A leading industrial group specializing in the manufacture of automotive components needed to protect their intellectual property data to maintain market leadership.
A leading industrial group specializing in the manufacture of automotive components needed to protect their intellectual property data to maintain market leadership.
A leading industrial group specializing in the manufacture of automotive components needed to protect their intellectual property data to maintain market leadership.
The Challenge
Users accessing sensitive company data from their own devices posed a data security risk.
In some cases, users could also use devices used by other departments, exposing access to sensitive information from finance and R&D, for example.
This risk was compounded by the fact that users in several teams were not restricted to a single computer assigned to them.
The organization also ran security audits which flagged the lack of measures to ensure that users could access applications and data only through company-owned devices.
Each user was allowed to make use of any of the computers available at the office to improve operational flexibility, but this made security and transparency more challenging.
With a team strength of over 2500 employees spread across 42 office locations, implementing a single solution to address the range of challenges was proving difficult.
To sum up, the company needed to control the way its users access their apps and data in order to improve data security and meet compliance requirements.
SOLUTION
Several of Akku's other identity and access management products were also deployed to achieve the company's goals.
Multi-factor authentication was set up to reinforce security during login.
IP-based restrictions were made available to permit user access only from the company's office networks.
Password policies were enforced to ensure users set strong passwords.
Real-world Outcomes
The custom device-based access control contributes significantly to data security by ensuring access to data only from company-owned devices. Security is further enhanced with department-wise and role-wise restrictions to further airlock sensitive data.
IP-based restrictions ensure that sensitive data is accessible only from the company's 42 offices around the world.
Audits are now a breeze with compliance requirements met through the access controls implemented along with the enforcement of multi-factor authentication and a strong password policy.