Access Analyzer Feature Ranking Raffle

Hey Access Analyzer Community!

As many of you know, we released Access Analyzer Version 26, built on an entirely new architecture to help you secure your data faster and more easily than ever. That said, building the new version of Access Analyzer will take time to match the rich feature set we have built up over the last 15+ years, and we want your help shaping the future of Version 26.

That is why we have created a fun game for you to play right in the community. If you are like me and have social media, you have probably seen a tier game where people will go through and rank their categories S, A, B, C, and D. Well, my friends, we have created our own Access Analyzer tier ranking game, and yes, there is money involved.

We’re defining the tiers as:

  • S: Can’t live without it
  • A: Essential for my day
  • B: Makes my day better
  • C: I could live without it
  • D: I don’t care about this

How to play

  1. Make your list: There are four categories, and under each category will be some of the related features from Access Analyzer. You don’t need to rank all of them, but the more you assign a rank, the more you increase your chance to win a $50 Amazon gift card. Just click the feature(s), drag it to your ranking. Now, here is the catch: you can’t just load up everything in S or A tier; we will only be allowing so many slots per tier, so choose wisely.

:check_box_with_check: Pro-tip: You can select multiple items from the same group initially. Once they’re ranked, you can select across multiple categories within the same tier.

  1. Submit: When you finalize your tier list, click Reply with Tier List. This will create a draft reply with your list and give you the opportunity to add any additional comments!

All of this information will feed directly into our Access Analyzer Version 26 roadmap. So if you only have time for one category, choose wisely!! With your help, we plan on building the best community-built Data Security product on the market. So get to playing, and may the best person win!

Also, make sure to subscribe to Access Analyzer Announcements to stay up to date with all the latest and greatest AA news. We are only getting started.

Want rank the features? Visit this topic in the community to view the tier list!

[tier-list=“Netwrix Capability Statements”]
Permissions & Access|Effective access|I can see who actually has access to something, groups and inheritance included.
Permissions & Access|Open access|I can find everything that’s open to everyone.
Permissions & Access|Groups down to people|I can see the actual people behind a group, however deep it nests.
Permissions & Access|Look it up both ways|I can look up what one person can reach, or who can reach one thing.
Permissions & Access|Risky configurations|I get a standing list of the dangerous things sitting in our directory.
Permissions & Access|Direct permissions|I can find access granted to a person instead of through a group.
Permissions & Access|Broken inheritance|I get told when a folder stops inheriting from its parent.
Permissions & Access|Nesting untangled|Deep and circular group nesting gets sorted out for me.
Permissions & Access|Attack paths|I can see the weaknesses an attacker would use to reach domain admin.
Permissions & Access|Hidden admin access|I can find people with admin power who aren’t in any admin group.
Permissions & Access|Access nobody uses|I can see who holds access they have never actually used.
Permissions & Access|Orphaned permissions|I get a cleanup list of deleted accounts still sitting on our permissions.
Permissions & Access|Test before you change|I can see what a permission change would break before I make it.
Access Reviews & Certification|Access reviews|I can send access out for review without building a spreadsheet.
Access Reviews & Certification|Two-person sign-off|The person who recommends a change isn’t the person who approves it.
Access Reviews & Certification|Who owns this|I get a solid guess at the owner of any folder, group or site.
Access Reviews & Certification|Ownership on record|Ownership is written down and kept current instead of living in people’s heads.
Access Reviews & Certification|Audit-scoped reviews|I can review just the systems in scope for SOX or PCI.
Access Reviews & Certification|Access requests|People request access in one place and it’s all on the record.
Access Reviews & Certification|Decisions get applied|When a reviewer says remove someone, it actually happens.
Access Reviews & Certification|One-click attestation|An owner can confirm access from their inbox in one click.
Access Reviews & Certification|Last year’s evidence|I can pull up what we certified in any past cycle.
Access Reviews & Certification|Reviews on a schedule|Reviews run every quarter on their own and chase their own reviewers.
Access Reviews & Certification|Reviewers see their own|Each reviewer only sees the access they’re responsible for.
Access Reviews & Certification|Silence isn’t approval|If nobody answers, it’s recorded as unanswered, not approved.
Remediation & Workflow|Fix it right here|I can fix an over-exposed folder from the finding that showed it to me.
Remediation & Workflow|Account cleanup|I can disable an account and strip every group it’s in, in one go.
Remediation & Workflow|Staged bulk cleanup|Notify, then quarantine, then delete, running across thousands of folders.
Remediation & Workflow|Approval before changes|Nothing changes on a live system until somebody approves it.
Remediation & Workflow|Undo|I can put anything back the way it was.
Remediation & Workflow|Kill a sharing link|I can revoke SharePoint sharing or remove a guest from the finding.
Remediation & Workflow|Run my own script|I can plug my own script in when the built-in fixes don’t cover it.
Remediation & Workflow|Mailbox rights cleanup|I can strip mailbox delegate and Full Access rights in bulk.
Remediation & Workflow|Registry permissions|I can fix a risky registry permission the way I’d fix a folder.
Remediation & Workflow|Hand off automatically|A finding can kick off the work in the other tools we run.
Remediation & Workflow|Public folder cleanup|I can clear out permissions on old public folders.
Remediation & Workflow|Tickets in our helpdesk|A risky finding opens a ticket where my team already works.
Remediation & Workflow|Ask without a login|I can get a recorded yes or no from someone who has no login here.
Remediation & Workflow|Groups, not one-offs|I can turn a pile of one-off grants into groups I can actually manage.
Remediation & Workflow|Dry run|I can see exactly what a fix will touch before it runs.
Data Connectors|NFS Connector|For Linux/Unix File Servers and Nas Devices
Data Connectors|Amazon S3 Buckets|
Data Connectors|MySQL Database|
Data Connectors|Azure Blob Storage|
Data Connectors|AWS FSX|
Data Connectors|Azure File Systems|
Data Connectors|Exchange On-Prem|
Data Connectors|Exchange Online|
Data Connectors|Snowflake|
Data Connectors|Databricks|
Data Connectors|Windows machine settings|
Data Connectors|Group Policy|
Data Connectors|Oracle Database|
Data Connectors|Azure storage|
Data Connectors|RedShift|
[/tier-list]

1 Like

Netwrix Capability Statements Submission

  • S: Run my own script, Account cleanup
  • A: Groups down to people, Access nobody uses, Direct permissions
  • B: Group Policy, Windows machine settings, Tickets in our helpdesk, Effective access, Look it up both ways, Risky configurations, Orphaned permissions, Nesting untangled, Hidden admin access, Broken inheritance
  • C: None
  • D: None

Additional comments:

3 Likes

Netwrix Capability Statements Submission

  • S: Open access, Direct permissions
  • A: Broken inheritance, NFS Connector, Look it up both ways, Effective access, Exchange Online, Group Policy, MySQL Database
  • B: Orphaned permissions, Fix it right here, Account cleanup, Groups down to people, Risky configurations, Windows machine settings, Databricks, Azure File Systems, Amazon S3 Buckets, Exchange On-Prem, RedShift, Oracle Database, Snowflake, Azure storage
  • C: Staged bulk cleanup, Attack paths, Silence isn’t approval, Reviewers see their own, Approval before changes, Dry run, Run my own script, Mailbox rights cleanup, Kill a sharing link, Tickets in our helpdesk, Groups, not one-offs, Undo, Hand off automatically, Registry permissions, Public folder cleanup, Ask without a login, Azure Blob Storage, AWS FSX
  • D: Access nobody uses, Hidden admin access, Two-person sign-off, Test before you change, Access reviews, Audit-scoped reviews, Who owns this, Ownership on record, Reviews on a schedule, Last year’s evidence, One-click attestation, Nesting untangled, Decisions get applied, Access requests

Additional comments:

3 Likes

Netwrix Capability Statements Submission

  • S: Effective access, Open access
  • A: MySQL Database, Direct permissions, Groups down to people
  • B: Broken inheritance, Access reviews, Who owns this, Access nobody uses, Orphaned permissions, Run my own script
  • C: Risky configurations, Nesting untangled, Hidden admin access, Last year’s evidence
  • D: Test before you change, Account cleanup, Exchange On-Prem, Tickets in our helpdesk

Additional comments:

3 Likes

Netwrix Capability Statements Submission

  • S: Effective access, Direct permissions
  • A: Hidden admin access, Who owns this, Ownership on record, Reviewers see their own
  • B: Nesting untangled, Attack paths, Groups down to people, Reviews on a schedule, Risky configurations, Orphaned permissions
  • C: One-click attestation, Access requests, Access reviews, Open access, Group Policy, Windows machine settings, Last year’s evidence
  • D: None

Additional comments: Good to see customers giving a choiice to select the priority with the product used.

2 Likes

Thanks, Brige, and welcome to the Netwrix Community!

We want to gather as much feedback as possible on what data security challenges you would like Access Analyzer to solve for you, and there is no better way to do that than by going directly to the community.

Expect more activities like this from us.

1 Like

Netwrix Capability Statements Submission

  • S: Effective access, Hidden admin access
  • A: Open access, Groups down to people, Nesting untangled, Look it up both ways, Attack paths, Risky configurations, Direct permissions
  • B: Access nobody uses, Amazon S3 Buckets, Group Policy, Broken inheritance, Orphaned permissions, Test before you change
  • C: Account cleanup, Access reviews, Two-person sign-off, Audit-scoped reviews, Who owns this, Ownership on record, Groups, not one-offs, One-click attestation, Reviews on a schedule, Access requests, Staged bulk cleanup, Decisions get applied, Silence isn’t approval, Last year’s evidence, Reviewers see their own, Fix it right here, Approval before changes, Kill a sharing link
  • D: Undo, Run my own script, Hand off automatically, Public folder cleanup, Registry permissions, Mailbox rights cleanup, MySQL Database, AWS FSX, Azure Blob Storage, Tickets in our helpdesk, NFS Connector, Ask without a login, Dry run, Azure File Systems

Additional comments:

2 Likes

Netwrix Capability Statements Submission

  • S: Access reviews, Access requests
  • A: Effective access, Groups down to people, Open access, Who owns this, Ownership on record, Silence isn’t approval, Orphaned permissions
  • B: Risky configurations, Nesting untangled, Attack paths, Audit-scoped reviews, Hidden admin access, Direct permissions, Access nobody uses, Run my own script, Broken inheritance, Last year’s evidence, Reviewers see their own, Look it up both ways, Test before you change, Kill a sharing link
  • C: Staged bulk cleanup, Undo, Approval before changes, Group Policy, One-click attestation, Reviews on a schedule, Decisions get applied, Two-person sign-off, Windows machine settings, Registry permissions, Ask without a login, Fix it right here, Hand off automatically, Public folder cleanup, Groups, not one-offs, Dry run, NFS Connector, Tickets in our helpdesk
  • D: Mailbox rights cleanup, Amazon S3 Buckets, MySQL Database, Azure Blob Storage, AWS FSX, Azure File Systems, Exchange On-Prem, Exchange Online, Azure storage, Oracle Database, Account cleanup, Snowflake, Databricks, RedShift

Additional comments:

1 Like

Netwrix Capability Statements Submission

  • S: Open access, Effective access
  • A: Ownership on record, Who owns this, Amazon S3 Buckets, Hidden admin access
  • B: Groups down to people, Nesting untangled, Kill a sharing link, Fix it right here, Public folder cleanup
  • C: Last year’s evidence, Run my own script
  • D: Orphaned permissions, Look it up both ways

Additional comments:

1 Like

Netwrix Capability Statements Submission

  • S: Hidden admin access, Risky configurations
  • A: Tickets in our helpdesk, Approval before changes, Attack paths, Orphaned permissions, Effective access, Run my own script, Open access
  • B: Mailbox rights cleanup, Access reviews, Ownership on record, Hand off automatically, Groups down to people, Direct permissions, Access nobody uses, Who owns this, Reviews on a schedule, Account cleanup
  • C: None
  • D: None

Additional comments: