{"id":4427,"date":"2019-06-06T14:26:01","date_gmt":"2019-06-06T18:26:01","guid":{"rendered":"https:\/\/solutionsreview.com\/identity-management\/?p=4427"},"modified":"2019-06-06T14:26:01","modified_gmt":"2019-06-06T18:26:01","slug":"by-the-numbers-the-enterprise-identity-threat-landscape","status":"publish","type":"post","link":"https:\/\/solutionsreview.com\/identity-management\/by-the-numbers-the-enterprise-identity-threat-landscape\/","title":{"rendered":"By the Numbers: The Enterprise Identity Threat Landscape"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-4428\" src=\"https:\/\/solutionsreview.com\/identity-management\/files\/2019\/06\/ransomware-4-mod.jpg\" alt=\"By the Numbers: The Enterprise Identity Threat Landscape\" width=\"800\" height=\"400\" srcset=\"https:\/\/solutionsreview.com\/identity-management\/files\/2019\/06\/ransomware-4-mod.jpg 800w, https:\/\/solutionsreview.com\/identity-management\/files\/2019\/06\/ransomware-4-mod-300x150.jpg 300w, https:\/\/solutionsreview.com\/identity-management\/files\/2019\/06\/ransomware-4-mod-768x384.jpg 768w, https:\/\/solutionsreview.com\/identity-management\/files\/2019\/06\/ransomware-4-mod-540x270.jpg 540w, https:\/\/solutionsreview.com\/identity-management\/files\/2019\/06\/ransomware-4-mod-162x81.jpg 162w, https:\/\/solutionsreview.com\/identity-management\/files\/2019\/06\/ransomware-4-mod-360x180.jpg 360w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">This week, two major players in the enterprise identity and access management released reports detailing the identity threat landscape. Digital identity management solution provider ForgeRock unveiled the U.S. Consumer Data Breach Report 2019, an essential resource for consumer-facing businesses.<\/span><\/p>\n<p style=\"text-align: justify\"><div class=\"widget\"><div class=\"aside-card\">\t\t\t<div class=\"textwidget\"><p><a class=\"iam-inject\" href=\"https:\/\/solutionsreview.com\/identity-management\/get-a-free-privilieged-access-management-solutions-buyers-guide\/\" target=\"_blank\" rel=\"noopener\"><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-1682\" title=\"\" src=\"https:\/\/solutionsreview.com\/identity-management\/files\/2020\/01\/PAM_BG_SB_800.gif\" alt=\"Download Link to Privileged Access Management Buyer's Guide\" width=\"800\" height=\"100\" \/><\/a><\/p>\n<\/div>\n\t\t<\/div><\/div><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Meanwhile, <a href=\"https:\/\/solutionsreview.com\/identity-management\/privileged-access-management-tips-for-the-modern-enterprise\/\" target=\"_blank\" rel=\"noopener noreferrer\">privileged access management<\/a> provider BeyondTrust shared their Privileged Access Threat Report 2019; this details the dangers of insiders, vendors, and privileged users in the identity threat landscape. <\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">What do these two reports teach us about the enterprise identity threat landscape? What do their findings mean for your identity and access management or privileged access management <a href=\"https:\/\/solutionsreview.com\/identity-management\/6-questions-to-improve-your-identity-management-strategy\/\" target=\"_blank\" rel=\"noopener noreferrer\">strategies<\/a>? <\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">We explore both reports below!<\/span><\/p>\n<h3 style=\"text-align: justify\"><b>The BeyondTrust Privileged Access Threat Report 2019<\/b><\/h3>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">You can read the <\/span><a href=\"https:\/\/www.beyondtrust.com\/resources\/whitepapers\/privileged-access-threat-report\" target=\"_blank\" rel=\"noopener noreferrer\"><span style=\"font-weight: 400\">BeyondTrust Privileged Access Threat Report 2019<\/span><\/a><span style=\"font-weight: 400\"> as a primer on <\/span><i><span style=\"font-weight: 400\">how<\/span><\/i><span style=\"font-weight: 400\"> attackers reach your databases and digital assets. Here are some of its key findings: <\/span><\/p>\n<ul style=\"text-align: justify\">\n<li style=\"font-weight: 400\"><b>64%<\/b><span style=\"font-weight: 400\"> of surveyed security decision-makers say they suffered a breach over the past year due to misused or abused employee access. <\/span><\/li>\n<li style=\"font-weight: 400\"><span style=\"font-weight: 400\">Simultaneously, breaches stemming from direct or indirect employee behaviors caused <\/span><b>35%<\/b><span style=\"font-weight: 400\"> of breaches in 2019. This represents a significant increase from last year. <\/span><\/li>\n<li style=\"font-weight: 400\"><b>60%<\/b><span style=\"font-weight: 400\"> of enterprises continue to struggle with employees writing down their passwords. <\/span><\/li>\n<li style=\"font-weight: 400\"><span style=\"font-weight: 400\">Meanwhile, <\/span><b>58% <\/b><span style=\"font-weight: 400\">still deal with employees sharing their credentials and passwords with colleagues.<\/span><\/li>\n<li style=\"font-weight: 400\"><span style=\"font-weight: 400\">Another <\/span><b>58% <\/b><span style=\"font-weight: 400\">believe they deal with breaches stemming from their third-party vendors.<\/span><\/li>\n<li style=\"font-weight: 400\"><b>Over half <\/b><span style=\"font-weight: 400\">of respondents perceive moderate identity risk from BYOD policies or the IoT. \u00a0\u00a0\u00a0\u00a0\u00a0<\/span><\/li>\n<\/ul>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Above all, the BeyondTrust Privileged Access Threat Report 2019 also highlights how security hygiene practices influence the identity threat landscape. Indeed, plenty of enterprises battle against dangerous behaviors such as logging in over an unsecured WiFi channel, staying logged in, and sending files to personal email accounts.<\/span><\/p>\n<h3 style=\"text-align: justify\"><b>ForgeRock U.S. Consumer Data Breach Report 2019 <\/b><\/h3>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Conversely, you can read the<\/span><a href=\"https:\/\/www.forgerock.com\/about-us\/press-releases\/forgerock-us-consumer-data-breach-report-data-breaches-cost-654-billion\" target=\"_blank\" rel=\"noopener noreferrer\"><span style=\"font-weight: 400\"> ForgeRock U.S. Consumer Data Breach Report 2019<\/span><\/a><span style=\"font-weight: 400\"> as a guide on <\/span><i><span style=\"font-weight: 400\">what <\/span><\/i><span style=\"font-weight: 400\">hackers target. Additionally, it serves as a necessary reminder as to the consequences of an identity data breach. Here are its key findings:<\/span><\/p>\n<ul style=\"text-align: justify\">\n<li><span style=\"font-weight: 400\">In 2018, cybercriminals exposed <\/span><b>2.8 billion<\/b><span style=\"font-weight: 400\"> consumer data records.<\/span><\/li>\n<li><span style=\"font-weight: 400\">Altogether, breaches cost U.S. enterprises <\/span><b>$654 billion<\/b><span style=\"font-weight: 400\">. <\/span><\/li>\n<li><span style=\"font-weight: 400\">The U.S. financial sector lost <\/span><b>$6.2 billion<\/b><span style=\"font-weight: 400\"> in Q1 of 2019. In Q1 2018, it only cost <\/span><b>$8 million.<\/b><\/li>\n<li><b>97% <span style=\"font-weight: 400\">of all 2018 breaches targeted personally identifiable information (PII). Dates of Birth and Social Security numbers were the most commonly targeted data sets.<\/span><\/b><\/li>\n<li><span style=\"font-weight: 400\"><strong>34%<\/strong> of all attacks stem from unauthorized access.<\/span><\/li>\n<li><span style=\"font-weight: 400\">Healthcare, Financial Services, and Government are the three most commonly targeted industries for cyber attacks.<\/span><\/li>\n<li><span style=\"font-weight: 400\">In fact, the healthcare industry suffered <\/span><strong>48%<\/strong><span style=\"font-weight: 400\"> of all breaches.<\/span><\/li>\n<li><span style=\"font-weight: 400\">Even though Q1 2019 saw fewer breaches than the year prior, the significance of the breaches increased; the number of records affected by cyber attacks rose <\/span><strong>78,900%<\/strong><span style=\"font-weight: 400\">. <\/span><\/li>\n<\/ul>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Keep in mind, the average data breach costs enterprises of any size close to <strong>$4 million<\/strong>. <\/span><\/p>\n<h2 style=\"text-align: justify\"><b>What the Identity Threat Landscape Means For You<\/b><\/h2>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Obviously, your enterprise needs a next-generation identity and access management solution. That should go without saying, but enterprises continue to struggle with the realities of the identity threat landscape. <\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">In short, manual controls over permissions or privileges should not serve as your identity management strategy. Not only can it lead to dangerous human errors, but it also provides you with no session monitoring or direct control over employee access. Moreover, such a system proves impossible to scale. <\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Additionally, legacy solutions can\u2019t give your enterprise the <a href=\"https:\/\/solutionsreview.com\/identity-management\/4-obstacles-holding-back-your-enterprises-identity-authentication\/\" target=\"_blank\" rel=\"noopener noreferrer\">multifactor authentication<\/a> necessary to alleviate the dangers of passwords. As passwords prove increasingly unreliable, this capability proves equally essential. <\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">The reports by BeyondTrust and ForgeRock show just perils and potential pitfalls of the identity threat landscape. The time has never been better to upgrade your identity and access management solution. <\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Fortunately, you can learn more about IAM and PAM in our 2019 Buyer\u2019s Guide. We detail the key capabilities of the major vendors and provide our Bottom Line for each!<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\"><br \/>Widget not in any sidebars<br \/>\u00a0<\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>This week, two major players in the enterprise identity and access management released reports detailing the identity threat landscape. Digital identity management solution provider ForgeRock unveiled the U.S. Consumer Data Breach Report 2019, an essential resource for consumer-facing businesses. Meanwhile, privileged access management provider BeyondTrust shared their Privileged Access Threat Report 2019; this details the [&hellip;]<\/p>\n","protected":false},"author":41,"featured_media":4428,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[5,1],"tags":[142,125,821,16,112,132,76,145,30,124,91,123,90,25],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v23.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>By the Numbers: The Enterprise Identity Threat Landscape<\/title>\n<meta name=\"description\" content=\"ForgeRock and BeyondTrust both released reports exploring the current perils of the enterprise identity threat landscape. What does this mean for you?\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/solutionsreview.com\/identity-management\/by-the-numbers-the-enterprise-identity-threat-landscape\/\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Ben Canner\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/by-the-numbers-the-enterprise-identity-threat-landscape\/\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/by-the-numbers-the-enterprise-identity-threat-landscape\/\",\"name\":\"By the Numbers: The Enterprise Identity Threat Landscape\",\"isPartOf\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/by-the-numbers-the-enterprise-identity-threat-landscape\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/by-the-numbers-the-enterprise-identity-threat-landscape\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/solutionsreview.com\/identity-management\/files\/2019\/06\/ransomware-4-mod.jpg\",\"datePublished\":\"2019-06-06T18:26:01+00:00\",\"dateModified\":\"2019-06-06T18:26:01+00:00\",\"author\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541\"},\"description\":\"ForgeRock and BeyondTrust both released reports exploring the current perils of the enterprise identity threat landscape. What does this mean for you?\",\"breadcrumb\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/by-the-numbers-the-enterprise-identity-threat-landscape\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/solutionsreview.com\/identity-management\/by-the-numbers-the-enterprise-identity-threat-landscape\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/by-the-numbers-the-enterprise-identity-threat-landscape\/#primaryimage\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/files\/2019\/06\/ransomware-4-mod.jpg\",\"contentUrl\":\"https:\/\/solutionsreview.com\/identity-management\/files\/2019\/06\/ransomware-4-mod.jpg\",\"width\":800,\"height\":400,\"caption\":\"Identity Management and Zero Trust: What Security Means Now\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/by-the-numbers-the-enterprise-identity-threat-landscape\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/solutionsreview.com\/identity-management\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"By the Numbers: The Enterprise Identity Threat Landscape\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#website\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/\",\"name\":\"Best Identity Access Management (IAM) Software, Tools, Vendors, Solutions, &amp; Services\",\"description\":\"Identity Access Management (IAM) News, Best Practices and Buyer&#039;s Guide\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/solutionsreview.com\/identity-management\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541\",\"name\":\"Ben Canner\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g\",\"caption\":\"Ben Canner\"},\"description\":\"Ben Canner is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in English from Clark University in Worcester, MA. He previously worked as a corporate blogger and ghost writer. You can reach him via Twitter and LinkedIn.\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/author\/bcanner\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"By the Numbers: The Enterprise Identity Threat Landscape","description":"ForgeRock and BeyondTrust both released reports exploring the current perils of the enterprise identity threat landscape. What does this mean for you?","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/solutionsreview.com\/identity-management\/by-the-numbers-the-enterprise-identity-threat-landscape\/","twitter_misc":{"Written by":"Ben Canner","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/solutionsreview.com\/identity-management\/by-the-numbers-the-enterprise-identity-threat-landscape\/","url":"https:\/\/solutionsreview.com\/identity-management\/by-the-numbers-the-enterprise-identity-threat-landscape\/","name":"By the Numbers: The Enterprise Identity Threat Landscape","isPartOf":{"@id":"https:\/\/solutionsreview.com\/identity-management\/#website"},"primaryImageOfPage":{"@id":"https:\/\/solutionsreview.com\/identity-management\/by-the-numbers-the-enterprise-identity-threat-landscape\/#primaryimage"},"image":{"@id":"https:\/\/solutionsreview.com\/identity-management\/by-the-numbers-the-enterprise-identity-threat-landscape\/#primaryimage"},"thumbnailUrl":"https:\/\/solutionsreview.com\/identity-management\/files\/2019\/06\/ransomware-4-mod.jpg","datePublished":"2019-06-06T18:26:01+00:00","dateModified":"2019-06-06T18:26:01+00:00","author":{"@id":"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541"},"description":"ForgeRock and BeyondTrust both released reports exploring the current perils of the enterprise identity threat landscape. What does this mean for you?","breadcrumb":{"@id":"https:\/\/solutionsreview.com\/identity-management\/by-the-numbers-the-enterprise-identity-threat-landscape\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/solutionsreview.com\/identity-management\/by-the-numbers-the-enterprise-identity-threat-landscape\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/identity-management\/by-the-numbers-the-enterprise-identity-threat-landscape\/#primaryimage","url":"https:\/\/solutionsreview.com\/identity-management\/files\/2019\/06\/ransomware-4-mod.jpg","contentUrl":"https:\/\/solutionsreview.com\/identity-management\/files\/2019\/06\/ransomware-4-mod.jpg","width":800,"height":400,"caption":"Identity Management and Zero Trust: What Security Means Now"},{"@type":"BreadcrumbList","@id":"https:\/\/solutionsreview.com\/identity-management\/by-the-numbers-the-enterprise-identity-threat-landscape\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/solutionsreview.com\/identity-management\/"},{"@type":"ListItem","position":2,"name":"By the Numbers: The Enterprise Identity Threat Landscape"}]},{"@type":"WebSite","@id":"https:\/\/solutionsreview.com\/identity-management\/#website","url":"https:\/\/solutionsreview.com\/identity-management\/","name":"Best Identity Access Management (IAM) Software, Tools, Vendors, Solutions, &amp; Services","description":"Identity Access Management (IAM) News, Best Practices and Buyer&#039;s Guide","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/solutionsreview.com\/identity-management\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541","name":"Ben Canner","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g","caption":"Ben Canner"},"description":"Ben Canner is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in English from Clark University in Worcester, MA. He previously worked as a corporate blogger and ghost writer. You can reach him via Twitter and LinkedIn.","url":"https:\/\/solutionsreview.com\/identity-management\/author\/bcanner\/"}]}},"_links":{"self":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/posts\/4427"}],"collection":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/users\/41"}],"replies":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/comments?post=4427"}],"version-history":[{"count":0,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/posts\/4427\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/media\/4428"}],"wp:attachment":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/media?parent=4427"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/categories?post=4427"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/tags?post=4427"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}