Control visibility of an Identity Attribute as per logged in User in IIQ

Which IIQ version are you inquiring about?

Sailpoint IIQ 8.X

Please share any images or screenshots, if relevant.

NA

Please share any other relevant files that may be required (for example, logs).

NA

Share all details about your problem, including any error messages you may have received.

The requirement is that we need to add an attribute to identity which should only be visible to specific type of users in Identity View from Identity Warehouse. If any normal user logs in attribute should not be visible to them.

Hi @sukh1

To the best of my knowledge, SailPoint does not provide such functionality out of the box. I think an interesting solution would be to create a plugin that handles this issue. A question worth asking here is how to condition the visibility of attributes. One option might be to make it dependent on the capabilities possessed. Another option you can do out of the box is to directly configure the attributes so that they are visible to all in a limited manner through Debug → UI Configuration → identityViewAttributes.

The option to hide sensitive attributes has been on the planned road map for quite some time: https://ideas.sailpoint.com/ideas/IIQ-I-363

Last time I was at Navigate, it was being targeted for 8.5. Obviously it’s not a firm commitment, but something they are working towards.

Hi @sukh1 ,

have a look at this “In Discovery” post:
https://community.sailpoint.com/t5/In-Discovery/IdentityIQ-Restrict-Viewing-Attributes/ta-p/230694

Best regards,
Daniel