The unpaid summer intern that could cost you millions

-

Courion®, the market leader in intelligent identity and access management (IAM), recommends that now that the summer holidays are finished and term time is almost here, companies take a close look at a common access risk factor that may be leaving them vulnerable to a data breach: abandoned accounts associated with student summer time workers and interns.

Most organizations hire seasonal workers, especially in the summer months when university students are available and interested in employment, often at low or no cost to an employer. These temporary employees are given access to company resources, and may even be using privileged access credentials shared by a manager. Many companies forget or neglect to terminate accounts used by temporary employees and interns when summer ends. What’s more, as a company grows and other employees are transferred or terminated or temporary workers or contractors leave the organization, the number of abandoned accounts can grow – significantly.

Abandoned accounts are not revealed during the typical periodic audit that an IT department might conduct, so these accounts often go unnoticed. The problem is, abandoned accounts provide hackers with an easy way to gain access to your network. In addition, seasonal employees are not tied professionally or emotionally to your organization and may be more prone to explore your network and exploit access vulnerabilities, even at a later date.

Reducing or eliminating access risks such as abandoned accounts makes sense as a way to minimize the possibility of a data breach, but CISOs need an efficient way to uncover them. To assist with this problem, Courion now offers a complimentary quick scan evaluation of access risk which leverages the award-winning identity and access intelligence solution, Access Insight, to help organizations gauge whether they have an abandoned account problem. Based on evaluations of access risk recently conducted by Courion at more than twenty major corporations, organizations often have not just a few, but thousands of abandoned accounts.

HRreview Logo

Get our essential weekday HR news and updates.

This field is for validation purposes and should be left unchanged.
Keep up with the latest in HR...
This field is hidden when viewing the form
This field is hidden when viewing the form
Optin_date
This field is hidden when viewing the form

 

Both the 2014 Verizon Data Breach Incident Report and the SANS Institutes Top 20 Critical Security Controls recommend that CISOs know who has access to their data and review user accounts on a regular basis. That’s why Courion’s intelligence-driven approach to IAM provides an organization with the ability to “assess first” and uncover issues such as abandoned accounts and orphan accounts with no oversight, or accounts with more access than is truly needed.

“Once hidden access risk factors are eliminated, an organization can continue to leverage the intelligence integrated within the Access Assurance Suite in provisioning and governance operations,” emphasized Chris Zannetos, CEO of Courion. “An organization can not only start, but also stay compliant, because continuous monitoring is built into the suite that automatically detects, notifies and enables remediation of policy violations as they occur, further minimizing access risk and streamlining future audits.”

Latest news

Sustainable business starts with people, not HR policies

Why long-term success depends on supporting employees, not just meeting ESG targets, with practical steps for leaders to build healthier organisations.

Hiring steadies but Gulf crisis threatens recovery in UK jobs market

UK hiring shows signs of stabilising, but rising global uncertainty linked to the Gulf crisis is weighing on employer confidence and delaying recovery.

Women ‘face career setback’ risk with flexible working

Female staff using remote or reduced-hour arrangements more likely to move into lower-status roles, raising concerns about bias in career progression.

Jo Kansagra: Make work benefits work for Gen Z

Gen Z employees are entering the workforce at full steam, and yet many workplace benefits schemes are firmly stuck in the past.
- Advertisement -

Union access plans risk straining workplace relations, CIPD warns

Proposed rules on workplace access raise concerns about employer readiness and operational strain.

Petra Wilton on managers struggling with new workplace laws

“Managers are not being given the tools they need to fully understand how the rules of the workplace are changing.”

Must read

Lucinda Bromfield: Online presence

As I was wondering what to write as my...

It’s official: employee engagement impacts on the success of an organisation

Recently we published a supplement looking at employee engagement. We were delighted that the special edition became the most downloaded publication that we’ve produced. Alongside the special edition we also polled our readers to find out whether they believed that engagement of staff has an impact on the success of their organisation. The poll revealed an overwhelming majority of HR Review readers believed this to be true.
- Advertisement -

You might also likeRELATED
Recommended to you