{"id":"https://openalex.org/W3194116720","doi":"https://doi.org/10.1145/3465481.3470055","title":"Towards Improving Identity and Access Management with the IdMSecMan Process Framework","display_name":"Towards Improving Identity and Access Management with the IdMSecMan Process Framework","publication_year":2021,"publication_date":"2021-08-16","ids":{"openalex":"https://openalex.org/W3194116720","doi":"https://doi.org/10.1145/3465481.3470055","mag":"3194116720"},"language":"en","primary_location":{"id":"doi:10.1145/3465481.3470055","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3465481.3470055","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 16th International Conference on Availability, Reliability and Security","raw_type":"proceedings-article"},"type":"article","indexed_in":["crossref"],"open_access":{"is_oa":false,"oa_status":"closed","oa_url":null,"any_repository_has_fulltext":false},"authorships":[{"author_position":"first","author":{"id":"https://openalex.org/A5087077755","display_name":"Daniela P\u00f6hn","orcid":"https://orcid.org/0000-0002-6373-3637"},"institutions":[{"id":"https://openalex.org/I40527276","display_name":"Universit\u00e4t der Bundeswehr M\u00fcnchen","ror":"https://ror.org/05kkv3f82","country_code":"DE","type":"education","lineage":["https://openalex.org/I1315109972","https://openalex.org/I40527276","https://openalex.org/I4387152969"]}],"countries":["DE"],"is_corresponding":true,"raw_author_name":"Daniela P\u00f6hn","raw_affiliation_strings":["Universit\u00e4t der Bundeswehr M\u00fcnchen, DE"],"affiliations":[{"raw_affiliation_string":"Universit\u00e4t der Bundeswehr M\u00fcnchen, DE","institution_ids":["https://openalex.org/I40527276"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5073210871","display_name":"Sebastian Seeber","orcid":null},"institutions":[{"id":"https://openalex.org/I40527276","display_name":"Universit\u00e4t der Bundeswehr M\u00fcnchen","ror":"https://ror.org/05kkv3f82","country_code":"DE","type":"education","lineage":["https://openalex.org/I1315109972","https://openalex.org/I40527276","https://openalex.org/I4387152969"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Sebastian Seeber","raw_affiliation_strings":["Universit\u00e4t der Bundeswehr M\u00fcnchen, DE"],"affiliations":[{"raw_affiliation_string":"Universit\u00e4t der Bundeswehr M\u00fcnchen, DE","institution_ids":["https://openalex.org/I40527276"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5017235107","display_name":"Tanja Hanauer","orcid":null},"institutions":[{"id":"https://openalex.org/I4210138524","display_name":"Dexcom (United States)","ror":"https://ror.org/03ra42c27","country_code":"US","type":"company","lineage":["https://openalex.org/I4210138524"]}],"countries":["US"],"is_corresponding":false,"raw_author_name":"Tanja Hanauer","raw_affiliation_strings":["CANCOM SE, DE"],"affiliations":[{"raw_affiliation_string":"CANCOM SE, DE","institution_ids":["https://openalex.org/I4210138524"]}]},{"author_position":"middle","author":{"id":"https://openalex.org/A5083471809","display_name":"Jule Anna Ziegler","orcid":"https://orcid.org/0000-0002-8263-0457"},"institutions":[{"id":"https://openalex.org/I4210163716","display_name":"Leibniz Supercomputing Centre","ror":"https://ror.org/05558nw16","country_code":"DE","type":"facility","lineage":["https://openalex.org/I109144446","https://openalex.org/I4210163716"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"Jule A. Ziegler","raw_affiliation_strings":["Leibniz Supercomputing Centre, DE"],"affiliations":[{"raw_affiliation_string":"Leibniz Supercomputing Centre, DE","institution_ids":["https://openalex.org/I4210163716"]}]},{"author_position":"last","author":{"id":"https://openalex.org/A5064830909","display_name":"David Schmitz","orcid":null},"institutions":[{"id":"https://openalex.org/I4210163716","display_name":"Leibniz Supercomputing Centre","ror":"https://ror.org/05558nw16","country_code":"DE","type":"facility","lineage":["https://openalex.org/I109144446","https://openalex.org/I4210163716"]}],"countries":["DE"],"is_corresponding":false,"raw_author_name":"David Schmitz","raw_affiliation_strings":["Leibniz Supercomputing Centre, DE"],"affiliations":[{"raw_affiliation_string":"Leibniz Supercomputing Centre, DE","institution_ids":["https://openalex.org/I4210163716"]}]}],"institutions":[],"countries_distinct_count":2,"institutions_distinct_count":5,"corresponding_author_ids":["https://openalex.org/A5087077755"],"corresponding_institution_ids":["https://openalex.org/I40527276"],"apc_list":null,"apc_paid":null,"fwci":0.2754,"has_fulltext":false,"cited_by_count":1,"citation_normalized_percentile":{"value":0.61675288,"is_in_top_1_percent":false,"is_in_top_10_percent":false},"cited_by_percentile_year":{"min":89,"max":94},"biblio":{"volume":null,"issue":null,"first_page":"1","last_page":"10"},"is_retracted":false,"is_paratext":false,"is_xpac":false,"primary_topic":{"id":"https://openalex.org/T12034","display_name":"Digital and Cyber Forensics","score":0.9957000017166138,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},"topics":[{"id":"https://openalex.org/T12034","display_name":"Digital and Cyber Forensics","score":0.9957000017166138,"subfield":{"id":"https://openalex.org/subfields/1710","display_name":"Information Systems"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T10799","display_name":"Data Visualization and Analytics","score":0.9940999746322632,"subfield":{"id":"https://openalex.org/subfields/1707","display_name":"Computer Vision and Pattern Recognition"},"field":{"id":"https://openalex.org/fields/17","display_name":"Computer Science"},"domain":{"id":"https://openalex.org/domains/3","display_name":"Physical Sciences"}},{"id":"https://openalex.org/T11719","display_name":"Data Quality and Management","score":0.9936000108718872,"subfield":{"id":"https://openalex.org/subfields/1803","display_name":"Management Science and Operations Research"},"field":{"id":"https://openalex.org/fields/18","display_name":"Decision Sciences"},"domain":{"id":"https://openalex.org/domains/2","display_name":"Social Sciences"}}],"keywords":[{"id":"https://openalex.org/keywords/identity-management","display_name":"Identity management","score":0.7590560913085938},{"id":"https://openalex.org/keywords/computer-science","display_name":"Computer science","score":0.5599267482757568},{"id":"https://openalex.org/keywords/process","display_name":"Process (computing)","score":0.5314542055130005},{"id":"https://openalex.org/keywords/process-management","display_name":"Process management","score":0.4772753119468689},{"id":"https://openalex.org/keywords/identity","display_name":"Identity (music)","score":0.46493953466415405},{"id":"https://openalex.org/keywords/access-management","display_name":"Access management","score":0.44261884689331055},{"id":"https://openalex.org/keywords/access-control","display_name":"Access control","score":0.3440507650375366},{"id":"https://openalex.org/keywords/knowledge-management","display_name":"Knowledge management","score":0.3223249316215515},{"id":"https://openalex.org/keywords/business","display_name":"Business","score":0.31871581077575684},{"id":"https://openalex.org/keywords/computer-security","display_name":"Computer security","score":0.20747756958007812},{"id":"https://openalex.org/keywords/computer-network","display_name":"Computer network","score":0.14732536673545837}],"concepts":[{"id":"https://openalex.org/C555379026","wikidata":"https://www.wikidata.org/wiki/Q977772","display_name":"Identity management","level":3,"score":0.7590560913085938},{"id":"https://openalex.org/C41008148","wikidata":"https://www.wikidata.org/wiki/Q21198","display_name":"Computer science","level":0,"score":0.5599267482757568},{"id":"https://openalex.org/C98045186","wikidata":"https://www.wikidata.org/wiki/Q205663","display_name":"Process (computing)","level":2,"score":0.5314542055130005},{"id":"https://openalex.org/C195094911","wikidata":"https://www.wikidata.org/wiki/Q14167904","display_name":"Process management","level":1,"score":0.4772753119468689},{"id":"https://openalex.org/C2778355321","wikidata":"https://www.wikidata.org/wiki/Q17079427","display_name":"Identity (music)","level":2,"score":0.46493953466415405},{"id":"https://openalex.org/C2778002324","wikidata":"https://www.wikidata.org/wiki/Q4488810","display_name":"Access management","level":2,"score":0.44261884689331055},{"id":"https://openalex.org/C527821871","wikidata":"https://www.wikidata.org/wiki/Q228502","display_name":"Access control","level":2,"score":0.3440507650375366},{"id":"https://openalex.org/C56739046","wikidata":"https://www.wikidata.org/wiki/Q192060","display_name":"Knowledge management","level":1,"score":0.3223249316215515},{"id":"https://openalex.org/C144133560","wikidata":"https://www.wikidata.org/wiki/Q4830453","display_name":"Business","level":0,"score":0.31871581077575684},{"id":"https://openalex.org/C38652104","wikidata":"https://www.wikidata.org/wiki/Q3510521","display_name":"Computer security","level":1,"score":0.20747756958007812},{"id":"https://openalex.org/C31258907","wikidata":"https://www.wikidata.org/wiki/Q1301371","display_name":"Computer network","level":1,"score":0.14732536673545837},{"id":"https://openalex.org/C24890656","wikidata":"https://www.wikidata.org/wiki/Q82811","display_name":"Acoustics","level":1,"score":0.0},{"id":"https://openalex.org/C111919701","wikidata":"https://www.wikidata.org/wiki/Q9135","display_name":"Operating system","level":1,"score":0.0},{"id":"https://openalex.org/C121332964","wikidata":"https://www.wikidata.org/wiki/Q413","display_name":"Physics","level":0,"score":0.0}],"mesh":[],"locations_count":1,"locations":[{"id":"doi:10.1145/3465481.3470055","is_oa":false,"landing_page_url":"https://doi.org/10.1145/3465481.3470055","pdf_url":null,"source":null,"license":null,"license_id":null,"version":"publishedVersion","is_accepted":true,"is_published":true,"raw_source_name":"Proceedings of the 16th International Conference on Availability, Reliability and Security","raw_type":"proceedings-article"}],"best_oa_location":null,"sustainable_development_goals":[{"score":0.6299999952316284,"id":"https://metadata.un.org/sdg/9","display_name":"Industry, innovation and infrastructure"}],"awards":[],"funders":[],"has_content":{"grobid_xml":false,"pdf":false},"content_urls":null,"referenced_works_count":10,"referenced_works":["https://openalex.org/W141550196","https://openalex.org/W1823329909","https://openalex.org/W2138199375","https://openalex.org/W2290644346","https://openalex.org/W2330903175","https://openalex.org/W2410119635","https://openalex.org/W2528553144","https://openalex.org/W2883338078","https://openalex.org/W2885290579","https://openalex.org/W4232940466"],"related_works":["https://openalex.org/W1807703735","https://openalex.org/W4310934770","https://openalex.org/W4313185140","https://openalex.org/W2614795314","https://openalex.org/W1564746865","https://openalex.org/W4252422028","https://openalex.org/W4391222116","https://openalex.org/W4238930562","https://openalex.org/W2296702370","https://openalex.org/W4390678258"],"abstract_inverted_index":{"In":[0,51],"today\u2019s":[1],"networks,":[2],"administrative":[3],"access":[4,45,72],"to":[5,21,28,53,116,143,165],"Linux":[6,151],"servers":[7],"is":[8,17,127],"commonly":[9],"managed":[10],"by":[11],"Privileged":[12],"Access":[13],"Management":[14],"(PAM).":[15],"It":[16],"not":[18,175],"only":[19],"important":[20],"monitor":[22],"these":[23],"privileged":[24],"accounts,":[25],"but":[26,174],"also":[27,109],"control":[29],"segregation":[30],"of":[31,89,125,150],"duty":[32],"and":[33,71,129,136,180],"detect":[34],"keys":[35],"as":[36,38],"well":[37],"accounts":[39],"that":[40],"potentially":[41],"bypass":[42],"PAM.":[43],"Unprohibited":[44],"can":[46,130],"become":[47],"a":[48,58,64,100,144,158],"business":[49],"risk.":[50],"order":[52],"improve":[54],"the":[55,80,95,111,117,120,123,138,148],"security":[56,65,101],"in":[57,140,147,157,169],"controlled":[59,121,159],"manner,":[60],"we":[61,177],"establish":[62],"IdMSecMan,":[63],"management":[66,73,76,102],"process":[67,103],"tailored":[68],"for":[69,86,106],"identity":[70],"(IAM).":[74],"Security":[75],"processes":[77,93],"typically":[78],"use":[79],"Deming":[81],"Cycle":[82],"or":[83,92],"an":[84],"adaption":[85],"continuous":[87],"improvements":[88],"products,":[90],"services,":[91],"within":[94],"network":[96],"infrastructure.":[97],"We":[98,153],"adjust":[99],"with":[104,162],"visualization":[105],"IAM,":[107],"which":[108],"shifts":[110],"focus":[112],"from":[113],"typical":[114],"assets":[115],"attacker.":[118],"With":[119],"cycles,":[122],"maturity":[124],"IAM":[126],"measured":[128],"continually":[131],"advance.":[132],"This":[133],"paper":[134],"presents":[135],"applies":[137],"work":[139],"progress":[141],"IdMSecMan":[142],"motivating":[145],"scenario":[146],"field":[149],"server.":[152],"evaluate":[154],"our":[155,170],"approach":[156],"test":[160],"environment":[161],"first":[163],"steps":[164],"roll":[166],"it":[167],"out":[168],"data":[171],"center.":[172],"Last":[173],"least,":[176],"discuss":[178],"challenges":[179],"future":[181],"work.":[182]},"counts_by_year":[{"year":2023,"cited_by_count":1}],"updated_date":"2025-11-06T03:46:38.306776","created_date":"2025-10-10T00:00:00"}
