International Cyber Expo International Cyber Expo
  • About Us
Tuesday, 21 July, 2026
IT Security Guru
International Cyber Expo
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us
No Result
View All Result
IT Security Guru
No Result
View All Result

Why Identity is the perimeter you should care about

by The Gurus
November 5, 2015
in This Week's Gurus
Share on FacebookShare on Twitter

Why Identity is the perimeter you should care about

Traditional Options for Protecting Your Network’s Perimeter

Most, if not all organisations protect themselves at the perimeter with one or more firewalls, and additionally, many organisations add layers of protection inside the network and the DMZ. Vendors offer a vast array of products to help, including intrusion detection systems, intrusion prevention systems, email filtering, and anti-virus and anti- malware software. Organisations can also choose more modern solutions designed to protect against today’s advanced attacks; options include network- or endpoint-based threat detection products, incident response tools, and behavioral analysis products.
Although these traditional solutions add valuable additional layers of protection, none provides a silver bullet. In fact, we know from today’s threat landscape and our experience in responding to attacks, that protection at the perimeter of the organization is failing. While most traditional solutions provide some level of protection against attacks, we know that breaches are inevitable — eventually, traditional perimeter protection will fail and attackers will get in.
To understand why this is the case, let’s look at the basic anatomy of today’s advanced attacks.
First, to penetrate an organization, attackers commonly use a combination of social engineering and malware, often in the form of an email phishing attack. Specifically, they target an organisation using information harvested via social engineering, social media, and open source data, and then lure unsuspecting users into downloading malware onto their computers.
Once the attackers have established an initial foothold, either through the malware approach just described or by other means, they obtain legitimate credentials — especially credentials with a privileged level of access — or create new credentials, so that they can move laterally to perform reconnaissance and gain higher levels of access.
Attackers typically remain present in the target organisation for long periods of time – often tens to hundreds of days. During this phase, it’s likely that the attacker is no longer using malware; rather, a human actor is using the legitimate credentials that have been obtained or created to blend in with the other activity in the environment.
Once the attackers have found what they’re looking for, they complete their mission by staging the data they’re after and complete the process of stealing what they’ve found.
Untitled

The Key Element to a Successful Attack: Credentials

However attackers breach an organisation’s perimeter, they need one critical thing to successfully complete their mission: credentials.
Attackers can steal credentials from unsuspecting users through a brute force method, or they can obtain the password hash and pass it when required (a pass-the-hash attack). Either method enables attackers to masquerade as real users, blending in with the day-to-day noise of legitimate activity so they can move laterally without detection. In some cases, attackers have the audacity to escalate their privileges — often by exploiting a vulnerability — and create their own credentials within the organisation’s identity store.

Considering Identity as the Perimeter

Traditional perimeter protection (firewalls, intrusion detection systems, anti-virus software, and so on) is valuable, but clearly no longer sufficient to keep attackers from gaining access to corporate networks. Therefore, to protect themselves, organizations need a new paradigm: organisations should stop treating the edge of their network as the only perimeter, and should consider expanding their definition of perimeter to include identity.
This can be achieved by supplementing traditional perimeter protection by adding additional layers of security around the use of any credentials through Two-Factor Authentication, Adaptive Authentication, and Single Sign-On (SSO).
Two-Factor Authentication requires not only something the user knows (a username and password) but also something the user has, such as a one-time password (OTP). By increasing the level of protection associated with the authentication process, Two-Factor Authentication mitigates the risk of attackers misusing legitimate credentials — a stolen user ID and password become worthless to attackers because they lack the associated token or other second factor.
Adaptive Authentication provides an effective option for enabling stronger authentication by analyzing the context of the user behind the scenes. It blends a variety of techniques for assessing a user’s context to achieve an aggregated risk score.  For example, Adaptive Authentication can take into account information about the user’s IP address, device, geographical location, and behavior.
Single Sign-On (SSO) often improves the user experience since users have to log on only once to get access to their applications and data. But SSO also provides other benefits — in particular, it can help safeguard a user’s identity. That is, without SSO, users often suffer from username and password fatigue, and reuse relatively easy to guess usernames and passwords across applications.
It’s important to understand that these approaches not only help prevent attackers from using stolen credentials; they can also help prevent legitimate users from misusing their own credentials.
It’s also important to remember that any protection wrapped around the user’s identity needs to apply wherever those credentials are used which is commonly at the edge of the network, where the user is logging in externally via a VPN or during access to cloud-hosted or on-premises applications.

Keith Graham, CTO, SecureAuth

 
 

Tags: Cyber Securityinformation securityinfosecnetwork securityperimeter securitySecureAuth
ShareTweet
Previous Post

Survey Finds 47% of Companies and Government Agencies Have Been Breached in Last Two Years

Next Post

PhishMe Appoints World-Renowned Threat Researcher and Cybercrime Expert as Chief Threat Scientist

Recent News

What Does the Cyber Industry Want to See From the New UK Government?

What Does the Cyber Industry Want to See From the New UK Government?

July 20, 2026
Purple Logo, capitalised letters: SALT.

Salt Security tackles AI governance challenge with 100 pre-built agentic security policies

July 20, 2026
New Continuous Runtime Security Validation service aims to strengthen fintech cyber resilience

New Continuous Runtime Security Validation service aims to strengthen fintech cyber resilience

July 20, 2026
Scams Now Drive Almost Half of All Malware Detections as Attackers Weaponise Everyday Trust

Scams Now Drive Almost Half of All Malware Detections as Attackers Weaponise Everyday Trust

July 20, 2026

Eskenzi PR banner ad

The IT Security Guru offers a daily news digest of all the best breaking IT security news stories first thing in the morning! Rather than you having to trawl through all the news feeds to find out what’s cooking, you can quickly get everything you need from this site!

Our Address: 10 London Mews, London, W2 1HY

Follow Us

© 2015 - 2026 IT Security Guru - Website Managed by Dessol

  • About Us
Manage Consent
To provide the best experiences, we use technologies like cookies to store and/or access device information. Consenting to these technologies will allow us to process data such as browsing behavior or unique IDs on this site. Not consenting or withdrawing consent, may adversely affect certain features and functions.
Functional Always active
The technical storage or access is strictly necessary for the legitimate purpose of enabling the use of a specific service explicitly requested by the subscriber or user, or for the sole purpose of carrying out the transmission of a communication over an electronic communications network.
Preferences
The technical storage or access is necessary for the legitimate purpose of storing preferences that are not requested by the subscriber or user.
Statistics
The technical storage or access that is used exclusively for statistical purposes. The technical storage or access that is used exclusively for anonymous statistical purposes. Without a subpoena, voluntary compliance on the part of your Internet Service Provider, or additional records from a third party, information stored or retrieved for this purpose alone cannot usually be used to identify you.
Marketing
The technical storage or access is required to create user profiles to send advertising, or to track the user on a website or across several websites for similar marketing purposes.
  • Manage options
  • Manage services
  • Manage {vendor_count} vendors
  • Read more about these purposes
View preferences
  • {title}
  • {title}
  • {title}
No Result
View All Result
  • Home
  • Features
  • Insight
  • Channel News
  • Events
    • Most Inspiring Women in Cyber 2026
  • Topics
    • Cloud Security
    • Cyber Crime
    • Cyber Warfare
    • Data Protection
    • DDoS
    • Hacking
    • Malware, Phishing and Ransomware
    • Mobile Security
    • Network Security
    • Regulation
    • Skills Gap
    • The Internet of Things
    • Threat Detection
    • AI and Machine Learning
    • Industrial Internet of Things
  • Multimedia
  • Product Reviews
  • About Us

© 2015 - 2026 IT Security Guru - Website Managed by Dessol