Role Engineering and Entitlement Management
Manage Risk - Improve Compliance - Enforce Security Policy
Only 73% of audited privileges are typically policy compliant!
Many enterprises today are migrating to Role-based Identity and Access Management (IAM) to improve security by enforcing the enterprise Security policy, to improve their ability to comply with permission-related regulations (like SOX), to simplify access, entitlement and user management, to improve their user provisioning processes, to reduce administrative costs, and to improve service to employees, customers and partners.
Full value and benefits of Roles can be realized in a managed Roles ‘Environment.’ Such a Role Management Environment should support and automate:
- Role definition around the organizational structure, job functions and business processes
- Periodic Role-based audit and cleansing of privileges across all target systems (platforms, databases, directories and applications)
- Deployment of Role definitions to Identity and Access Management systems
- Ongoing management and restructuring of Role definitions to adapt to business changes
- Audit, enforcement and reporting of compliance with Security policy and regulations
- Interaction of stakeholders (Lines of Business, Risk, Security, Compliance, Audit, …) in Role management processes
IdMlogic staff of project managers, solution architects and system engineers has on-the-job project experience in roles engineering and entitlement management, and in implementing managed roles environments.
IdMlogic approach to role engineering and management projects encompasses the following phases:
- Strategy and Planning
- Audit and Cleansing
- Role analysis (bottom-up and top-down)
- Role lifecycle management – ongoing
