About Forrester
Forrester Research, Inc. is an independent research company that provides pragmatic and forward-thinking advice to global leaders in business and technology.
When a global financial institution saw a large uptick in fraud in its commercial banking, it realized that transaction monitoring alone was insufficient. The bank needed to do more, but it was...
Traditional Methods Start To Sag, While Mobile-Fueled Methods Surge
The strong authentication landscape has undergone tremendous churn in recent years as new mobile-fueled technologies have come online and as RSA, the premier vendor of hardware one-time password...
Protecting Information Consistently With Identity Context (PICWIC) Is A Must
According to Forrester survey data, "trusted" insiders and business partners, intentionally or unintentionally, are responsible for 43% of security breaches. The recent WikiLeaks breach illustrates...

Six Vendors That Matter Most And How They Stack Up
In Forrester's 15-criteria evaluation of cloud identity and access management (IAM) vendors, we identified the six most significant solution providers in this category — Covisint, Lighthouse...

A North American online retailer found that fraud losses ate at profits and affected the customer experience. The retailer's manual fraud management processes could not scale with the volume of its...
Software-As-A-Service Adoption Drives Federated Access; Provisioning Still Lags
The wait is over. According to Forrester's recent security survey, adoption of identity federation jumped from less than 5% two years ago to more than 12% in 2009. Why? Because software-as-a-service...
Policy And Procedures: The Identity And Access Management Playbook
This report outlines the process and procedures of Forrester's solution for security and risk (S&R) professionals looking to build their identity and access management (IAM) strategy. S&R...
Requirements For Data Security, Mobile Devices, And Cloud-Based Services Will Forge Ahead
For 2011, Forrester predicts that IT administration efficiency and business agility will become the main drivers for using identity and access management (IAM). A bevy of acquisitions during the past...
Business Impact: The Identity And Access Management Playbook
Security and risk (S&R) executives responsible for identity and access management (IAM) must manage access to sensitive applications and data because of security and compliance requirements -- and...
We have three stores where we store user credentials. We're looking for a solution to synchronize them, and we want to avoid having to write our own programs to do this. Are there commercial...
The Six Vendors That Matter Most And How They Stack Up
In Forrester's 16-criteria evaluation of risk-based authentication vendors, we identified the six significant vendors in this category — CA Technologies, Entrust, iovation, RSA, Symantec, and...
How One Healthcare Provider Improved The End User Experience Of 1,500 Physicians
In today's healthcare environment, physicians must access a wide array of IT applications to provide quality patient care. Because of the growing number of both on-premises and SaaS-based...
How many people are using self-service password reset, and how successful is it? What are the advantages? What are the disadvantages?
Six New Features And Capabilities Redefine PIM Architecture
Privileged identity management (PIM) is composed of password safes, sensitive entitlement management, and session recording and auditing. It's used primarily for managing system administrator...
We are looking at strengthening our processes around access management, access control, monitoring, and auditing. We have four questions: 1) what are the adoption rates for privileged account...
Strategic Plan: The Identity And Access Management Playbook
This report outlines the strategic vision of Forrester's solution for security and risk (S&R) professionals looking to build their identity and access management strategy (IAM). This report is...

I'd like to better understand whether we are using current best practices around limiting administrative access to production systems. We currently use jump servers as gateways for administrators...
Assessment Framework: The Identity And Access Management Playbook
An identity and access management (IAM) maturity model is necessary for assessing your current state against industry best practices, understanding your performance relative to that of your peers,...
How does the industry alert on and report modifications to Windows local server security controls, focusing on local users, groups, and shares?
The challenges of consumer-facing identity management, access management, and authentication differ in ways subtle and dramatic from those of the employee-facing variety. In fact, several vendors in...