I am looking for information on how to automate the management of Governance Groups (GG) in SailPoint ISC, specifically based on the “department” attribute of identities. Here are the specific scenarios I would like to address:
Creation of a GG: Automatically create a Governance Group whenever a new Department (Identity attribute) is added in ISC.
Update of a GG: Update the Governance Group when a new Identity joins or leaves the company, reflecting changes in their LifeCycle state. Specifically, I would like to add a new Identity to the GG when they join, and remove a leaver if they are currently part of the GG.
Deletion of a GG: Automatically delete a Governance Group when its associated Department no longer exists in ISC.
Questions:
Is it possible to automate the creation and management of Governance Groups based on the “department” attribute of identities?
Can each Governance Group be kept updated automatically by adding or removing Identities as necessary?
I appreciate any insights or guidance on this topic!
This you can do by leveraging the ISC connector which manages GG and Access as the entitlements . you can create a role and based on assignment cretia GG can be assigned.
Thanks for your answer, but I don’t see any field in the creaton of Governance Group that allow me to assign a governance group based on role attribute