Secure Service Desk
Password reset tickets at the service desk are a great vulnerability for hackers to exploit. In the absence of a self-service password reset solution to direct users to, it is up to the service desk agent to verify that the caller is the owner of the account, before issuing a new password. Secure Service Desk is a tool that enables organizations to enforce secure user verification at the service desk. Use the tool to reduce your social engineering vulnerability, and support your greater IT security infrastructure.
User verification at the service desk often relies on static data in Active Directory. Security questions like “What’s your employee ID” are common, and can easily be sourced by cybercriminals in a targeted social engineering attack. With Secure Service Desk you can verify the accounts of users with existing data in Active Directory that can go beyond knowledge-based authentication. For example, you can send a one-time code to the mobile number associated with the user’s account. You can even use existing authentication services such as Duo Security, Okta Verify, PingID, and Symantec VIP to verify callers.