Education Center

What are Toxic Combinations of Privilege in Cybersecurity?

Toxic combinations of privilege in cybersecurity refers to individuals, such as employees, vendors or partners, being granted access privileges to multiple technologies or systems together that create risks to the business data privacy and access management policies.

A toxic combination typically refers to a combination of Identity and Access Management (IAM) privileges that in isolation may grant an identity an appropriately scoped level of access but when combined lead to the introduction of an unintended level of risk to the efficacy of an organization’s security, compliance, and business governance policies.

