Account Disable in Active Directory

Hi guys,
In many organizations, users may have multiple accounts:

  • Primary accounts created through SailPoint IdentityIQ (IIQ) during the joiner process.
  • Manual accounts created directly in Active Directory (AD) by the IT team for specific purposes (e.g., admin accounts, service accounts).

When a user leaves the organization, You have to ensure that all their accounts (both SailPoint-managed and manually created) are removed or disabled by using any common attribute value from their profile.

and what would the question be?

I would like reply to you, but with this phrase, for me, you have lost all right to be helped. :melting_face: