当前位置:首页 >英文主页 >中英对照 > 中译版报告详情

波耐蒙研究所:2025身份与访问管理(IAM)成熟度现状报告(中译版)(42页).pdf

上传人: 小*** 编号:1245184 2026-05-22 42页 3.61MB

下载:

1、 Sponsored by GuidePoint Security Independently conducted by Ponemon Institute LLC Publication Date:May 2025 The State of Identity and Access Management(IAM)Maturity !Ponemon Institute Research Report Sponsored by DomainTools Independently conducted by Ponemon Institute LLC Publication Date:April 20

2、19 Sponsored by GuidePoint Security Page Conducted by Ponemon Institute 1 The State of Identity and Access Management(IAM)Maturity May 2025 Part 1.Executive Summary Identity and Access Management(IAM)Maturity refers to the extent to which an organization effectively manages user identities and acces

3、s across its systems and applications.Its a measure of how well an organization is implementing and managing Identity and Access Management(IAM)practices.A mature IAM program ensures that only authorized users have access to the resources they need,enhancing security,reducing risks and improving ove

4、rall efficiency.Most organizations remain in the early to mid-stages of IAM maturity,leaving them vulnerable to identity-based threats.This new study of 626 IT professionals by the Ponemon Institute,sponsored by GuidePoint Security,highlights that despite growing awareness of insider threats and ide

5、ntity breaches,IAM is under-prioritized compared to other IT security investments.All participants in this research are involved in their organizations IAM programs.Key Insights:IAM is underfunded and underdeveloped.Only 50 percent of organizations rate their IAM tools as very or highly effective,an

6、d even fewer(44 percent)express high confidence in their ability to prevent identity-based incidents.According to 47 percent of organizations,investments in IAM technologies trail behind other security investment priorities.Manual processes are stalling progress.Many organizations still rely on spre

word格式文档无特别注明外均可编辑修改,预览文件经过压缩,下载原文更清晰!
三个皮匠报告文库所有资源均是客户上传分享,仅供网友学习交流,未经上传用户书面授权,请勿作商用。
1. **IAM成熟度不足**:仅50%组织认为IAM工具非常有效,44%对预防身份事件高度自信,47%认为IAM技术投资优先级低于其他安全技术。 2. **手动流程拖累**:34%依赖电子表格手动访问审查,36%使用自定义工作流,仅17%通过IAM身份治理平台执行。 3. **高绩效者领先**:23%的高效组织(高绩效者)采用生物认证(64% vs. 37%)、自动化密码检查(59% vs. 34%)及专用PAM平台(56% vs. 23%)。 4. **技术缺口**:54%缺乏技术,52%缺乏专业人才,45%缺乏资源;45%优先考虑用户体验而非安全。 5. **身份事件频发**:50%组织过去12个月遭遇身份事件,主要因泄露凭证(34%)、身份盗窃(25%)和钓鱼(23%)。
IAM成熟度现状如何? 身份安全面临哪些风险? 高绩效组织有何实践?
客服
商务合作
小程序
服务号
折叠