Dr. Tom Shinder’s Blog RSS

All Blogs  »  Dr. Tom Shinder's Blog  »  Microsoft Security Space  »  Blog article: How Do You Protect Yourself Against Rogue Admins?

How Do You Protect Yourself Against Rogue Admins?

Given the recent problems the city of San Francisco has had with a criminal network admin, what have you done to protect yourself from getting into a similar situation? I found an interesting article at TechRepublic that can help you with this problem at http://blogs.techrepublic.com.com/security/?p=569&...l.e036

The key take home messages from this article include:

  • Use the principle of least privilege. Restrict network admins to only those resource they actually manage and no more
  • Everyone on the IT team doesn’t need to have access to the domain admin passwords
  • Daily checks of addition to admin-level groups should be performed and compared with previous days’ lists
  • Every admin activity on the network should be logged
  • When a member of the IT team leaves the company, the employee to be escorted to his desk to collect his belongings, badges and keys. However, before that, an account admin should be removing his accounts, by disabling them first and subsequently removing them.

HTH,

Tom

Thomas W Shinder, M.D., MCSE
Sr. Consultant / Technical Writer
Prowess Consulting www.prowessconsulting.com

PROWESS CONSULTING documentation | integration | virtualization
Email: tshinder@isaserver.org
MVP — Forefront Edge Security (ISA/TMG/IAG)

One Response to “How Do You Protect Yourself Against Rogue Admins?”

  1. Perry Says:

    September 21st, 2008 at 11:54 pm

    Thanks for sharing that tech site.Good one.

Leave a Reply

This is a captcha-picture. It is used to prevent mass-access by robots. (see: www.captcha.net)

You must read and type the 6 chars within 0..9 and A..F, and submit the form.

  

If CAPTCHA image is missing or you cannot read the characters above, please generate a


Receive all the latest articles by email!

Receive Real-Time & Monthly WindowSecurity.com article updates in your mailbox. Enter your email below!
Click for Real-Time sample & Monthly sample

Become a WindowSecurity.com member!

Discuss your security issues with thousands of other network security experts. Click here to join!

Community Area

Log in | Register

Solution Center