Project Management

Project Management Central

Please login or join to subscribe to this thread

Topics: Information Technology
Identity and Access Management (IAM) - require reference?
Good day,
I would like to ask you for hint about "Identity and Access Management (IAM)" please.
For me is new area in current activity so I would like to know what kind of reference-source (authority) you can recommend me to follow and get inspired please?
Thank you for help!
Sort By:
I was the leader of a hugh initiative to implement it in my current work place. It is a whole framework (policies plus technologies) that are key success factor to implement "new wave things" like digital oriented bussiness. If you ask me, as any other type of solutions, take into account the whole enterprise architecture will be impacted, where enterprise architecture is composed by business/application/technology/security/information layers. If you take it into account and you start to engage people to work into each layer plus you (just in case you will lead it) as the integrator then you will enhace the probability of success.
...
1 reply by Petr Kuldan
Feb 17, 2020 7:23 AM
Petr Kuldan
...
Thank you Sergio for reply! Well, if u can write me official name such as authority of IAM topic etc. as hint I would appreciate it.
IAM is new for me ...so yes I need to study first to be oriented in IAM basics for the first steps...
Feb 17, 2020 7:09 AM
Replying to Sergio Luis Conte
...
I was the leader of a hugh initiative to implement it in my current work place. It is a whole framework (policies plus technologies) that are key success factor to implement "new wave things" like digital oriented bussiness. If you ask me, as any other type of solutions, take into account the whole enterprise architecture will be impacted, where enterprise architecture is composed by business/application/technology/security/information layers. If you take it into account and you start to engage people to work into each layer plus you (just in case you will lead it) as the integrator then you will enhace the probability of success.
Thank you Sergio for reply! Well, if u can write me official name such as authority of IAM topic etc. as hint I would appreciate it.
IAM is new for me ...so yes I need to study first to be oriented in IAM basics for the first steps...
...
1 reply by Sergio Luis Conte
Feb 17, 2020 7:54 AM
Sergio Luis Conte
...
You are welcome. I do not know about a place to find it because for me was an evolution of concepts that were ready from 1990, so I got some expertisse on that (due to in my other work places people work on define it). What I got at this time were ISO/IEC related standards mainly ISO (and more specifically ISO/IEC JTC1, SC27 IT Security techniques WG5 Identity Access Management and Privacy techniques). Those standards covers all you have to take into account for each layer into the famework. Perhaps the weak part of it are things related to business layer.
In my opinion, you have to read this first:
--ISO/IEC 24760-1 A framework for identity management—Part 1: Terminology and concepts
--ISO/IEC 24760-2 A Framework for Identity Management—Part 2: Reference architecture and requirements
--ISO/IEC DIS 24760-3 A Framework for Identity Management—Part 3: Practice
Mainly the second ones because as I mentioned it is a matter of architecture.
Feb 17, 2020 7:23 AM
Replying to Petr Kuldan
...
Thank you Sergio for reply! Well, if u can write me official name such as authority of IAM topic etc. as hint I would appreciate it.
IAM is new for me ...so yes I need to study first to be oriented in IAM basics for the first steps...
You are welcome. I do not know about a place to find it because for me was an evolution of concepts that were ready from 1990, so I got some expertisse on that (due to in my other work places people work on define it). What I got at this time were ISO/IEC related standards mainly ISO (and more specifically ISO/IEC JTC1, SC27 IT Security techniques WG5 Identity Access Management and Privacy techniques). Those standards covers all you have to take into account for each layer into the famework. Perhaps the weak part of it are things related to business layer.
In my opinion, you have to read this first:
--ISO/IEC 24760-1 A framework for identity management—Part 1: Terminology and concepts
--ISO/IEC 24760-2 A Framework for Identity Management—Part 2: Reference architecture and requirements
--ISO/IEC DIS 24760-3 A Framework for Identity Management—Part 3: Practice
Mainly the second ones because as I mentioned it is a matter of architecture.

Please login or join to reply

Content ID:
ADVERTISEMENTS

"You're talking to someone who really understands rock music."

- Tipper Gore

ADVERTISEMENT

Sponsors