Background
A Singapore-based bank, one of the largest banks in Southeast
Asia, wants to upgrade and consolidate the administration
of global users and systems access to comply to Base I, II
and ISO 17799.
Issues
The bank holds large amount of private and confidential customer
and financial data. Databases, application servers and file
servers are all potential information leakage points if user
access is not tightly controlled.
Challenges
The bank's large number of disparate systems, ranging from
customer banking to investment banking, requires a central
system that provides connectors to talk to the current critical
bank applications.
And as one of the largest banks in Southeast Asia, the number
of users to be managed is daunting if security policies and
access rights are manually administered.
Objectives / Goals
- Ease of central user identity maintenance to uphold the
strictest information access within the corporate
- Central system that can integrate with all major systems
in the bank
- Support global users from Singapore and Malaysia, and
other countries in the future
Resolvo's Key Successes
Resolvo identified the following components within the framework
as the driving factors to the right solution to meet the bank's
objectives:
Deterrence
Encryption
Forensics
Identity
Management
The most significant benefit of our solution is that user
access to the critical systems are now automatically monitored
and synchronized by Sun's Identity Management System software.
This centralized management significantly reduces the risks
of unauthorized access to production data. The automation
and synchronization also ensures that the bank's critical
data is protected against leakage by any staff right from
the start when the staff joins the bank. |