As social engineering scams spread, Avecto says a least privilege solution is the best option for most organisations

"It's important to understand that, if you reduce the privilege on high-end accounts, you do not impair operational efficiency. You do, however, reduce the level of risk in an organisation - and that's a great situation to be in,"

Manchester UK / Boston USA, (PresseBox) - Commenting on recent reports - which assert that cybercriminal social engineering attacks are now targeting IT admins and even call centre staff - Avecto says that a least privilege approach to security is the key to solving this issue.

Paul Kenyon, chief operating officer with the Windows privilege management specialist, says the real reason why cybercriminals are targeting the IT support function is the immense power that staff in these areas have - thanks to the admin accounts they have access to.

"Many of these staff are using what security professionals call privileged accounts - that is, admin accounts that can carry out a number of high-end tasks, which the more mundane user accounts do not normally have access to. If unnecessary privileges are removed from these accounts, this lowers the security risk involved," he said.

"It's important to understand that, where IT admins and least privilege are concerned, it's not about taking rights and privileges away - it is about protecting their privileged identity, empowering them to make conscious decisions on when those privileges are used, and monitoring all privileged activity for signs of misuse or exploitation," he added.

The Avecto COO went on to say that the advantage of adopting a least privilege/least risk security posture with admin account privileges is that the security advantages also transfer over to the servers these IT admins control.

The process of removing unnecessary privileges from the admin account arena, he explained, comes down to adopting an effective audit and governance strategy, which in turn reduces risk and increases efficiency.

"It's important to understand that, if you reduce the privilege on high-end accounts, you do not impair operational efficiency. You do, however, reduce the level of risk in an organisation - and that's a great situation to be in," he said.

Diese Pressemitteilungen könnten Sie auch interessieren

News abonnieren

Mit dem Aboservice der PresseBox, erhalten Sie tagesaktuell und zu einer gewünschten Zeit, relevante Presseinformationen aus Themengebieten, die für Sie interessant sind. Für die Zusendung der gewünschten Pressemeldungen, geben Sie bitte Ihre E-Mail-Adresse ein.

Es ist ein Fehler aufgetreten!

Vielen Dank! Sie erhalten in Kürze eine Bestätigungsemail.


Ich möchte die kostenlose Pressemail abonnieren und habe die Bedingungen hierzu gelesen und akzeptiert.