{"id":7232,"date":"2023-05-30T09:27:58","date_gmt":"2023-05-30T13:27:58","guid":{"rendered":"https:\/\/www.jumpcloud.com\/blog\/?p=7232"},"modified":"2023-08-30T14:14:33","modified_gmt":"2023-08-30T18:14:33","slug":"what-is-user-management","status":"publish","type":"post","link":"https:\/\/jumpcloud.com\/blog\/what-is-user-management","title":{"rendered":"What is User Management?"},"content":{"rendered":"\n
User management describes the ability for someone, usually an IT professional, to manage employees\u2019 digital identities, including keeping them up to date and provisioning, monitoring, changing, and revoking their access to different resources. Those resources can be anything from devices, to applications, to networks, to much more.<\/p>\n\n\n\n
Without any form of user management in your organization, users can and will inevitably:<\/p>\n\n\n\n
So, the short answer is yes<\/strong> \u2014 user management is necessary, especially as organizations grow and teams and departments take shape. For example, the marketing team generally requires access to different resources than the accounting team. Proper user management would result in marketing employees gaining access to resources such as Marketo and Salesforce, and finance employees gaining access to internal financial systems, but not vice versa. User management enables IT administrators to manage resources and provision access based on need and role while keeping digital assets secure. <\/p>\n\n\n\n Managing user identities is crucial to the safety and success of any organization. Digital user identities are the number one target of bad actors, which leads to security breaches every day, so IT admins are more invested than ever in making sure that only the right people have access to the right resources.<\/p>\n\n\n\n User management can be done in one of two ways: <\/p>\n\n\n\n The first approach only works for very small organizations (typically fewer than 10 employees), because once you get past 10 users, manual user management becomes a time-sink. Plus, it\u2019s easy for things to go wrong when user management isn\u2019t centralized or automated in any way. <\/p>\n\n\n\n On top of that, modern IT environments are complex, which can make manual user management even more difficult. Many organizations have employees using different operating systems and device types, infrastructure has shifted off-site, productivity platforms have moved to the cloud with big names like Google Workspace and Microsoft 365 shifting to the web browser, and more. Each of these adds a new layer of complexity to user management.<\/p>\n\n\n\n With a manual user management strategy, IT ends up managing a number of mini-directories, because identities are housed all over the place. And, users have to remember a multitude of usernames and passwords, which presents significant risk to organizations\u2019 security posture. This is because users tend to experience password fatigue<\/a> from identity sprawl which forces them to resort to recycling passwords, utilizing weak passwords, or writing passwords down on sticky notes and hiding them underneath their monitors. <\/p>\n\n\n\n 51%<\/a> of people use the same passwords for both work and personal accounts.<\/p>\n<\/blockquote>\n\n\n\n This stat shows how integral proper user management is to organizational security \u2014 such as requiring periodic password resets across all users and specifying password length and complexity requirements. <\/p>\n\n\n\n All in all, once organizations that are taking the manual user management route realize how big of an issue it is or will be in the future, they typically switch to the second approach \u2014 they implement a central directory service as part of their identity and access management (IAM) strategy.<\/p>\n\n\n\n However, the second approach includes a user management system, such as a directory service<\/a>, which enables admins to manage users in a central location and empowers them to automate identity lifecycle management<\/a>. Subsequently, the directory service will then authenticate, authorize, and audit user access to IT resources based on what an IT admin dictates. This takes a lot of the manual effort out of user management, and gives IT some time back for other critical tasks.<\/p>\n\n\n\n Traditionally, user management and authentication services have been grounded with Windows-based on-prem servers, databases, and closed virtual private networks (VPNs) through an on-prem identity provider (IdP) such as Microsoft Active Directory (AD)<\/a>. However, AD doesn\u2019t handle modern IT resources well \u2014 including non-Windows devices, web apps, cloud infrastructure, and more.<\/p>\n\n\n\n On top of that, the way we work has changed, and it will continue to evolve over time. Hybrid work<\/a> is popular, and the perimeter has shifted from traditional office walls to the digital identities employees use to access organizational resources. Because of all of this, many organizations want to shift everything (or as much as possible) to the cloud and away from clunky and outdated on-prem infrastructure. This means they want a cloud-based directory service to solve their user management needs. <\/p>\n\n\n\n The JumpCloud Directory Platform<\/a> does just that \u2014 it\u2019s a cloud-based open directory platform that includes robust user, access, and device management capabilities. <\/p>\n\n\n\n Further, this modern IdP enables comprehensive user management over all of the resources that AD struggles with. Using JumpCloud\u2019s open directory platform, IT can provision and deprovision access to virtually all IT resources including Mac, Windows, Linux, iOS, and Android devices, web and on-prem applications, networks, physical file servers, and more. Further, JumpCloud goes beyond just user management by authenticating and<\/em> authorizing access through a variety of techniques, including multi-factor authentication<\/a>, for increased security.<\/p>\n\n\n\n An example of modern user management is using the JumpCloud Directory Platform and Google Workspace together. With this package, you get a robust, modern cloud-based directory that provides centralized identity, access, and device management, and <\/em>you get a popular collaboration and productivity suite. <\/p>\n\n\n\n JumpCloud extends your Google Workspace users\u2019 identities across other connected resources to give employees access to everything they need, without adding to their identity sprawl. This makes IT\u2019s job easier \u2014 they can centrally manage all users and only worry about a single secure identity for each.<\/p>\n\n\n\n\nUser Management Approaches<\/h2>\n\n\n\n
\n
Challenges With Manual User Management<\/h3>\n\n\n\n
\n
User Management in the Cloud<\/h2>\n\n\n\n
User Management in the Past<\/h3>\n\n\n\n
Modern User Management Example<\/h3>\n\n\n\n