Entitlement Management

Product: Oracle Identity Manager

As more and more companies are tackling Identity & Access management issues successfully, the drive towards fine-grained entitlement management is becoming prevalent. One common thread amongst all of Identigral’s customers is a desire to centralize entitlement management without becoming mired in the complexities of sustainability. Our Entitlement Management Solution leverages your investment in Oracle Identity Manager to control entitlements of interest to audit, managers, and application owners

Identigral’s Entitlement Management Solution encompasses the following:

• Incorporated into OIM’s web interface for seamless integration
• Easy to use by non-IDM administrators
• Easily automated from source applications where the entitlements exist
• No development necessary in OIM to add or remove entitlements to managed applications
• Works with OIM9.1.0.2+

Service and Privileged Account Management

Product: Oracle Identity Manager

Managing service and privileged accounts is an old problem but it has recently been flagged as a gap on a number of high-profile IT audits at major corporations. These types of accounts are hard to manage as they are often shared, needed only for a short period of time to execute a task and are handled outside of the typical on-boarding processes.

Identigral's Service Account Management solution leverages a corporation's investment in Oracle Identity Manager and mitigates the risk associated with a potential abuse of service and privileged accounts. Our solution provides a blueprint that contains best-in-class processes, controls, architecture and recommendations on IT/business alignment when deploying the solution on top of Oracle Identity Manager. Key processes include provisioning and de-provisioning of these accounts, managing the password policies and associating these accounts with a person or group of people (account "distribution")

Dynamic Approval Workflows

Product: Oracle Identity Manager

Business processes change often, thus creating an eventual lag between the needs of the business and the state of the business process as implemented in a particular tool. Eliminating this lag is one of the costliest operations in the entire Identity Management lifecycle. In particular, workflows associated with access requests are often very complex, containing rules on routing, approvals, notifications and exceptions. In a typical Oracle Identity Manager solution, when the business process changes, workflow, approval, and user interface rules must change too. Typically these types of changes require a development cycle, thus taking time and money to implement. With Identigral's Dynamic Approval Workflows solution business users can make changes to workflows via a friendly web interface that is tightly integrated with Oracle Identity Manager.

Specific features of this solution include:
  • Dynamic routing of approval requests. Routing rules are based on the submitted data, thus removing the problem of having to construct a separate workflow for each business scenario.
  • The number of approvers can be changed on the fly by process owners
  • Approvers can be static, dynamic or based on a hierarchy (org chart, roles, business units, etc)
  • Change mangement comments are required for users making changes to the workflow
  • Global reporting on approval workflows and approvers
  • Scales to thousands of managed resources
  • Audit trail of all changes

Usability Enhancements

Product: Oracle Identity Manager

It is often the smallest change that has the greatest impact. Identigral has bundled many of these small enhancements that have improved the end-user and operational experience into a Usability Enhancements solution. Some of these enhancements include:

  • Request comments included in emails to approvers
  • Pass-through links on approver emails that take approvers directly to the correct approval page
  • Global search for users and their fine-grained entitlements
  • User export and import for support and troubleshooting purposes
  • User-centric audit trail of changes to Oracle Identity Manager metadata (who did what)