by

CISA and NSA Release Enduring Security Framework Guidance on Identity and Access Management

Cybersecurity and Infrastructure Security Agency (CISA) - Defend Today, Secure Tomorrow

You are subscribed to Cybersecurity Advisories for Cybersecurity and Infrastructure Security Agency. This information has recently been updated, and is now available.

03/21/2023 03:08 PM EDT

As part of the Enduring Security Framework (ESF), the Cybersecurity and Infrastructure Security Agency (CISA) and the National Security Agency (NSA) has released

Identity and Access Management Recommended Best Practices Guide for Administrators
. These recommended best practices provide system administrators with actionable recommendations to better secure their systems from threats to Identity and Access Management
(IAM).

IAM—a framework of business processes, policies, and technologies that facilitate the management of digital identities—ensures that users only gain access to data when they have the appropriate credentials. This paper provides

recommended best practices and mitigations
to counter threats to IAM related to:

  • identity governance
  • environmental hardening
  • identity federation/single sign-on
  • multifactor authentication
  • IAM auditing and monitoring

This
guidance
was developed and published by a CISA- and NSA-led working panel with ESF, a public-private cross-sector partnership that aims to address risks that threaten critical infrastructure and national security systems.

Please share your thoughts. We recently updated our anonymous Product Feedback Survey and we’d welcome your feedback.

This product is provided subject to this Notification and this Privacy
& Use
 policy.

 

Having trouble viewing this message? View
it as a webpage

You are subscribed to updates from the
Cybersecurity and Infrastructure Security Agency (CISA)
Manage Subscriptions  |  Privacy
Policy
  | 
Help

Connect with CISA:

Facebook  | 
Twitter  | 
Instagram  | 
LinkedIn  |  
YouTube


This email was sent to using GovDelivery Communications Cloud, on behalf of: Cybersecurity and Infrastructure Security Agency · 707 17th St, Suite 4000 · Denver, CO 80202 GovDelivery logo

Write a Comment

Comment

  • Related Content by Tag