Netwrix Survey: 75% of Organizations Strengthen Their Cybersecurity Posture by Conducting Regular Access Reviews
Netwrix, a cybersecurity vendor that makes data security easy, asked 590 IT pros whether and how they review user access permissions. The survey found that 90% of organizations either already periodically review access entitlements or plan to start doing so within 3 years.
However, most respondents (81%) admit that they perform access reviews manually.
Manual review is the most unreliable and time-consuming way of keeping permissions up to date. An email or instant message from some department head confirming access rights usually satisfies neither internal nor external auditors. Moreover, this approach increases the chance of human error — it’s too easy to forget about someone’s answer or miss the email altogether.
Joe Dibley, Security Researcher at Netwrix
Moreover, in 41% of organizations, IT teams review user access rights not only manually but on their own, without involving business users at all.
IT teams generally are not in a position to know exactly who needs what access to which IT resources. As a result, the organization not only does fail to properly enforce least privilege, but the helpdesk is overwhelmed by requests from business users and data owners to update access rights.
Joe Dibley, Security Researcher at Netwrix
The respondents who already have a dedicated tool for reviewing user access rights were then asked what they consider to be the biggest benefit of that solution. 49% of them named risk reduction and 28% chose time-savings.
Automating access reviews reduces cybersecurity risks directly, by ensuring regular update of users’ rights — and indirectly as well: Eliminating manual tasks frees up IT teams to focus on other critical activities, like investigating security incidents before they turn into breaches,” adds Dibley.Learn more about how to govern your data automatically by visiting https://www.netwrix.com/data_access_governance.html
Joe Dibley, Security Researcher at Netwrix
Netwrix champions cybersecurity to ensure a brighter digital future for any organization. Netwrix's innovative solutions safeguard data, identities, and infrastructure reducing both the risk and impact of a breach for more than 13,500 organizations across 100+ countries. Netwrix empowers security professionals to face digital threats with confidence by enabling them to identify and protect sensitive data as well as to detect, respond to, and recover from attacks.
For more information, visit www.netwrix.com.
Your questions and feedback are always welcome. Please dial our toll-free number: 888 - 638 - 9749, or enter your question details here and we will reply as soon as possible.
Erin Jones, Avista PR for Netwrix
Phone: 704 - 664 - 2170