Management Briefng: Identity Governance & Administration

Write a 3 to 5 paragraph briefing paper that identifies and explains the three most important reasons why Sifers-Grayson should invest in an Identity Governance & Administration solution instead of continuing to use the existing paper-based process for requesting and issuing computer accounts.
Your audience is a mixed group of managers from across Sifers-Grayson’s operating areas (company HQ’s, Engineering, Finance & Accounting, Program Management, Sales & Marketing). Some of these managers are familiar with the importance of separation of duties and least privilege but most are not. One or two of the managers might know the definition for RBAC. Your briefing paper needs to address these information needs as well as discussing why information should be labeled as to its sensitivity (“classification”) and ownership.
Provide in-text citations and references for 3 or more authoritative sources. Put the reference list at the end of your article.


The InfoSec Handbook
Read pp 29-35
Read Chapter 4
Read Biometrics pp 297-303
Role based access control
Common Sense Guide to Mitigating Insider Threats (Introduction, Practice 7, Practice 8 & Practice 10

Identity Governance and Administration
Identity and Access Management (NIST NCCOE)
Definition: Governance
Identity Governance and Administration (Article)
Privilege Management
Privileged Account Management (NIST NCCOE)
Enterprise Entitlements Management: Moving beyond authentication
Four Best Practices for Passing Privileged Account Audits (Beyond Trust)


