SharePoint Security

SharePoint 2010 Security

The Challenge

As SharePoint continues to become a more strategic solution for enterprises with an increasing amount of confidential information being stored in the SharePoint environment organizations are starting to demand more security and control than what is currently offered in SharePoint.

  • Currently SharePoint offers no support for:
    • Enterprise entitlements that exists outside of Active Directory
    • No management for authorization across multiple sites
    • No audit trail of access and authorization activities

The BiTKOO Approach

Keystone for SharePoint 2010 provides authorization services that bridge the gap between SharePoint’s own capabilities and the real-world demands of security-conscious enterprises. BiTKOO is committed to making Keystone for SharePoint 2010 a turnkey solution that can fit seamlessly in any organization without the need for significant customization. Keystone can be delivered as a software-only solution, hardware appliance, virtual appliance, or delivery from the Cloud.

Keystone delivers fine-grained authorization for SharePoint through run-time calls to any number of authorization sources containing user attributes. This means that authorization for multiple (possibly hundreds or thousands) SharePoint instances can be based on existing authorization within Active Directory, enterprise applications, an identity and access management framework, or anywhere that authorization and entitlements have already been established and proven.

Key Benefits

  • Improved Efficency
    • With Keystone for SharePoint there is no need for custom coding which enables Development teams to focus on the core business values of the their applications instead of writing custom security code
    • Keystone streamlines security by allowing the reuse of policies across SharePoint which eliminates the need to rewrite redundant policies
    • By leveraging XACML open standards, Keystone seamlessly integrates with a broad range of technologies
  • Enhanced Security
    • Keystone allows security policies to be externalized and unified across applications/technology silos which eliminates inconsistencies in policy interpretation, creation, deployment and enforcing which reduces unintentional access by users
    • Keystone enforces fine-grained access control for all users across all Keystone-protected applications
    • Keystone administrators can easily create information barriers to prevent a conflict of interest
  • Compliance
    • Keystone enforces segregation of duties and access control on SharePoint and auditing the SharePoint entitlement lifecycle of individuals
    • Keystone records all actions performed within the Keystone system. Administrators and auditors can generate real-time reports on who has or had access to what functionality and resources, under what conditions, and who made what policy changes
    • Keystone is a highly scalable solution that is designed to support growing organizations. It can grow as the demands of the business grow

    Learn More:
    Keystone
    SecureWithin