{"id":2152,"date":"2017-12-22T12:10:05","date_gmt":"2017-12-22T16:10:05","guid":{"rendered":"https:\/\/solutionsreview.com\/identity-management\/?p=2152"},"modified":"2017-12-22T12:10:05","modified_gmt":"2017-12-22T16:10:05","slug":"abridged-identity-access-management-iam-glossary","status":"publish","type":"post","link":"https:\/\/solutionsreview.com\/identity-management\/abridged-identity-access-management-iam-glossary\/","title":{"rendered":"The Abridged Identity and Access Management (IAM) Glossary"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"alignnone size-full wp-image-1540\" src=\"https:\/\/solutionsreview.com\/identity-management\/files\/2017\/01\/password-wall.jpg\" alt=\"\" width=\"800\" height=\"350\" srcset=\"https:\/\/solutionsreview.com\/identity-management\/files\/2017\/01\/password-wall.jpg 800w, https:\/\/solutionsreview.com\/identity-management\/files\/2017\/01\/password-wall-300x131.jpg 300w, https:\/\/solutionsreview.com\/identity-management\/files\/2017\/01\/password-wall-768x336.jpg 768w, https:\/\/solutionsreview.com\/identity-management\/files\/2017\/01\/password-wall-600x263.jpg 600w, https:\/\/solutionsreview.com\/identity-management\/files\/2017\/01\/password-wall-180x79.jpg 180w, https:\/\/solutionsreview.com\/identity-management\/files\/2017\/01\/password-wall-400x175.jpg 400w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">As a field within cybersecurity, Identity Management is undergoing rapid expansion as the importance of securing credentials becomes increasingly evident. Insider threats\u2014or the fear of them\u2014continue to plague enterprises across the globe. An estimated 80% of breaches involve stolen user credentials.<\/span><\/p>\n<p style=\"text-align: justify\"><br \/>Widget not in any sidebars<br \/><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">To deal with these dangers, new subcategories and tools within Identity Management seem to sprout up by the day with a flood of jargon to match. Cutting through all the jargon to determine what solution would meet your needs or which tools you need the most can be a daunting task. <\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">We\u2019ve gathered and outlined the more confusing Identity and Access Management jargon to help you process your needs more effectively. We\u2019ll make sure to update this post as we curate more jargon definitions, but in the meantime here are the terms you most need to know as you think about your Identity Management solution in 2018:<\/span><\/p>\n<p style=\"text-align: justify\"><b>Identity and Access Management (IAM)<\/b><span style=\"font-weight: 400\">\u2014IAM is a framework for managing the digital identities of users, including the organization and support necessary. With an IAM solution, IT managers can control what network data users can access, based on their roles within the enterprise. In addition, IAM allows visibility into user activities within their identities. \u00a0<\/span><b>\u00a0<\/b><\/p>\n<p style=\"text-align: justify\"><b>Access Management (AM)<\/b><span style=\"font-weight: 400\">\u2014Access Management focusing on the granting or denying of authorization to use a service. While IAM is focused on the user and their attributes, AM is about the application of authorization policies to the user or role. Additionally, AM tends to be more absolute in its judgments\u2014YES\/NO\u2014whereas IAM can be more granular in its permissions to certain users based on what data is essential to their role. <\/span><\/p>\n<p style=\"text-align: justify\"><b>Identity Governance and Administration (IGA)<\/b><span style=\"font-weight: 400\">\u2014IGA is the policy-based centralized control of IAM, with the goal of not only bolstering security but also to ensure regulatory compliance. IGA can enforce, review, and audit IAM policies and activities but also record it. This has the added benefit of ensuring consistency in IAM policies via what roles have access to what data. \u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><b>Privileged Identity Management, Privileged Access Management, Privileged Identity Access Management (PIM, PAM, PIAM, respectively)<\/b><span style=\"font-weight: 400\">\u2014Many names for what is essentially the same goal the monitoring and protection of privileged users (sometimes called superusers) accounts in an IT environment. This kind of management is vital because such powerful accounts can wreck an equivalent amount of damage via leaks or disruptions if their credentials fall into the wrong hands. <\/span><\/p>\n<p style=\"text-align: justify\"><b>Identity-as-a-Service (IDaaS)<\/b><span style=\"font-weight: 400\">\u2014Defined by Gartner as the delivery of IAM solutions as a service via the cloud in a multitenant or dedicated model. \u00a0IDaaS solutions deliver core identity governance, access, and intelligence capabilities to customers systems, both on-premise and in the cloud. The service can simplify IAM application deployment and usage. \u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><b>Biometrics<\/b><span style=\"font-weight: 400\">\u2014Short for biometric authentication, this tool uses distinct physiological characteristics as an authentication method. These characteristics might include fingerprints, faces, or irises, which are processed via recognition software. This is a developing field but one that is receiving increasing attention from the public as the the field transitions away from the traditional username\/password paradigm. <\/span><\/p>\n<p style=\"text-align: justify\"><b>Authentication<\/b><span style=\"font-weight: 400\">\u2014The process of verifying an individual as a legitimate user\/actor in an enterprises\u2019 network. Passwords are the most well-known authentication method. \u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><b>2-Factor Authentication<\/b><span style=\"font-weight: 400\">\u2014An evolution on typical authentication methods, 2-factor authentication involves the user providing two pieces of verifying information to confirm their identity before they are granted access. Often, this involves supplying something the user knows, such as a password or PIN and something the user possesses, such as a security token or a card. <\/span><\/p>\n<p style=\"text-align: justify\"><b>Multifactor Authentication<\/b><span style=\"font-weight: 400\">\u2014An even further step in authentication maturity, multifactor authentication requires multiple pieces of information from the user before they are granted access. This information can include passwords and an ownership factor like a security token but also geofencing (ensuring the user is logging in from the location they should be rather than a distant country), bluetooth device proximity (in which a device registered to the user is close to the endpoint the login occurs on), and swipelocks (a password variation where the password is a movement on the mobile device screen). <\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Multifactor authentication can be programmed so that it requires more verifying information only if an identity is in doubt or is trying to access more sensitive information. <\/span><\/p>\n<p style=\"text-align: justify\"><b>Single Sign-On (SSO)<\/b><span style=\"font-weight: 400\">\u2014An access management tool that helps manage multiple interrelated software or applications. When a user is granted access via single sign-on, they are granted access to an interconnected series of the enterprise\u2019s software and apps. This reduces the need for multiple passwords and usernames, which in turn reduces password fatigue and losses.<\/span><\/p>\n<p style=\"text-align: justify\"><b>Federated Identity Management (FIM)<\/b><span style=\"font-weight: 400\">\u2014An identity management solution in which multiple enterprises, whether distinct or under an umbrella company, allows users to use SSO to access all of their networks. This saves mutual costs and simplifies information sharing, but requires trust among the enterprises to work. <\/span><\/p>\n<p style=\"text-align: justify\"><b>Insider Threat<\/b><span style=\"font-weight: 400\">\u2014A security risk that stems not from an external hacker but from an employee (whether current or previous) within the enterprise. These employees may have access or may fraudulently obtain access to sensitive data or resources, which they could leak or exploit. IAM solutions are designed in part to prevent such threats. \u00a0\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">While most companies fear the malicious threats by deliberate actors seeking to damage the enterprise, many more insider threats come from employee negligence or ignorance. These insider threats may result from sharing their credentials via unsecured email or fall victim to a spearphising campaign. Importantly, accidental insider threats are no less dangerous than malicious ones. <\/span><\/p>\n<p style=\"text-align: justify\"><br \/>Widget not in any sidebars<br \/><\/p>\n","protected":false},"excerpt":{"rendered":"<p>As a field within cybersecurity, Identity Management is undergoing rapid expansion as the importance of securing credentials becomes increasingly evident. Insider threats\u2014or the fear of them\u2014continue to plague enterprises across the globe. An estimated 80% of breaches involve stolen user credentials. To deal with these dangers, new subcategories and tools within Identity Management seem to [&hellip;]<\/p>\n","protected":false},"author":41,"featured_media":1540,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[1],"tags":[62,76,188,70,18,145,127],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v23.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>The Abridged Identity and Access Management (IAM) Glossary<\/title>\n<meta name=\"description\" content=\"We\u2019ve gathered and outlined the more confusing Identity and Access Management jargon to help you process your needs more effectively.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/solutionsreview.com\/identity-management\/abridged-identity-access-management-iam-glossary\/\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Ben Canner\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"5 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/abridged-identity-access-management-iam-glossary\/\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/abridged-identity-access-management-iam-glossary\/\",\"name\":\"The Abridged Identity and Access Management (IAM) Glossary\",\"isPartOf\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/abridged-identity-access-management-iam-glossary\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/abridged-identity-access-management-iam-glossary\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/solutionsreview.com\/identity-management\/files\/2017\/01\/password-wall.jpg\",\"datePublished\":\"2017-12-22T16:10:05+00:00\",\"dateModified\":\"2017-12-22T16:10:05+00:00\",\"author\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541\"},\"description\":\"We\u2019ve gathered and outlined the more confusing Identity and Access Management jargon to help you process your needs more effectively.\",\"breadcrumb\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/abridged-identity-access-management-iam-glossary\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/solutionsreview.com\/identity-management\/abridged-identity-access-management-iam-glossary\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/abridged-identity-access-management-iam-glossary\/#primaryimage\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/files\/2017\/01\/password-wall.jpg\",\"contentUrl\":\"https:\/\/solutionsreview.com\/identity-management\/files\/2017\/01\/password-wall.jpg\",\"width\":800,\"height\":350,\"caption\":\"Expert Password Best Practices for World Password Day 2021\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/abridged-identity-access-management-iam-glossary\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/solutionsreview.com\/identity-management\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"The Abridged Identity and Access Management (IAM) Glossary\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#website\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/\",\"name\":\"Identity and Access Management Solutions | Solutions Review\",\"description\":\"Evaluating Enterprise IAM Software, Identity Governance &amp; Access Control Tools.\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/solutionsreview.com\/identity-management\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541\",\"name\":\"Ben Canner\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g\",\"caption\":\"Ben Canner\"},\"description\":\"Ben Canner is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in English from Clark University in Worcester, MA. He previously worked as a corporate blogger and ghost writer. You can reach him via Twitter and LinkedIn.\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/author\/bcanner\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"The Abridged Identity and Access Management (IAM) Glossary","description":"We\u2019ve gathered and outlined the more confusing Identity and Access Management jargon to help you process your needs more effectively.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/solutionsreview.com\/identity-management\/abridged-identity-access-management-iam-glossary\/","twitter_misc":{"Written by":"Ben Canner","Est. reading time":"5 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/solutionsreview.com\/identity-management\/abridged-identity-access-management-iam-glossary\/","url":"https:\/\/solutionsreview.com\/identity-management\/abridged-identity-access-management-iam-glossary\/","name":"The Abridged Identity and Access Management (IAM) Glossary","isPartOf":{"@id":"https:\/\/solutionsreview.com\/identity-management\/#website"},"primaryImageOfPage":{"@id":"https:\/\/solutionsreview.com\/identity-management\/abridged-identity-access-management-iam-glossary\/#primaryimage"},"image":{"@id":"https:\/\/solutionsreview.com\/identity-management\/abridged-identity-access-management-iam-glossary\/#primaryimage"},"thumbnailUrl":"https:\/\/solutionsreview.com\/identity-management\/files\/2017\/01\/password-wall.jpg","datePublished":"2017-12-22T16:10:05+00:00","dateModified":"2017-12-22T16:10:05+00:00","author":{"@id":"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541"},"description":"We\u2019ve gathered and outlined the more confusing Identity and Access Management jargon to help you process your needs more effectively.","breadcrumb":{"@id":"https:\/\/solutionsreview.com\/identity-management\/abridged-identity-access-management-iam-glossary\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/solutionsreview.com\/identity-management\/abridged-identity-access-management-iam-glossary\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/identity-management\/abridged-identity-access-management-iam-glossary\/#primaryimage","url":"https:\/\/solutionsreview.com\/identity-management\/files\/2017\/01\/password-wall.jpg","contentUrl":"https:\/\/solutionsreview.com\/identity-management\/files\/2017\/01\/password-wall.jpg","width":800,"height":350,"caption":"Expert Password Best Practices for World Password Day 2021"},{"@type":"BreadcrumbList","@id":"https:\/\/solutionsreview.com\/identity-management\/abridged-identity-access-management-iam-glossary\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/solutionsreview.com\/identity-management\/"},{"@type":"ListItem","position":2,"name":"The Abridged Identity and Access Management (IAM) Glossary"}]},{"@type":"WebSite","@id":"https:\/\/solutionsreview.com\/identity-management\/#website","url":"https:\/\/solutionsreview.com\/identity-management\/","name":"Identity and Access Management Solutions | Solutions Review","description":"Evaluating Enterprise IAM Software, Identity Governance &amp; Access Control Tools.","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/solutionsreview.com\/identity-management\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541","name":"Ben Canner","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g","caption":"Ben Canner"},"description":"Ben Canner is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in English from Clark University in Worcester, MA. He previously worked as a corporate blogger and ghost writer. You can reach him via Twitter and LinkedIn.","url":"https:\/\/solutionsreview.com\/identity-management\/author\/bcanner\/"}]}},"_links":{"self":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/posts\/2152"}],"collection":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/users\/41"}],"replies":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/comments?post=2152"}],"version-history":[{"count":0,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/posts\/2152\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/media\/1540"}],"wp:attachment":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/media?parent=2152"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/categories?post=2152"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/tags?post=2152"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}