The management of access controls/biometrics in organizations

  • Authors:
  • Errol A. Blake

  • Affiliations:
  • Kennesaw State University, Snellville, GA

  • Venue:
  • InfoSecCD '06 Proceedings of the 3rd annual conference on Information security curriculum development
  • Year:
  • 2006

Quantified Score

Hi-index 0.00

Visualization

Abstract

Information Technology (IT) security has been a highlight of every organization since the inception of computer systems. We have seen the emergence of various forms of IT security or access controls from passwords to biometrics, especially biometrics. This paper is a compilation of different journals, articles and classroom discussions, where five key points have been extracted to show how to effectively manage access controls in organization. The five key points include upper level management's responsibility to (1) establish and implement a System-Specific Policy (SSP) and Access Control Policy (ACP) for access control, (2) foster an environment of trust with their employees, (3) overlap access control with risk management, (4) establish an optimum level of information security spending, and (5) have a liability or insurance policy for losses.