Find White Papers
Home About Contact Help
Free Membership Member Login
Search the Library                  Advanced Search

Using Likewise Enterprise to Boost Compliance with Sarbanes-Oxley

Likewise Software
By : Likewise Software
INFORMATION
Published : Mar 04, 2008
Length : 19
Type : White Paper
 
Download Now
Save for Later
  Email This Page
Overview :
This paper begins by exploring why SOX compliance continues to be so difficult when it is treated as an annual project rather than a continuous process. Then the paper discusses how Likewise Enterprise can help your company make the shift to continuous compliance for identity and access management in a mixed network.

Likewise joins Linux, Unix, and Mac OS X computers to Active Directory, providing the basis to assign each user a unique ID for authentication, authorization, and monitoring. Likewise also includes group policies for non-Windows computers so that you can centrally manage their security settings in the same way as Windows computers.
View All Items By This Company
Browse Related Categories :

Compliance

,

Security

 
You’ve been through it more than once by now: The yearly timeconsuming scramble to get all your IT systems into orderly compliance with the internal control requirements of Sarbanes-Oxley, or SOX. Access and identity management issues arise because your company uses not only Microsoft platforms but also Unix, Linux, and Mac to achieve best-of-breed IT infrastructure. You struggle to demonstrate internal controls in an environment where individuals can have multiple user names and passwords, and where user identities reside in more than one directory. Every time a user joins or leaves your company, you have to update each of these identity management systems separately — a time-consuming process that can leave security holes. The complexity of these identity management systems and their lack of central management increases the likelihood that something will go wrong. A user account with access to protected data, for example, might not get deprovisioned from one of the systems when the user leaves the company — which increases exposure to risk and might result in noncompliance. In addition, authorization mechanisms for your Unix, Linux, Mac, and Windows systems are completely separate, and your solutions for LDAP authentication seem to raise new questions all the time. Even after you’ve made it through the compliance gauntlet — audits, deficiencies, remediation, workarounds — there is little satisfaction. The day after compliance is achieved, that’s the day that non-compliance begins to creep back in — and soon thereafter the compliance scramble begins all over again.
Search the Library                  Advanced Search
About Us Contact Us List Your Papers Partner With Us Site Map