Authors:
Alexander Puchta
1
;
Sebastian Groll
2
and
Günther Pernul
2
Affiliations:
1
Nexis GmbH, Franz-Mayer-Str. 1, 93053 Regensburg, Germany
;
2
Chair of Information Systems, University of Regensburg, Universitätsstraße 31, 93053 Regensburg, Germany
Keyword(s):
Identity and Access Management, IAM, Access Control, Architecture, Big Data, Stream Data, Real Time Analysis.
Abstract:
Identity and access management (IAM) functions as a core component for today’s enterprises managing digital identities and their access to resources. However, IAM systems are quite isolated from other applications with useful information resulting in individual data pots. By interconnecting these systems, important information on relevant IAM entities like criticality or usage information can be additionally gathered for further improvement. Current IAM landscapes within enterprises are not prepared for such challenges as the data needs to be harmonised, analysed, and verified. Within this work a state-of-the-art IAM architecture in enterprises and existing shortcomings are defined. Based on these, an extended IAM architecture scheme is proposed and described in detail. Key component is the integration of additional information sources for mutual benefit in IAM and external applications. Finally, the approach is applied to two use cases based on real data. They originate from our con
ducted IAM projects and show the feasibility of the proposed architecture.
(More)