Only Gold Finger lets organizations perform Active Directory based security and effective-access analysis.
- Who can create domain user accounts and misuse them to compromise assets?
- Who can delete domain user accounts to disrupt access to organizational assets?
- Who can reset user account passwords to easily engage in corporate identity theft?
- Who can enable disabled domain user accounts to potentially misuse them?
- Who can unlock locked domain user accounts to keep guessing passwords?
|
- Who can create domain security groups and mislead users into using them?
- Who can delete domain security groups to deny access to all protected assets?
- Who can modify domain security groups to obtain access to all protected assets?
- Who can convert security groups into non-security groups leaving assets vulnerable?
- Who can delete entire organizational units to critically disrupt security and access?
|