Intelligent CISO Issue 52 | Page 46

industry unlocked
privileged access to any part of the system . Outdated user accounts are discoverable and any privileged credentials can easily be revoked , which keeps hackers from successful attacks that leverage outdated staff accounts . This also means that third parties like suppliers and contractors can only see systems that are relevant to them and cannot ‘ bounce ’ to unrelated systems .
A robust PAM solution also secures machine-to-machine ( M2M ) components within a system . So , even if a hacker somehow gains control of an IoT device in an automated warehouse , for example , the PAM solution has not granted privileged access to that device .
Therefore , the hacker cannot use it as a platform from which to further their exploits . To secure the system even further , a full-featured PAM solution is capable of real-time monitoring of all privileged session activity , automatically terminating suspicious sessions or alerting an admin .
Remaining complaint and secure
Not only does this type of technology significantly enhance security , but it enables the business to remain compliant . The retail industry is subject to a wide variety of regulations with which companies must be complying – for example , PCI DSS , GDPR , NIST and SOX , to name just a few . Also , along with the session monitoring capabilities , if the PAM solution also records and makes it searchable every session , there is always an audit trail to aid in compliance with all those regulations . Furthermore , the recorded sessions are also useful for security reviews , as well as for the training of security team members . It is a win-win scenario for retailers .
Cybersecurity in the retail industry does not need to be complicated and retailers need to compromise between new and old technology . However , it is essential that we start to acknowledge the risks , implement PAM technology that can combat this and start to turn the tide – shining a light on just how secure and innovative the retail space can be . u
46 www . intelligentciso . com