Site navigation

70% of IT Professionals Overwhelmed by Authentication Systems

Graham Turner

,

New report from Axiad highlights a critical barrier to optimising an organisation’s cybersecurity posture: internal IT complexity that often forces authentication to be done in silos.

Axiad today announced the results of its 2022 Authentication Survey, revealing that executives have their hands full managing the underlying complexity of their authentication practices.

The survey was conducted with 252 security and IT executives (Director and above) in organisations of 2,500 or more employees across a broad variety of industry sectors.

Respondents pointed to several internal challenges that prevent them from addressing authentication in a systematic fashion across the organisation, including the variety of identity types to protect, numerous authentication methods used internally, varied operating systems in use, and existing investments in identity and access management that are often not interoperable.

According to the survey, 70% of security and IT professionals are overwhelmed complexity related to authentication, which is underpinned by these key findings:

  • 70% of respondents have three or more identity and access management (IAM) ecosystems in use; 52% have four or more.
  • 83% said they have both Windows and MacOS operating systems in place; almost half (46%) said they must authenticate against Linux as well.
  • 89% use three or more authentication methods – the most popular are software one time passwords (OTP), passwords and mobile push authentication; 60% use more than five.
  • 79% of respondents said it’s critical to secure people; 68% said machines are critical

This internal complexity often forces organisations to operate numerous, often disconnected, authentication strategies across the organisation, which creates gaps and inconsistencies that can be exploited by bad actors.

In addition, security and IT professionals are challenged by external factors such as regulatory requirements, which impact how an organisation must authenticate and vary widely according to vertical markets, international standards and the public sector.

More than half of the organisations surveyed (54%) must comply with four or more regulatory requirements, and 38% must comply with five or more. The top regulatory and compliance requirements noted by respondents include ISO/IEC 27002, HIPAA, SOX and GDPR.

According to Bassam Al-Khalidi, Co-CEO & Co-Founder, Axiad, “Organisations today are grappling with a complex mix of systems and requirements, resulting in a siloed approach to authentication.

“We are seeing the negative repercussions of these fragmented strategies play out on the front pages right now, as cyber-attackers are exploiting organisations that aren’t systematic in the way they validate a user (or machine) is who they say they are. To enhance your security posture and optimise protection, you need to tame that internal complexity and take a holistic approach to authentication.”


Recommended


The IAM ecosystem is a typical example of authentication complexity. Companies merge, make acquisitions, grow internationally and typically end up working with at least three different IAM vendors, often five or more according to the survey, across the organisation.

It rarely makes sense to replace all of these disparate systems, but that puts pressure on security/IT professionals to manage the risks caused by interoperability issues and authentication inconsistencies. Magnify this complexity by similar challenges across identity types, authentication methods, operating systems and compliance regulations, and it’s clear why so many executives are overwhelmed.


Get the latest news from DIGIT direct to your inbox

Our newsletter covers the latest technology and IT news from Scotland and beyond, as well as in-depth features and exclusive interviews with leading figures and rising stars.

To subscribe, click here.

Graham Turner

Sub Editor

Latest News

AI Editor's Picks Funding

Edinburgh Graduates’ AI Infrastructure Firm Expanse Raises $5.3m

Featured Finance

Fintech Summit 2026 Countdown Enters Final Three Weeks

Business Cybersecurity

Quorum Cyber Announces Intent to Acquire Ontinue

Business Cybersecurity Editor's Picks Security

Hiscox Report Reveals Growing Cost of Cyber Attacks