersona

Best-in-class centrally-managed solutions• Over 95M users worldwide use DigitalPersona technology• Award-winning products

SC Magazine, 5-Star Best Buy, 2008 and 2009 Frost & Sullivan, Global Product Differentiation Innovation, 2007 CRN, Emerging Tech Vendor, 2007 Info Security Product Guide, Best Deployment Scenario, 2006 Microsoft Innovations, 2004

HP partner for Endpoint Protection software• Delivering centrally-managed security

for SMBs and Enterprises

Global company, headquartered in Silicon Valley, USA• Founded in 1997; operations in Americas, EMEA and Asia

Page 3: Addressing Password Creep

3

© 2010 DigitalPersona, Inc.

DigitalPersona – A Leader In Security

Financial Services

Healthcare

Government

EducationEnergy

Retail/POS

OEMs

Page 4: Addressing Password Creep

4

© 2010 DigitalPersona, Inc.

Where is Password Creep Coming From

Password Mandates

Application Enforcement

User Errors/Confusion

• Password policies vary widely by application

• Users getting prompted to manage many more passwords

Page 5: Addressing Password Creep

5

© 2010 DigitalPersona, Inc.

Where is Password Creep Coming From

Password Mandates

Application Enforcement

User Errors/Confusion

• Password policies vary widely by application

Rising Helpdesk Costs + Uncertain Compliance

• Users getting prompted to manage many more passwords

Page 6: Addressing Password Creep

6

© 2010 DigitalPersona, Inc.

This Problem Takes Many Forms

Access ManagementSecure logon and authentication for networks and applications

Secure CommunicationsDigital signature and secure file sharing

Data ProtectionEncryption for computers and data at rest

Page 7: Addressing Password Creep

7

© 2010 DigitalPersona, Inc.

Managing Many Security Systems is Challenging

Full DiskEncryption

SecureVPN

SecureEmail &

Documents

SingleSign-On

(SSO)

Smartcards,Tokens,

Biometrics

Manage ManageManageManage

Manage

Page 8: Addressing Password Creep

8

© 2010 DigitalPersona, Inc.

Managing Many Security Systems is Challenging

Full DiskEncryption

SecureVPN

SecureEmail &

Documents

SingleSign-On

(SSO)

Smartcards,Tokens,

Biometrics

Different products don’t fit together• Expensive, redundant

• Complex for IT & users

Manage ManageManageManage

Manage

Page 9: Addressing Password Creep

9

© 2010 DigitalPersona, Inc.

Central Management is the Solution

Businesses can nowcentrally managesecurity policies through

DigitalPersona Pro

All-in-one Endpoint ProtectionStrong | Easy to Manage | Affordable

ControlAccess

Secure Communications

ProtectData

Manage

Page 10: Addressing Password Creep

10

© 2010 DigitalPersona, Inc.

Solutions Powered by DigitalPersona Pro

Data ProtectionEncrypt customer data and IP

Remote Access SecurityMulti-factor VPN authentication

Strong AuthenticationKnow who did what, where

Secure CommunicationsDigital signature and encryptionfor email and shared files

Access RecoveryRecover access to locked computers

ComplianceImplement strong controls

Single Sign-OnEliminate password burdens/costs

Fast accessImprove productivity for shared PCs

Page 11: Addressing Password Creep

11

© 2010 DigitalPersona, Inc.

Example: Addressing CJIS for Government Agencies

CJIS requires advanced authentication• Passwords must be at least 8 characters• 2-Factor Authentication

CJIS mandates data encryption

Page 12: Addressing Password Creep

12

© 2010 DigitalPersona, Inc.

Example: Addressing CJIS for Government Agencies

DigitalPersona Pro simplifies strong passwords• Eliminate password reset burdens on helpdesk – fast ROI• Prevent sharing of passwords, social engineering attacks

Enables strong authentication• Fingerprints, smart cards, face• Windows, Web, Citrix, VPNs, legacy apps

Enables disk and file encryption

my$trongP@ssw0rd!

CJIS requires advanced authentication• Passwords must be at least 8 characters• 2-Factor Authentication

CJIS mandates data encryption

Page 13: Addressing Password Creep

13

© 2010 DigitalPersona, Inc.

How Strong Passwords Are Made Simple

Page 14: Addressing Password Creep

14

© 2010 DigitalPersona, Inc.

DigitalPersona Pro Gives IT Control Over Authentication

Page 15: Addressing Password Creep

15

© 2010 DigitalPersona, Inc.

DigitalPersona Pro Enters Passwords for the User

myusername

********

Page 16: Addressing Password Creep

16

© 2010 DigitalPersona, Inc.

Strong Security Becomes Simple

myusername

********And the user is logged in!

Page 17: Addressing Password Creep

17

© 2010 DigitalPersona, Inc.

Example: Preventing Disasters

Forgotten passwords

Lost smartcards

Damaged hardware

What do you do when users run into problems?

COMPANYNET\Bob_Smith

Page 18: Addressing Password Creep

18

© 2010 DigitalPersona, Inc.

DigitalPersona Pro Access Recovery

Administrators can give users an unlock code – even when users are on the road

Page 19: Addressing Password Creep

19

© 2010 DigitalPersona, Inc.

DigitalPersona Pro Access Recovery

Administrators can give users an unlock code – even when users are on the road

Prevent Lockouts

COMPANYNET\Bob_Smith

Page 20: Addressing Password Creep

20

© 2010 DigitalPersona, Inc.

Efficiency – streamline processes, save money• Reduce costs/downtime from forgotten passwords or damaged PCs

Compliance – know who does what• Implement controls to show “due care,” boost accountability• Show compliance with comprehensive audit logs

Security – make strong protection easy• Simplify strong authentication for multiple applications• Encrypt data without fear of data loss

DigitalPersona Pro

Manageability – keep control across all PCs• Enforce policies and recover from problems – from one console

Page 21: Addressing Password Creep

21

© 2010 DigitalPersona, Inc.

Efficiency – streamline processes, save money• Reduce costs/downtime from forgotten passwords or damaged PCs

Compliance – know who does what• Implement controls to show “due care,” boost accountability• Show compliance with comprehensive audit logs

Security – make strong protection easy• Simplify strong authentication for multiple applications• Encrypt data without fear of data loss

www.digitalpersona.com/enterprise

Manageability – keep control across all PCs• Enforce policies and recover from problems – from one console

Q & A