{"id":4941,"date":"2020-06-02T16:24:06","date_gmt":"2020-06-02T20:24:06","guid":{"rendered":"https:\/\/solutionsreview.com\/identity-management\/?p=4941"},"modified":"2020-06-02T16:24:06","modified_gmt":"2020-06-02T20:24:06","slug":"what-can-authentication-and-continuous-authentication-protect-against","status":"publish","type":"post","link":"https:\/\/solutionsreview.com\/identity-management\/what-can-authentication-and-continuous-authentication-protect-against\/","title":{"rendered":"What Can Authentication and Continuous Authentication Protect Against?"},"content":{"rendered":"<p><img loading=\"lazy\" decoding=\"async\" class=\"alignleft size-full wp-image-3375\" src=\"https:\/\/solutionsreview.com\/identity-management\/files\/2018\/07\/privileged-access-management-MOD.jpg\" alt=\"What Can Authentication and Continuous Authentication Protect Against?\" width=\"800\" height=\"425\" srcset=\"https:\/\/solutionsreview.com\/identity-management\/files\/2018\/07\/privileged-access-management-MOD.jpg 800w, https:\/\/solutionsreview.com\/identity-management\/files\/2018\/07\/privileged-access-management-MOD-300x159.jpg 300w, https:\/\/solutionsreview.com\/identity-management\/files\/2018\/07\/privileged-access-management-MOD-768x408.jpg 768w, https:\/\/solutionsreview.com\/identity-management\/files\/2018\/07\/privileged-access-management-MOD-545x290.jpg 545w, https:\/\/solutionsreview.com\/identity-management\/files\/2018\/07\/privileged-access-management-MOD-508x270.jpg 508w, https:\/\/solutionsreview.com\/identity-management\/files\/2018\/07\/privileged-access-management-MOD-152x81.jpg 152w, https:\/\/solutionsreview.com\/identity-management\/files\/2018\/07\/privileged-access-management-MOD-339x180.jpg 339w\" sizes=\"(max-width: 800px) 100vw, 800px\" \/><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">So what can your authentication and continuous authentication policies protect against in the modern age? What kinds of threats loom the largest in the <a href=\"https:\/\/solutionsreview.com\/identity-management\/\" target=\"_blank\" rel=\"noopener noreferrer\">identity security<\/a> threat landscape that authentication and continuous authentication mitigate?\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">In this context, authentication refers to the process of logging in, whether that involves passwords, biometrics, hard tokens, or SMS messaging. Meanwhile, continuous authentication involves capabilities such as behavioral biometrics; these features trigger after the initial login and continually monitor the activities of the users. If the users stop acting according to behavioral baselines, then that could trigger an alert and subsequent incident response.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Another version of continuous authentication involves step-up authentication; this triggers after the initial login when the user attempts to access a more sensitive database or resource. Every level of sensitivity of data corresponds to a level of sensitivity of authentication factors required.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">You need both to defend against the latest threats. What exactly <\/span><i><span style=\"font-weight: 400\">are<\/span><\/i><span style=\"font-weight: 400\"> those threats?\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><b><br \/>Widget not in any sidebars<br \/><\/b><\/p>\n<h2 style=\"text-align: justify\"><b>What Can Authentication and Continuous Authentication Protect Against?\u00a0<\/b><\/h2>\n<h3 style=\"text-align: justify\"><b>Ransomware<\/b><\/h3>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Rnasomware poses a unique challenge in modern cybersecurity discourses. This species of malware infiltrates an enterprise\u2019s network and then encrypts sensitive data or the entire network. The victim can only retrieve the encrypted data if they pay a ransom&#8230;and sometimes not even then.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Protection against ransomware often falls under the purview of <a href=\"https:\/\/solutionsreview.com\/endpoint-security\/\" target=\"_blank\" rel=\"noopener noreferrer\">endpoint security<\/a>, <a href=\"https:\/\/solutionsreview.com\/mobile-device-management\/\" target=\"_blank\" rel=\"noopener noreferrer\">mobile security<\/a>, and <a href=\"https:\/\/solutionsreview.com\/backup-disaster-recovery\/\" target=\"_blank\" rel=\"noopener noreferrer\">backup and disaster recovery<\/a>. Indeed, all of these matter in deflecting and mitigating ransomware, but authentication and continuous authentication provides another layer of security. For example, imagine placing authentication protocols before making any changes to a database or to the network overall. This would mean the ransomware malware would need privileges before it enacts its plans; any attempts of the malware to encrypt the data would trigger an alert.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Thus ransomware faces a much more significant uphill battle to turn your business into a victim.\u00a0\u00a0\u00a0\u00a0<\/span><\/p>\n<h3 style=\"text-align: justify\"><b>Phishing Attacks<\/b><\/h3>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Traditionally, phishing attacks operate in a set order. The attacker sends a malicious email posing as a legitimate institution. This email asks the user to follow a link and input their credentials to solve an immediate problem. The link leads to a fraudulent website, in many ways identical to the legitimate one, and when the victim inputs their credentials it ends up in the hands of attackers.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">In a single-factor, password-only authentication policies, phishing attacks like this prove devastating. However, in multifactor authentication and continuous authentication policies, phishing attacks find less purchase. Hackers may get their hands on passwords credentials, but would still lack the biometric, hard token, and SMS text messaging factors necessary to log in. Even if they could, continuous authentication ensures that phishers can\u2019t pose as legitimate users without triggering an alert and incident response.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Of course, identity management can\u2019t protect against all forms of phishing; some newer forms of phishing emails trigger a malware payload upon clicking the link. You need to combine authentication with email security to form a stronger digital perimeter.\u00a0\u00a0<\/span><\/p>\n<h3 style=\"text-align: justify\"><b>Work From Home (WFH) Security<\/b><\/h3>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Evidence suggests that employees don\u2019t follow cybersecurity best practices when they don\u2019t feel monitored by IT security teams. Further, working from home (while necessary to prevent the spread of the coronavirus) often results in less secure communications in the first place; consumer Wi-Fi connections don\u2019t provide the same protections as corporate connections. Additionally, many enterprises are considering retaining permanent work from home policies or otherwise becoming more liberal in them.\u00a0<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">Continuous authentication helps provide a much-needed layer of cybersecurity while your employees continue to benefit from WFH policies. By establishing behavioral baselines, and holding your employees to those standards, you can prevent insider threats caused by negligence or ignorance.\u00a0\u00a0<\/span><\/p>\n<h3 style=\"text-align: justify\"><b>How to Learn More about Continuous Authentication<\/b><\/h3>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\">To learn more about authentication and continuous authentication, check out our <a href=\"https:\/\/solutionsreview.com\/identity-management\/\" target=\"_blank\" rel=\"noopener noreferrer\">Identity Management Buyer\u2019s Guide<\/a>. We cover the top providers and their key capabilities in detail.<\/span><\/p>\n<p style=\"text-align: justify\"><span style=\"font-weight: 400\"><b><br \/>Widget not in any sidebars<br \/><\/b>\u00a0<\/span><\/p>\n","protected":false},"excerpt":{"rendered":"<p>So what can your authentication and continuous authentication policies protect against in the modern age? What kinds of threats loom the largest in the identity security threat landscape that authentication and continuous authentication mitigate?\u00a0 In this context, authentication refers to the process of logging in, whether that involves passwords, biometrics, hard tokens, or SMS messaging. [&hellip;]<\/p>\n","protected":false},"author":41,"featured_media":3375,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"inline_featured_image":false,"footnotes":""},"categories":[5,1],"tags":[142,125,1460,16,1204,76,425,70,145,435,1413,506,1462,1461],"acf":[],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v23.5 - https:\/\/yoast.com\/wordpress\/plugins\/seo\/ -->\n<title>What Can Authentication and Continuous Authentication Protect Against?<\/title>\n<meta name=\"description\" content=\"So what can your authentication and continuous authentication policies protect against in the modern age? Find out the answer here.\" \/>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/solutionsreview.com\/identity-management\/what-can-authentication-and-continuous-authentication-protect-against\/\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Ben Canner\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"3 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/what-can-authentication-and-continuous-authentication-protect-against\/\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/what-can-authentication-and-continuous-authentication-protect-against\/\",\"name\":\"What Can Authentication and Continuous Authentication Protect Against?\",\"isPartOf\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#website\"},\"primaryImageOfPage\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/what-can-authentication-and-continuous-authentication-protect-against\/#primaryimage\"},\"image\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/what-can-authentication-and-continuous-authentication-protect-against\/#primaryimage\"},\"thumbnailUrl\":\"https:\/\/solutionsreview.com\/identity-management\/files\/2018\/07\/privileged-access-management-MOD.jpg\",\"datePublished\":\"2020-06-02T20:24:06+00:00\",\"dateModified\":\"2020-06-02T20:24:06+00:00\",\"author\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541\"},\"description\":\"So what can your authentication and continuous authentication policies protect against in the modern age? Find out the answer here.\",\"breadcrumb\":{\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/what-can-authentication-and-continuous-authentication-protect-against\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/solutionsreview.com\/identity-management\/what-can-authentication-and-continuous-authentication-protect-against\/\"]}]},{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/what-can-authentication-and-continuous-authentication-protect-against\/#primaryimage\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/files\/2018\/07\/privileged-access-management-MOD.jpg\",\"contentUrl\":\"https:\/\/solutionsreview.com\/identity-management\/files\/2018\/07\/privileged-access-management-MOD.jpg\",\"width\":800,\"height\":425,\"caption\":\"Top-Tier Password Best Practices for World Password Day 2021\"},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/what-can-authentication-and-continuous-authentication-protect-against\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/solutionsreview.com\/identity-management\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"What Can Authentication and Continuous Authentication Protect Against?\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#website\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/\",\"name\":\"Best Identity Access Management (IAM) Software, Tools, Vendors, Solutions, &amp; Services\",\"description\":\"Identity Access Management (IAM) News, Best Practices and Buyer&#039;s Guide\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/solutionsreview.com\/identity-management\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541\",\"name\":\"Ben Canner\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g\",\"caption\":\"Ben Canner\"},\"description\":\"Ben Canner is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in English from Clark University in Worcester, MA. He previously worked as a corporate blogger and ghost writer. You can reach him via Twitter and LinkedIn.\",\"url\":\"https:\/\/solutionsreview.com\/identity-management\/author\/bcanner\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"What Can Authentication and Continuous Authentication Protect Against?","description":"So what can your authentication and continuous authentication policies protect against in the modern age? Find out the answer here.","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/solutionsreview.com\/identity-management\/what-can-authentication-and-continuous-authentication-protect-against\/","twitter_misc":{"Written by":"Ben Canner","Est. reading time":"3 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/solutionsreview.com\/identity-management\/what-can-authentication-and-continuous-authentication-protect-against\/","url":"https:\/\/solutionsreview.com\/identity-management\/what-can-authentication-and-continuous-authentication-protect-against\/","name":"What Can Authentication and Continuous Authentication Protect Against?","isPartOf":{"@id":"https:\/\/solutionsreview.com\/identity-management\/#website"},"primaryImageOfPage":{"@id":"https:\/\/solutionsreview.com\/identity-management\/what-can-authentication-and-continuous-authentication-protect-against\/#primaryimage"},"image":{"@id":"https:\/\/solutionsreview.com\/identity-management\/what-can-authentication-and-continuous-authentication-protect-against\/#primaryimage"},"thumbnailUrl":"https:\/\/solutionsreview.com\/identity-management\/files\/2018\/07\/privileged-access-management-MOD.jpg","datePublished":"2020-06-02T20:24:06+00:00","dateModified":"2020-06-02T20:24:06+00:00","author":{"@id":"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541"},"description":"So what can your authentication and continuous authentication policies protect against in the modern age? Find out the answer here.","breadcrumb":{"@id":"https:\/\/solutionsreview.com\/identity-management\/what-can-authentication-and-continuous-authentication-protect-against\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/solutionsreview.com\/identity-management\/what-can-authentication-and-continuous-authentication-protect-against\/"]}]},{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/identity-management\/what-can-authentication-and-continuous-authentication-protect-against\/#primaryimage","url":"https:\/\/solutionsreview.com\/identity-management\/files\/2018\/07\/privileged-access-management-MOD.jpg","contentUrl":"https:\/\/solutionsreview.com\/identity-management\/files\/2018\/07\/privileged-access-management-MOD.jpg","width":800,"height":425,"caption":"Top-Tier Password Best Practices for World Password Day 2021"},{"@type":"BreadcrumbList","@id":"https:\/\/solutionsreview.com\/identity-management\/what-can-authentication-and-continuous-authentication-protect-against\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/solutionsreview.com\/identity-management\/"},{"@type":"ListItem","position":2,"name":"What Can Authentication and Continuous Authentication Protect Against?"}]},{"@type":"WebSite","@id":"https:\/\/solutionsreview.com\/identity-management\/#website","url":"https:\/\/solutionsreview.com\/identity-management\/","name":"Best Identity Access Management (IAM) Software, Tools, Vendors, Solutions, &amp; Services","description":"Identity Access Management (IAM) News, Best Practices and Buyer&#039;s Guide","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/solutionsreview.com\/identity-management\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/357f925262827fcf840b4341920a1541","name":"Ben Canner","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/solutionsreview.com\/identity-management\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/63f68345052a446ce0cc9c802dd3f373?s=96&d=mm&r=g","caption":"Ben Canner"},"description":"Ben Canner is an enterprise technology writer and analyst covering Identity Management, SIEM, Endpoint Protection, and Cybersecurity writ large. He holds a Bachelor of Arts Degree in English from Clark University in Worcester, MA. He previously worked as a corporate blogger and ghost writer. You can reach him via Twitter and LinkedIn.","url":"https:\/\/solutionsreview.com\/identity-management\/author\/bcanner\/"}]}},"_links":{"self":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/posts\/4941"}],"collection":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/users\/41"}],"replies":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/comments?post=4941"}],"version-history":[{"count":0,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/posts\/4941\/revisions"}],"wp:featuredmedia":[{"embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/media\/3375"}],"wp:attachment":[{"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/media?parent=4941"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/categories?post=4941"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/solutionsreview.com\/identity-management\/wp-json\/wp\/v2\/tags?post=4941"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}