Role Based Identity and Access Management Basic Infrastructure for New Citizen Services and Lean Internal Administration



Similar documents
Identity and Access Management

secure user IDs and business processes Identity and Access Management solutions Your business technologists. Powering progress

IDENTITY MANAGEMENT AND WEB SECURITY. A Customer s Pragmatic Approach

PROTECT YOUR WORLD. Identity Management Solutions and Services

Product overview. CA SiteMinder lets you manage and deploy secure web applications to: Increase new business opportunities

<Insert Picture Here> Oracle Identity And Access Management

How to leverage SAP NetWeaver Identity Management and SAP Access Control combined solutions

IBM Tivoli Identity Manager

DirX Identity V8.5. Secure and flexible Password Management. Technical Data Sheet

BUSINESS-DRIVEN, COMPLIANT IDENTITY MANAGEMENT USING SAP NetWeaver IDENTITY MANAGEMENT

DirX Identity V8.4. Secure and flexible Password Management. Technical Data Sheet

Enterprise Identity Management Reference Architecture

SAM Enterprise Identity Manager

Governance, Risk & Compliance for Public Sector

First-hand Information about the Enhanced Functionality and Integration Options Within SAP NetWeaver Identity Management 7.2

aaps algacom Account Provisioning System

1 Building an Identity Management Business Case. 2 Agenda. 3 Business Challenges

Business-Driven, Compliant Identity Management

Business-Driven, Compliant Identity Management

The Unique Alternative to the Big Four. Identity and Access Management

OracleAS Identity Management Solving Real World Problems

Integrating Hitachi ID Suite with WebSSO Systems

Approaches to Enterprise Identity Management: Best of Breed vs. Suites

MAESON MAHERRY. 3 Factor Authentication and what it means to business. Date: 21/10/2013

Oracle Identity Management for SAP in Heterogeneous IT Environments. An Oracle White Paper January 2007

SAP Solution in Detail SAP NetWeaver SAP NetWeaver Identity Management. Business-Driven, Compliant Identity Management

Oracle Reference Architecture and Oracle Cloud

Entrust Secure Web Portal Solution. Livio Merlo Security Consultant September 25th, 2003

Quest One Identity Solution. Simplifying Identity and Access Management

<Insert Picture Here> Integrating your On-Premise Applications with Cloud Applications

Oracle Identity Management: Integration with Windows. An Oracle White Paper December. 2004

Identity Management with SAP NetWeaver IdM

Best Practices in Identity and Access Management (I&AM) for Regulatory Compliance. RSA Security and Accenture February 26, :00 AM

Automated User Provisioning

Research. Identity and Access Management Defined

Enterprise Management Solutions Protection Profiles

BEA BPM an integrated solution for business processes modelling. Frederik Frederiksen Principal PreSales Consultant BEA Systems

How to Get to Single Sign-On

Masdar Institute Single Sign-On: Standards-based Identity Federation. John Mikhael ICT Department

The Four "A's" of Information Security

CERN, Information Technology Department

Authentication: Password Madness

Oracle Access Manager. An Oracle White Paper

Compliance & SAP Security. Secure SAP applications based on state-of-the-art user & system concepts. Driving value with IT

Web Applications Access Control Single Sign On

Strengthen security with intelligent identity and access management

STRONGER AUTHENTICATION for CA SiteMinder

Biometric SSO Authentication Using Java Enterprise System

E-Government Service Delivery. Samir Said General Manager Microsoft Algeria

Intelligent Inventory and Professional License Management

Password Self-Service for Novell edirectory. Brent McCormick Novell Corporate Technology Strategist

Integrated Identity and Access Management Architectural Patterns

Securing your business

Single Sign-On. Security and comfort can be friend. Arnd Langguth. September, 2006

White Paper Identity and Access Management (IAM). Gain Agility through IAM in Companies and Complex Supply Chains.

RSA Via Lifecycle and Governance 101. Getting Started with a Solid Foundation

Identity and Access Management

"Service Lifecycle Management strategies for CIOs"

B2C, B2B and B2E:! Leveraging IAM to Achieve Real Business Value

How can Identity and Access Management help me to improve compliance and drive business performance?

SAP NetWeaver Single Sign-On. Product Management SAP NetWeaver Identity Management & Security June 2011

SAP NetWeaver Identity

Michigan Criminal Justice Information Network (MiCJIN) State of Michigan Department of Information Technology & Michigan State Police

C21 Introduction to User Access

White Paper The Identity & Access Management (R)evolution

Single Sign-On Architectures. Jan De Clercq Security Consultant HPCI Technology Leadership Group Hewlett-Packard

SAP Identity Management Overview

STATE OF NEW YORK IT Transformation. Request For Information (RFI) Enterprise Identity and Access Management Consolidated Questions and Responses

Oracle Identity Management Concepts and Architecture. An Oracle White Paper December 2003

Integrating Siebel CRM 8 with Oracle Applications

Identity Management for Interoperable Health Information Exchanges

Oracle Privileged Account Manager 11gR2. Karsten Müller-Corbach

CoSign by ARX for PIV Cards

Evolutyz Corp. is a future proof evolution of endless opportunities with a fresh mind set in Technology Consulting and Professional Services.

Identity and Access Management The road to sustained compliance

MetaDirectory. Easy search, fast results. Companywide. LDAP Server for fast access of contact data. // Database & Directory services

SAP Enterprise Architecture in the Era of SAP HANA, Infrastructure, Platforms, Software and Everything-as-a-Service

Password Management Buyer s Guide. FastPass Password Manager V 3.3 Enterprise & Service Provider Editions

Cloud SSO and Federated Identity Management Solutions and Services

Product Life Cycle Management

PUR1308/12 - Service Management Tool Minimum Requirements

Protect Everything: Networks, Applications and Cloud Services

Cybersecurity and Secure Authentication with SAP Single Sign-On

Extending Identity and Access Management

ADAPTABLE IDENTITY GOVERNANCE AND MANAGEMENT

Client. Applications. Middle Tier. Database. Infrastructure. Leading Vendors

SAP Sybase Replication Server What s New in SP100. Bill Zhang, Product Management, SAP HANA Lisa Spagnolie, Director of Product Marketing

5 Day Imprivata Certification Course Agenda

Global Headquarters: 5 Speen Street Framingham, MA USA P F

Transcription:

Role Based Identity and Access Management Basic Infrastructure for New Citizen Services and Lean Internal Administration Horst Bliedung Director International Sales CEE Siemens IT Solutions and Services Munich; Germany

Agenda 1 Situation / Key Trends 2 Best Practice Case Studies 3 Siemens Solution offering 4 Benefits Page 2 Nov-08 Siemens IT Solutions and Services

Key trends drive growth in Public Sector Economic growth, industrial transformation and demographic change must be mastered by matching infrastructures and efficient administration Mobility, migration and growing urbanization Security Interoperability Transformation Limited budgets Siemens is an expert partner supporting Governments to cope with their challenges and to allow for innovation and smooth, sustainable transformation Source: Siemens IT Solutions and Services Page 3 Nov-08 Siemens IT Solutions and Services

Standalone IT solutions raise administrative costs and prevent a secure and transparent rights management A host of users require access to resources in different applications Employees Sales Customers Finance B2B G2B Marketing Partners Many administrators are kept busy repeatedly granting and revoking access rights Logistics Page 4 Nov-08 Siemens IT Solutions and Services

Siemens Secure ID Solutions IAM, Biometrics, Smartcards, PKI Users Administration Authentication Authorization Target Systems Employees Partners User & Role Management Delegation Provisioning Token Mgmt. Biometrics Smart Cards Secure Tokens Single Sign-On Federation Policy Enforcement Policy Mgmt. Web Services Security Web Portals Suppliers Audit Consolidation Correlation Scans Reports Platforms Customers Public Key Infrastructure Confidentiality Integrity Digital Signatures Applications Page 5 Nov-08 Siemens IT Solutions and Services

Use case DirX Access enables secure egovernment with Identity Federation Ministry A egovernment portal A Ministry B egovernment portal B DirX Access Identity Federation DirX Access Authentication In ministry A the digital identity of the employee is managed. For accessing portal A the employee has to authenticate only once. To get access to portal B a security token is issued automatically. DirX Access Authorization In ministry B DirX verifies the security token, checks authorization and grants access to applications in B for the employee of ministry A. Identity Federation comprises standards and technologies to share digital identities across applications and also organization / enterprise borders Page 6 Nov-08 Siemens IT Solutions and Services

Public Sector organizations have to deliver Best external service with lean internal administration Areas of Application for Identity and Access Management Internal Administration Processes G2 Citizen-Enterprise-Government Administration Security Employment & Pension Services Defense & Intelligence Unique electronic ID for employees Lean and automated administration for the complete IT landscape (SAP, Microsoft, IBM, Oracle ) Employee self-service Compliant central user, role or system based audit & reporting Organizational white & yellow pages Easy and secure Access through Password management Single-Sign-On for portals & web applications or services for physical and logical Security Biometric Authentication Central repository for PKI and employee cards Unique electronic ID for citizens, travelers and foreigners Large scale ID-repositories (PKI, NHII,..) for 10s of millions of ID profiles Efficient access management for egovernment applications & portals Citizen self service Single-Sign-On Cross organizational ID-Federation Fast deployment of distributed secure IT-applications and services Identity Federation Web-service security for SOA environments (Service Bus, G2E or G2G) Biometric Authentication Organizational white & yellow pages Page 7 Nov-08 Siemens IT Solutions and Services

Increasing Maturity Identity Management Drivers and Benefits Quelle: Gartner, Inc., 2007 Business Agility and Productivity Let the business focus on goals Let apps. focus on business functions & service delivery Respond to Needs Security Effectiveness Better controls Fewer mistakes Better transparency Manage Risks Comply with Regulations Security Efficiency Do more with less Make fewer mistakes Do it more quickly Contain Costs Improve SLTs SLT = Service Level Target Page 8 Nov-08 Siemens IT Solutions and Services

Government of Canada: Identity and access management @ Internet white pages Challenge One global information system For the Canadian government offices, For the administration units and For all citizens Solution Benefits Standards-based directory for Public white pages E-mail integration Printed phone books Public Key Infrastructure (PKI) Improved internal and external communications Improved processes in public services Saved 1.5 mil $ within the first two years by reduction of printed phone directories Reduced calls in the call center Page 9 Nov-08 Siemens IT Solutions and Services

Government of Canada: Identity and access management @ Internet white pages http://direct.srv.gc.ca/cg i-bin/direct500/be DirXweb http Public access: via Internet Secure Application for Key Management Services: Integrated PKI with Entrust CA Government Electronic Directory Services based on DirX 280,000 objects: Employees, departments, e-mail, phone numbers, postal addresses, etc. 100,000 hits / day LDAP Internal access LDAP clients English and French GUI s E-mail integration Local administration by departments Page 10 Nov-08 Siemens IT Solutions and Services

Government of Canada Government Electronic Directory Services Page 11 Nov-08 Siemens IT Solutions and Services

Dutch Tax Office Challenge Efficient support of User Management Authentication Management Authorization Management Monitoring and Auditing Benefits Efficient administration Reduced help desks costs Higher security Solution DirX Directory und DirX Identity Professional Synchronization using automated workflows Central administration of user accounts and passwords User self services Role-Based Access Control Page 12 Nov-08 Siemens IT Solutions and Services

Dutch Tax Office Architectural overview Belastingdienst (Tax Office) Federation Web Interface Target Systems Active Directory Organization Personnel Lotus Notes SAP - ERP Employee SAP HR - User Accounts - Passwords - Password synchronization - Group Assignments - Consolidation - Auditing & BI - Reduced Sign-on RACF UNIX PAM Sybase Roles DirX Identity Permissions egovernment HelpDesk Page 13 Nov-08 Siemens IT Solutions and Services

City of Braunschweig Challenge Simplification of user administration Up-to-date and consistent data Higher security Improved competitiveness Basis for the configuration of new, innovative egovernment services Automated updates of user data Benefits Automated data update from local authorities Employee data always up to date Better service for the citizens Cost savings Logically consistent, globally available directory Solution Metadirectory as the central data platform Data synchronization from various sources: e.g. HR data bases, user administration of telephone systems, PC network or building management system Synchronization and replication tools Page 14 Nov-08 Siemens IT Solutions and Services

City of Braunschweig Architectural overview HR data base City of Braunschweig Average costs CSV file Directory Service MS Project server User accounts data network ADS Helpdesk and inventory management Organizational structure City of Braunschweig Telephone data organizations Telephone data persons Rebilling system CTR Internet / Intranet Content management system Page 15 Nov-08 Siemens IT Solutions and Services

City of Braunschweig Citizen Portal Page 16 Nov-08 Siemens IT Solutions and Services

IAM Solutions at work for public sector Public Sector Defense & Intelligence Public Security Public Administration Employment and Pension Services BWI Ministries of Defense: Germany, Switzerland, Denmark Department of National Defense, CA Metropolitan Police London, UK Ministry of Interior Italy Department of Justice, NL Sample Key Customers Dutch Tax Office, NL City of Braunschweig HZD, Germany GTZ, Germany Canadian Government Canton St. Gallen, CH AMS Sweden Deutsche Rentenversicherung Selected Enterprise Customers Volkswagen AG Deutsche Telekom Page 17 Nov-08 Siemens IT Solutions and Services

Contact Austria/CEE: Horst Bliedung Director International Sales CEE Identity Management and Biometrics Telephone: +49 (89) 636 31039 Internet: www.siemens.com/iam Page 18 Nov-08 Siemens IT Solutions and Services

Thank you for your attention