Internal Access Controls.

The article looks at computer and data security, offering recommendations for effective practices to prevent or limit the damage caused by cyber attacks. The author emphasizes the importance of strong internal access controls, also known as defense in depth, particularly in the context of the widesp...

Descripción completa

Detalles Bibliográficos
Publicado en:Communications of the ACM Vol. 58; no. 1; pp. 62 - 66
Autor principal: SAMPEMANE, GEETANJALI
Formato: Artículo
Publicado: Association for Computing Machinery Jan2015
Materias:
Acceso en línea:Ver este registro en EBSCOhost
Descripción
Sumario:The article looks at computer and data security, offering recommendations for effective practices to prevent or limit the damage caused by cyber attacks. The author emphasizes the importance of strong internal access controls, also known as defense in depth, particularly in the context of the widespread use of personal devices in the workplace that can offer avenues for attacks on enterprise systems. Topics include determining the appropriate level of granularity in internal data access systems, routinely re-evaluating access configurations, and auditing of access logs.