Lack of security controls and visibility into user activity continue to put organizations at risk: CyberArk
Digital Edge Bureau 09 Nov, 2021 0 comment(s)Israel-Headquartered CyberArk, a global identity security solution provider, has come out with a report that suggests that that organizations continue to operate with limited visibility into user activity and sessions associated with web applications, despite the ever-present risk of insider threats and credential theft. While the adoption of web applications has brought flexibility and increased productivity, organizations often lag in implementing the security controls necessary to mitigate risk of human error or malicious intent.
The global survey of 900 enterprise security leaders found that 80 percent of organizations experienced employees misusing or abusing access to business applications in the past year. This comes as 48 percent of organizations surveyed said they have limited ability to view user logs and audit user activity, leaving a blind spot for catching potentially risky behavior in user sessions.
According to the research, in 70 percent of organizations, the average end-user has access to more than 10 business applications, many of which contain high-value data – creating ample opportunity for a malicious actor. To that end, the top-three high-value applications that organizations were most concerned with protecting against unauthorized access were IT service management apps such as ServiceNow, cloud consoles such as Amazon Web Services, Azure and Google Cloud Platform and marketing and sales enablement applications such as Salesforce.
Gil Rapaport, General Manager, Access Management, CyberArk, says, “Ensuring security and usability is key. As more high-value data migrates to the cloud, organizations should make certain the proper controls follow suit to manage risk accordingly while enabling their workforce to operate without disruption.” “Today, any user can have a certain level of privileged access, making it ever more important that enterprises add security layers to protect the entire workforce as part of a comprehensive Identity Security strategy and Zero Trust framework”, adds Rapaport.
Consider financial, healthcare, marketing or developer web applications that contain sensitive, high-value data like financial records, customer or patient information or intellectual property. Most security and compliance teams have limited resources, visibility and control over how confidential data is being handled, or what is being done during a user session.
For many security teams, investigation into questionable user activity represents a significant investment of time and drag on thin resources, and must be balanced with other priorities such as improving incident response and enforcing consistent controls across applications to reduce threat of credential theft.
The new research coincides with the general availability of the first-of-its-kind CyberArk Identity Secure Web Sessions, a cloud-based solution that enables organizations to record and protect user web application sessions.
Salient snippets of the CyberArk report
- More than half (54 percent) of organizations investigate user activity stemming from security incidents or compliance at least weekly vs. 34 percent of organizations that investigate monthly.
Over 44 percent of organizations say they need to enable the same security controls across all applications amid disparate built-in application controls.
Some 41 percent of respondents say that better visibility into user activity would enable them to identify the source of a security incident more quickly.