roboform enterprise-password management survey

Upload: usunom

Post on 03-Apr-2018

213 views

Category:

Documents


0 download

TRANSCRIPT

  • 7/28/2019 RoboForm Enterprise-Password Management Survey

    1/11

    Password Management Survey

    Siber Systems

    S U R VE Y R E S UL TS A N D C O M M EN TA R Y

    IT Managers Respond

    to the Impact of Password Policieson Security and Productivity

  • 7/28/2019 RoboForm Enterprise-Password Management Survey

    2/11

    Siber Systems

    A growing trend for many companies is to implement stronger passwordpolicies designed to increase network security. Employees in companies from

    across all industries find themselves having too many passwords. This trend hasforced help desks to constantly field requests for password retrieves and resets,causing a waste of time and valuable resources. In addition, many companiesfind new password policies only exacerbate their problems and lead to decreasedsecurity, increased user frustration, and low employee morale.

    In November of 2007 Siber Systems and eMedia conducted a survey inwhich 600 IT professionals were asked a series of questions about passwordsecurity, password convenience, as well as current challenges related topassword management in their respective organizations. The questions rangedfrom What are your primary password management concerns?" to Whatpercentage of calls to your IT staff consist of password-oriented requests?"

    Professionals of all levels and disciplines were represented across manydifferent industries. Executives with titles of Chairman, CEO, President,Principal, Owner, or Vice President accounted for 12% of all respondents.Almost 25% held titles of CIO, CTO, Director, or Security Officer. Close to 30%of respondents were either a Manager, Senior System Administrator, or SystemAdministrator. Engineers, Analysts, Architects, and Developers made up 22%.The remaining 11% held titles of Consultant, Coordinator, Professor, Scientist,Dean, or CFO.

    This report summarizes major findings and shows how RoboForm Enterprise,

    an award-winning password management solution by Siber Systems, canincrease corporate security, eliminate password related help desk calls, improveend user productivity and convenience, and decrease overall IT costs.

    Overview

    1

  • 7/28/2019 RoboForm Enterprise-Password Management Survey

    3/11

    Q : W h at a r e yo u r p r im a ry password management concerns?

    Siber Systems

    As o n e mig h t e xp e ct, th e p rima ry p a sswo rd ma n a g e me n t co n ce rn o f IT p ro fe ssio n a ls is se cu rity.Ye t it is in te re stin g to n o te th e stro n g sh o win g o f o th e r co n ce rn s, su ch a s cre a tin g a p o licy th a t u se rswill a ctu a lly fo llo w, th e n e e d to e d u ca te u se rs o n b e st p ra ctice s, a n d th e lo st p ro d u ctivity a n d u se r fru stra tio n th a t p a sswo rd s (a n d strict p a sswo rd p o licie s) o fte n ca u se .

    Ro b o Fo rm En te rp rise is a p a sswo rd ma n a g e me n t so lu tio n th a t a d d re sse s a ll o f th e se p rima ryco n ce rn s. It o ffe rs e n h a n ce d se cu rity b y a llo win g u se rs to sig n o n to a ll p a sswo rd -p ro te cte d site swith a sin g le , stro n g p a sswo rd . Ro b o Fo rm En te rp rise u se rs o n ly me mo rize o n e Ma ste r Pa sswo rd ,a llo win g th e so ftwa re to ma n a g e a cce ss to a ll we b -b a se d se rvice s.

    Summary Results

    RoboForm Enterprise Addresses All Concerns

    55%

    79%

    31%

    39%

    80%

    100%

    60%

    40%

    20%

    0%

    47%

    Security Creating/enforcing

    an effectivepassword

    security policy(t hat will act ually be

    f ollowed, and notconstantly violated)

    Lost help deskhours or

    help desk staff frustration

    Lost employeeproductivity or

    frustration

    Educatingusers to best

    practices

    38%

    Meetingcompliance

    requirements

    2

  • 7/28/2019 RoboForm Enterprise-Password Management Survey

    4/11

    Q : Wh a t d o y o u t hi n k o f t h e c o nc e p t o f a ' Mas t e r P a s s wo r d?

    Siber Systems

    A Ma ste r Pa sswo rd is o n e stro n g p a sswo rd th a t a n e mp lo ye e u se s to lo g in to a p ro g ra m wh ichca n a u to ma tica lly ma n a g e a ll o th e r p a sswo rds fo r th is u se r's a cco u n ts.

    The concept of the Master Password recognizes that users can only be reasonably expected tore me mb e r a fe w p a s sw o r ds. Afte r a ll, h o w ma n y stro n g p asswo rd s ca n a u se r re me mb e r? With a ll th en e two rk lo g o ns, e ma il a cco u n ts an d we b -b a se d se rvice s a typ ica l u se r co n fro nts, th e a n swe r isn o t ma n y, wh ich is wh y 4 0 % o f re sp o n d e n ts sa id th a t a sin g le Master Password that managesa cce ss to a ll p a sswo rd -p ro te cte d site s a n d se rvice sis a p o ssib le life sa ve r .

    RoboForm Enterprise users log in once using a secure Master Password, allowing the softwareto ta ke ca re o f th e re st, se cu re ly sto rin g a n d ma n a g in g u se rn a me s a n d p a sswo rd s fo r o th e r login-req uired services. It is also intelligent enough to protect against phishing scams as it willn o t p ro vid e lo g in cre d e n tia ls to p h o n y site s.

    Summary Results

    RoboForm Enterprise Reduces Many Passwords to One Secure Password

    21%

    19%

    3%

    17%

    40%It is a possible lifesaver (40%)

    It is not any more secure than enforcing typicalpassword policies (21%)

    It is not any easier than enforcing typicalpassword policies (19%)

    I t w il l n e v er w o rk (3%)

    Ive never heard of it (17%)

    3

  • 7/28/2019 RoboForm Enterprise-Password Management Survey

    5/11

    Q: How many times during a workweek does an average

    employee use company-required passwords?

    Siber Systems

    49% of survey respondents estimate that their users have to use company-required passwords atle a st 2 6 time s a we e k. Wh e n u se rs h a ve to a u th e n tica te th is o fte n , a n yth in g th a t ma ke s th e p ro ce ss

    e a sie r fo r th e m will in cre a se p ro d uctivity a n d ma ke for a h a p p ie r wo rkfo rce .Power users typicallya ve ra g e mo re th a n 1 0 0 lo g in s p e r we e k.

    IT p ro fe ssion a ls wa n t to ke e p re so u rce s se cu re , b u t it's a skin g a lo t to e xp e ct re g u la r n e two rk u se rs tomemorize and use strong passwords as often as the survey results indicate. In that kind of e n viro n me n t it's in e vita b le th a t u se rs will take shortcuts. They'll

    Write down passwords in an insecure location Use th e sa me p a ssword fo r se ve ra l d iffe ren t a cco u n ts Sh a re p a sswo rd s with co -wo rke rs

    Use passwords that are easy to remember, but are also easy for someone to guess or for softwareto cra ck

    Simply establishing a strong password policy won't increase security. In fact, a strong password policyb y itse lf is like ly to re su lt in mo re u se rs ta kin g sh o rtcu ts, th u s d e cre a sin g se cu rity a n d in cre a sin g u se r

    frustration.

    Ro b o Fo rm Ente rp rise man a g e s a ll lo g in s, a llo win g IT d e p a rtme n ts to in sist o n a stro n g p a sswo rdp o licy with o u t e xp e ctin g u se rs to re me mb e r mu ltip le stro n g p a sswo rd s, so me th in g th e y mo st like lywon't do anyway.

    Summary Results

    RoboForm Enterprise Increases User Productivity and Security While Decreasi ng U se r Frustration

    38%

    13%8%

    10%

    31%

    1 to 10 times (13%)

    11 to 25 times (38%)

    26 to 50 times (31%)

    5 1 t o 1 0 0 t im e s ( 1 0 %)

    M o r e t ha n 1 0 0 t i m es ( 8 % )

    4

  • 7/28/2019 RoboForm Enterprise-Password Management Survey

    6/11

    Q: How many passwords is an average employee in your

    organization expected to remember?

    Siber Systems

    The simple fact of the matter is that users are asked to remember too many passwords. A wh o p p in g8 3 % o f re sp o n d e n ts sa id th a t u se rs o n th e ir syste m h a ve to kn o w a t a min imu m o f th re e p a sswo rd s.

    As a sid e n o te , th e n u mb e r o f u se rn a me s a n d p a sswo rd s re q u ire d ma y p ro ve to b e u n d e rre p o rted ,sin ce (b a se d o n p e rso n a l in te rvie ws) a siza b le n u mb e r o f IT p ro fe ssion a ls a n swe ring th is q u e stionse e me d n o t fu lly a wa re o f o th e r p a sswo rd s th a t e mp lo ye e s re q u ire d .

    Ro b oFo rm Enterprise a l l ow s u s e rs t o s e l e c t o n e secure p a ss wo r d a n d then the software ma n a g e s a llthe other secure passwords necessary for other sites and services. Since RoboForm Enterprisere me mb e rs a n d se cu re ly sto re s th e se u se rn a me s a n d p a sswo rd s, th ey ca n b e stro n g , a lp h a n u me ricpasswords, and can be different for every website or application.

    Summary Results

    The RoboForm Enterprise Solution

    56%

    18% 18%

    8%

    1 to 2 3 to 5 6 to 10 More than 10

    80%

    100%

    60%

    40%

    20%

    0%

    5

  • 7/28/2019 RoboForm Enterprise-Password Management Survey

    7/11

    Q : Wh a t p e rc e n t ag e o f c a l ls t o y o u r I T s t a f f c on s i s t o f

    password-oriented requests?

    Siber Systems

    Almo st h a lf o f th o se su rve ye d re p o rte d th a t a t le a st 11 % o f IT sta ff time is sp e n t d e a lin g withp a sswo rd -re la te d re q u e sts. The se results show th e e xte n t o f th e p ro b le m, a n d th e p o te n tia l

    cost-savings of a password management solution like RoboFo rm Enterprise.

    It sh o u ld b e n o te d th a t we b e lie ve the a ctu a l p e rce n ta g e is mu ch h ig h e r. CIOs, IT Ma n a g e rs, a ndSystem Administrators (those with more intimate knowledge) reported significantly higher percentagesof password-related calls than Chairmen, CEOs, and Presidents.

    In ma n y ca se s, th e lo w co sts a sso cia ted with d e p lo yme n t o f Ro b o Fo rm En te rp rise will b e q u icklyrecovered by help desk savings alone. This makes RoboForm Enterprise a smart choice for anyco rp o ra te e n viro n me n t.

    Summary Results

    RoboForm Enterprise Will Reduce Your IT Costs

    52%

    2%

    9%

    37%0 to 10% (52%)

    11 to 25% (37%)

    26 to 50% (9%)

    More than 50% (2%)

    6

  • 7/28/2019 RoboForm Enterprise-Password Management Survey

    8/11

    Q: What immediate password problems are you seeking

    to solve?

    Siber Systems

    66% of respondents report the old y e l lo w s t i ck y n o te problem. Faced with too many passwords tore me mb e r, u se rs will write th e m d o wn in in se cu re lo ca tio n s, many times right next to their computer .Th e re su lts a b o ve a lso d e mo nstra te th a t th e "ye llo w sticky n ote " is n o t th e o n ly p a sswo rd re la te dissu e , a s a typica l IT d e p a rtme nt fa ce s ma n y o th e r p a sswo rd ma n a g e me n t ch alle n g e s a s we ll.

    Can we re a lly b la me th e e mp lo ye e s? It's unreasonable to expect users to memorize multiple strongpasswords. In addition, they're not as concerned about security. They are more interested inproductivity and ease of use.

    One of RoboForm Enterprise's advantages is that it only expects the user to memorize one strong

    password. Once the user authenticates with RoboForm Enterprise, the software securely managesa ll n e two rk a n d we b lo g in s. It ca n b e cu sto mize d to me et co mp a n y secu rity a n d co mp lia n cere q u ire me n ts, re lie vin g so me o f IT b u rd e n , a n d ma kin g life e a sie r fo r e mp lo ye es.

    Summary Results

    RoboForm Enterprise Increases Password Security and Productivity

    54%59%

    66%

    22%

    80%

    100%

    60%

    40%

    20%

    0%

    7%

    Users have toomany usernames

    and passwordsto remember

    Users end upusing the same

    usernames andpasswords for

    each logon

    Users writed o wn o r s to r e

    passwords inunsafe places

    Existingpassword policies

    impact usersproductivity

    Other

    7

  • 7/28/2019 RoboForm Enterprise-Password Management Survey

    9/11

    Q: Which features are most important to you regarding a

    password management solution?

    Siber Systems

    Th e R o b o F o rm E n t e r p ri s e l i s t o f f e at u r e s d e s c r ib e d b e l o w m e e t s a n d e xc e e d s t h e r e q u i re m e n t s o f su r v e yrespondent s.

    RoboForm Ent erprise encrypt s and saves user passwords on t he user's machine only,a n d a u t of i l l s p a ss w o r d s t o l o g i n fo r m s . It ' s a l s o a b l e to g e n e r a te s e c u r e pa s s w o r ds f o r a n a dd i t i o n a l l e v e l o f security.

    Robo F eed t o remember one secure password,w h i c h g i ve s t h e m ac c e s s t o a l l t h e s i t e s a n d s e r vi c e s t h ey n e e d t o us e . T h is c r e a t es a n i d e a l s i t u a ti o n w h e r eI T can have it s st rong password policies, users don't have t o remember t oo many passwords, and t he help desk isn't swamped wit h password-relat ed request s.

    Robo Form mak es it easy to en forc e str ong passw ord manag e m e n t po l i c i e s t h r o u g ho u t a n organizat ion , meet ing t he most st ringent securit y compliance requirement s.

    RoboForm Ent erprise is a very af f ordable product f or most organizat ions, one t hat easily pays f or i t s e l f i n t h e t i m e i t w i l l s a v e r e d u c i n g p a s sw o r d - re l a t e d h e l p desk calls and increasing employee product ivit y.

    R o b o F o rm E n t e r p ri s e u s e r s l o g i n o n c e , a n d t h e p r o g r a m ma n a g e s a l l t h e i r p a s sw o r drequirement s. I t even complet es online f orms, and works wit h I E, Net scape, Mozilla, Firef ox, and more.

    I T m an a gers c a n c o m p l et e l y c u s t o mi z e R o b oForm Ent erprise t o meet ent erprise securit yr e q u i r em e n t s i n l e s s t h a n 1 5 m i n u t e s.

    RoboForm Ent erprise manages passwords f or every t ype of l o g i n y o u r u s e rs w i l l c o n f r o nt , w h e t h er i t s n e t w o rk , w e b , o r a p p l i c a ti o n - b a s ed .

    RoboForm Enterprise is a Complete Solution

    Improves Security:

    Increases Employee Productivity :

    Meets Compliance Requirements:

    Low Cost:

    Easy-to-Use:

    Easy-to-Implement:

    Works with Non-Web-Based Applications:

    orm Ent erprise users only n

    Ent erpr ise -

    Portable : Users can t ake RoboForm Ent erprise wit h t hem on a USB device, sync passwords, wit h a Palm or P o c k e t PC , b a c k u p a n d r e s t o r e, o r p r i n t p a s s w o rd s.

    I T p r o f e ss i o n a ls k n o w t h e v a l u e o f a s t r o ng p a s s w o rd p o l i c y, b u t t h e y a l s o k n o w t h e f r u st r a t io n o f t r y i n g t oenf orce such a policy on users who don't f eel t hat t hey are direct ly responsible f or hacked net works,compromised passwords, or ot her password relat ed issues. The result s show t hat improved securit y, ease of use, and ease of implement at ion are t he most import ant f eat ures in a password management solut ion.

    I T p r o f e ss i o n a ls n e e d a w a y t o e n f o rc e a s t r o n g p a ss w o r d p ol i c y t h a t us e r s w i l l a c t u a ll y f o l l o w, a n d t h a t 'sp r ec i se l y w h at RoboForm Ent erprise provides.

    Summary Results

    80%

    100%

    60%

    40%

    20%

    0%

    PortableWorks withnon-web-based

    applications

    Easy toimplement

    Easy touse

    L ow c os tMeetscompliance

    requirements

    Increasesemploye

    productivity

    Improvessecurity

    83%

    55% 58%

    47%

    73%

    63%

    7% 3%

    8

  • 7/28/2019 RoboForm Enterprise-Password Management Survey

    10/11

    Q: Do you have an existing password management solution?

    Siber Systems

    De sp ite th e cle a r n e e d fo r a p a sswo rd ma n a g e me n t so lu tio n o n ly 1 7 % o f re sp o n d e n ts h a ve aso lu tio n th e y're h a p p y with. Co n se q u e n tly 4 8 % o f co mp a n ie s a re cu rre n tly stru g g lin g with th is issu e ,wh a t's a la rmin g is th a t 3 5 % fe e l th e y d o n 't n e e d a p a sswo rd ma n a g e me n t so lu tio n a t a ll.

    Ne ve rth e le ss, b a se d o n th e se re su lts, it's a p p a re n t th a t a t le a st h a lf o f a ll re sp o n d in g co mp a n ie s a reh a vin g d ifficu lty in fin d in g a so lu tio n th a t is a rig h t fit fo r th e ir o rg a n iza tio n .

    If yo u wa n t to sta y cu rre n t with th e se cu rity issu e s fa ce d b y yo u r co lle a g u e s, yo u o we it to yo u rse lf tog e t fa milia r with th e Ro b oFo rm En te rp rise so lu tio n .

    Summary Results

    Ro b o F or m E n t er p r ise i s t h e Ri g h t S o l u ti o n f o r Yo u

    11%

    17%

    35% 37%

    Yesand we are happy

    with it

    Yes, butwe are unhappy

    with it

    80%

    100%

    60%

    40%

    20%

    0% Noand we do not

    need one

    No, butwe are looking

    f or o ne

    9

  • 7/28/2019 RoboForm Enterprise-Password Management Survey

    11/11

    Overall Summary

    Siber Systems

    Du e to th e g ro win g n u mb e r o f o n lin e a n d o fflin e a p p lica tio n s th a t re q u ire u se rn a me a n d p a sswo rdlo g o n s, mo re th a n a th ird o f co mp a n ie s su rve ye d p la n to imp le me n t a n e w, o r imp ro ve a n e xistin g

    p a sswo rd ma n a g e me n t so lu tio n b e fo re th e e n d o f 2 0 0 8.

    To p re a so n s o ffe re d fo r imp le me n tin g a n e w so lu tio n /imp ro vin g a n e xistin g o n e e mp h a size d th en e e d to imp ro ve se cu rity, h a ve a so lu tio n th a t is e a sy to imp le me n t a n d u se , a s we ll a s o n e th a tin cre a se s th e p ro d u ctivity o f b o th h e lp d e sk sta ff a n d th e ra n k a n d file e mp lo ye e .

    Th e ma jo rity o f IT p ro fe ssio n a ls in d ica te d th a t wh ile th e y n e e d to , a n d a re se e kin g to ma ke th e ir wo rk e n viro n me n t mo re se cu re a n d p ro d u ctive , th e y a re a lso fo cu se d o n co mp lyin g with co rp o ra tea n d g o ve rn me n t re g u la tio n s.

    De sp ite th e in cre a se d e mp h a sis o n p a sswo rd ma n a g e me n t, o n ly 1 7 % re p o rt th a t th e y b o th h a ve a ne xistin g p a sswo rd ma n a g e me n t so lu tio n a n d a re h a p p y with it.

    Ma n y o rg a n iza tio n s cu rre n tly stru g g le with p a sswo rd ma n a g e me n t issu e s. Ro b o Fo rm En te rp risele ts co mp a n ie s imp le me n t a lo w-risk (try b e fo re yo u b u y), co st-e ffe ctive , e a sy, a n d se cu re p a sswo rdma n a g e me n t so lu tio n . It will me e t a n d e xce e d th e e xp e cta tio n s o f e ve n th e mo st d e ma n d in g ITp ro fe ssio n a ls, a s it is e a sy to imp le me n t, u se r-frie n d ly, a n d p a ys fo r itse lf in co st sa vin g s a n din cre a se d p ro d u ctivity.

    Fo r mo re in fo rma tio n a b o u t Ro b o Fo rm En te rp rise , visit www.ro b o fo rm.co m/e n te rp rise .

    Ab o u t Sib e r Syste ms:Fo u n d e d in 1 9 9 5 , Sib e r Syste ms cre a te s a n d ma rke ts a wid e ra n g e o f so ftwa re to b o thp ro fe ssio n a l p ro g ra mme rs a n d th e g e n e ra l p u b lic. Th e co mp a n y's th re e b e st-kn o wn p ro d u cts a reRo b o Fo rm, Ro b o Fo rm2 Go , a n d Go o d Syn c. Ro b o Fo rm, a u n iq u e p a sswo rd a n d id e n tity o rg a n ize r fo r PCs a n d mo b ile d e vice s, h a s o ve r two millio n a ctive u se rs wo rld wid e a n d is a va ila b le in b o thco n su me r a n d e n te rp rise ve rsio n s. Ro b o Fo rm2 Go is a p o rta b le ve rsio n o f Ro b o Fo rm th a t ru n sd ire ctly fro m a USB fla sh d rive co mb in in g co n ve n ie n t a n d se cu re p a sswo rd ma n a g e me n t withco mp le te p o rta b ility. Go o d Syn c is a p o we rfu l, ye t e a sy-to -u se file b a cku p a n d syn ch ro n iza tio nso ftwa re . Th e firm a lso lice n se s va rio u s d a ta p a rsin g , co mp ila tio n , a n d tra n sfo rma tio n p ro d u ctsto ma jo r te ch n o lo g y co mp a n ie s. He a d q u a rte re d in Fa irfa x, Virg in ia , Sib e r Syste ms is p riva te ly

    h e ld .

    Conclusion

    10