skip navigation

sign up to stay connected

Solutions:

Compliance

Enforcing & Monitoring Employee Access

For more than a decade, government and industry bodies around the world have issued a growing number of regulations designed—in whole or in part—to ensure the security, integrity, and confidentiality of personal and corporate data. These mandates span a range of industries:

REGULATIONS

INDUSTRIES AFFECTED

HIPAA

Healthcare

PCI DSS

Any organization that accepts credit cards

Data Protection Act

Any organization that processes personal data

ISO 27001 Certification

Organization's that require ISO certification

Basel II, GLBA, and FFIEC

Financial Services

FDA CFR Part 11

Pharmaceutical, medical device manufacturers, and other FDA regulated industries

NERC and CIP

Utilities

Sarbanes-Oxley (SoX)

Any publicly traded company


Access Control Requirements
All of these regulations share common access control requirements—controlling user authentication and access, enforcing strong password policies, implementing strong authentication, monitoring all authentication events, automatically terminating access for unauthorized or terminated users, and providing reporting that confirms users are no longer authorized to access a system.

Imprivata OneSign for Compliance
Imprivata OneSign’s single sign-on, strong authentication, and user reporting capabilities are critical to meeting such requirements by enabling organizations to manage user identity, authentication, and access to systems. More than 500 organizations are using OneSign to support these requirements.

INDUSTRY

CUSTOMER

BEFORE ONESIGN

AFTER ONESIGN

Financial Services

100-year-old regional bank with 70 locations across three states

• More than 20 passwords
• Many helpdesk password reset calls
• Too much time spent logging in and waiting for resets

• 82% reduction in password reset calls
• More time spent on client service
• Activity reports enabled 5% cost reduction in software licensing

Manufacturing

Large tire manufacturer with an IT “jigsaw puzzle” of passwords and systems as a result of acquisitions

More than 50 passwords
• Many unconnected IT systems
• Relying on weak Windows login

• Replaced Windows login with finger biometrics and tokens, elminating all passwords
• Able to better comply with SoX reporting requirements

Healthcare

215-bed hospital, with a nursing facility, health and fitness institute, child care center, and a medical office building in suburban Chicago

• Seven to nine passwords
• Separate logins for remote access
• Slow response to critical care needs

• 30% improvement in helpdesk productivity
• Reduced clinician logins to one
• Much faster access to patient information

State and Local Government

Police department with patrol officers, clerical workers, and administrators

• No control over logins to various third-party systems (state, FBI)
• Unique passwords for many internal systems
• Passwords interfering with safety and rapid response of officers

• Rapid single sign-on to ALL applications, including internal, third-party, and Web-based
• Secure laptops using integrated finger biometrics combined with SSO