About Forrester
Forrester Research, Inc. is an independent research company that provides pragmatic and forward-thinking advice to global leaders in business and technology.

Andras serves Security & Risk Professionals. He is a leading expert on identity management, access management, user account provisioning, entitlement management, federation, privileged identity management, and role design and management. Andras covers cloud security and enterprise fraud management, which have many synergies with identity and access management when an organization needs to protect against risk and wants to manage fraud appropriately. He helps clients develop enterprise strategies for creating business value through identity management, cloud security, and fraud management.
His research focuses on strategy, cost-benefit analysis, architecture, performance and scalability of identity and access management and provisioning solutions, enterprise fraud management solutions, and role-based access control (RBAC), as well as maintenance and distributed intranet and Internet identity systems. He maintains an interest in evaluating the skill sets and core competencies of professional service providers in these spaces.
Prior to joining Forrester, Andras was a security architect with CA Technical Services through the Netegrity acquisition. Andras designed the architecture and led the implementation of Fortune 500 companies' identity and access management and provisioning solutions. Previously, Andras managed business process re-engineering projects.
Andras holds an M.B.A. degree from Technical University of Budapest and Heriot-Watt University, Edinburgh, UK, and an M.Sc. in computer science and electrical engineering from Technical University of Budapest.
During the past three years, cloud-based identity and access management (IAM) solutions have become a viable and cost-effective alternative to on-premises, commercial off-the-shelf (COTS), or...

Policy And Procedures: The Identity And Access Management Playbook
This report outlines the process and procedures of Forrester's solution for security and risk (S&R) professionals looking to build their identity and access management (IAM) strategy. S&R...
The challenges of consumer-facing identity management, access management, and authentication differ in ways subtle and dramatic from those of the employee-facing variety. In fact, several vendors in...
The Eight Providers That Matter Most And How They Stack Up
In Forrester's 15-criteria evaluation of enterprise fraud management vendors, we identified the eight most significant vendors in the category — 41st Parameter, ACI Worldwide, CA Technologies,...
Insurers Must Catch Up To The Sophistication Of Today's Fraudsters
Fraud costs the US insurance industry upward of $40 billion, which the industry then passes on to policyholders in the form of higher premiums. Financial crime is on the rise as fraudsters become...
Strategy Deep Dive: The Mobile Security And Operations Playbook
Mobile devices are everywhere: at work, in the hands of your customers, and with employees. Security and risk (S&R) professionals need to provide users with secure and seamless mobile access to...

Business Impact: The Identity And Access Management Playbook
Security and risk (S&R) executives responsible for identity and access management (IAM) must manage access to sensitive applications and data because of security and compliance requirements -- and...
Assessment Framework: The Identity And Access Management Playbook
An identity and access management (IAM) maturity model is necessary for assessing your current state against industry best practices, understanding your performance relative to that of your peers,...
Executive Overview: The Identity And Access Management Playbook
The rapid adoption of mobile devices and cloud services, together with a multitude of new partnerships and customer-facing applications, has "extended" the identity boundary of today's enterprise....
Predictive And Behavioral Analysis Finds Its Way Into Identity And Access Management
Identity and access management (IAM) professionals need to protect information and prevent unauthorized users from accessing business-critical systems in an increasingly complex IT environment. They...

Skills And Staffing: The Identity And Access Management Playbook
This report outlines the skills and staffing requirements for security and risk (S&R) executives working on building an identity and access management strategy for the extended enterprise. Identity...
A Review Of Budgets, Spending Intentions, Technology Adoption, And Key Trends
To help Forrester clients with their identity and access management (IAM) strategy for 2011, Forrester predicted four significant trends. So how'd we do? We got two right and two half right. Heading...

Plan Your Move To Risk-Based Authentication And Software-Based Tokens
The RSA breach presents IT security professionals with significant challenges regarding authentication and questions the security of the bulletproof hardware token hitherto thought to be invincible....

A North American online retailer found that fraud losses ate at profits and affected the customer experience. The retailer's manual fraud management processes could not scale with the volume of its...
Protecting Information Consistently With Identity Context (PICWIC) Is A Must
According to Forrester survey data, "trusted" insiders and business partners, intentionally or unintentionally, are responsible for 43% of security breaches. The recent WikiLeaks breach illustrates...

Six New Features And Capabilities Redefine PIM Architecture
Privileged identity management (PIM) is composed of password safes, sensitive entitlement management, and session recording and auditing. It's used primarily for managing system administrator...
When a global financial institution saw a large uptick in fraud in its commercial banking, it realized that transaction monitoring alone was insufficient. The bank needed to do more, but it was...
Seven Tenets Of Effectively Combating Fraud Costs
Fraud causes companies to lose money in many ways: They face losses due to chargebacks, unrecoverable transfers, and unnecessary shipping costs; and spend extensive time and resources investigating...
Software-As-A-Service Adoption Drives Federated Access; Provisioning Still Lags
The wait is over. According to Forrester's recent security survey, adoption of identity federation jumped from less than 5% two years ago to more than 12% in 2009. Why? Because software-as-a-service...
Uptake Of Individual Technologies Is Low, But Cloud Options Hold Promise
Interest in and adoption of identity and access management (IAM) technologies has been growing steadily over the past few years, fueled both by the desire to streamline processes relating to...
For online retailers, the cost of fraud is more than just lost revenue — detecting and preventing fraud can slow order fulfillment, harm brand images, and increase the number of fraud analysts...
A North American energy company recently faced a serious challenge — it could not successfully pass Federal Energy Regulatory Commission (FERC)/North American Electric Reliability Corporation...
Hope For Centrally Managing The Chaos Of SharePoint Permissions
Hard-coded authorizations in applications are hard to manage — they are difficult and expensive to constantly change to follow changing business requirements. Entitlement management (EM)...
Oracle, CA, And IBM Lead, With Novell And Sun Microsystems Close Behind
In Forrester's 79-criteria evaluation of identity and access management (IAM) vendors, we found that Oracle, CA, and IBM lead the pack because of a rich IAM portfolio (both organically developed and...
What To Look For From Oracle, And How To Respond
Oracle's acquisition of Sun Microsystems' identity management (IAM) portfolio was largely unintended — the assets that lured Oracle to buy Sun were Java and its hardware business. Once the...