Do you have active directory accounts that haven’t been used in more than a year? Do the accounts reflect the individual’s current roles and responsibilities? Is your company ready to demonstrate compliance with industry regulations? With technology moving faster than company processes, an effective IAM program needs to include detective controls to ensure that subsequent access changes remain aligned with the users’ job functions and responsibilities. This can be accomplishing using the Attestation or Certification feature included in most of the Identity Management Solutions. For this post, we will use the term certification, but it is worth mentioning that some tools use the term attestation instead. A certification process enables business stakeholders to be notified through a report that describes the provisioned entitlements that certain users have. Based on this report, they can certify the accuracy of the entitlements by approving or denying them. A certification process can be applied to accounts, roles or profiles, entitlements, privilege access, and many other types. A certification can be time-based (run once a year, every quarter, etc.) or event-based (new user, job change, etc.). The important fact is that your company needs a continuous certification process once this is implemented.
Over the years of implementing recertification for many customers, we noticed that the following are typical certification execution steps (Figure 1):
Do you have IAM questions or problems? Not enough time or resources to create a solution? We’d love to hear from you and start on your custom IAM solution today. There’s several different ways to get in touch with us, so pick your favorite and let’s start solving problems today.
Phone: (214) 764-7644 | 5601 Democracy Drive, Suite 205| Plano, TX 75024
Phone: (214) 764-7644 | 5601 Democracy Drive, Suite 205| Plano, TX 75024
Phone: (214) 764-7644 | 5601 Democracy Drive, Suite 205| Plano, TX 75024
Phone: (214) 764-7644 | 5601 Democracy Drive, Suite 205| Plano, TX 75024
Phone: (214) 764-7644 | 5601 Democracy Drive, Suite 205| Plano, TX 75024
ICSynergy is a trusted Okta Gold partner, with more than 30 successful customer implementations and 30 additional hybrid engagements. Our experience helping organizations of all sizes integrate Okta with their cloud-based and hybrid applications makes us the partner of choice for Okta integrations.
Our experts can assist in your integration of Okta applications such as Single Sign-On (SSO), Multi-factor Authentication (MFA), and lifecycle management – either out-of-the-box, or with a custom solution. With ICSynergy’s SPGateway, we can extend your Okta solution to your on-premises applications, protecting your existing investment.
In addition, ICSynergy offers an array of advisory and managed services to meet any and all challenges arising from your Okta-based architecture.