Securify customers typically define three type of access: Network access, including which networks and segments/resources can be accessed by other networks/segments; System access, what assets, services or applications can be access by which user groups/roles; and Transaction access, occurring within a system or application, covering which specific transactions, commands or data can be accessed by different users and groups/roles.
While there are application level solutions to cover transaction access, the frequent infrastructure and business changes continue to result in recurring gaps in network and system access that reflect an underlying lack of broad visibility and control.
Typical gaps at the network access level include:
- Unauthorized network paths: physical and/or routed connections that shouldn't exist at all. Obviously these bypass existing controls and are likely very insecure as well.
- Services or types of users that shouldn't be seen at all on particular network segments.
Typical gaps at the system access level include:
- Unauthorized users such as contractors accessing the production database, often because there is also a way to bypass the access controls enforced by the web front end
Securify addresses these gaps and delivers the proven, broad network and system level access coverage demanded by some of the world's most complex networks.
Real Results with Securify
Securify has been used to achieve 80%+ less cost and effort to deploy access discovery and control compared to traditional approaches.
Instead of recoding custom and legacy applications for provisioning, one company replaced a $10 million application recoding project and solved this issue using Securify's discovery and control capabilities.
Securify clients have experienced 50% less time required to identify non-authenticating devices, and in one instance, a Federal agency detected misuse of "exceptions" granted to 25% of non-participating devices by using Securify.
Go to Product Overview
Contact a Solution Expert