We have two sources of identities for contractor where we need to migrate identities from Source Act to workday, both these are existing sources where identity profile for Workday is higher priority.
Plan is to move identity from ACT to Workday, and further remove the ACT source so users coming as inactive and identity gets cleaned from SailPoint ISC.
the username (UID) attribute for existing identity will come same in workday as it exists in ACT currently.
Could we get help for steps or best practices, so we don’t hamper any accounts connected to identity once getting moved to another source of workday.
Map Workday Account Correlation
Ensure the Workday source is configured with an Account Correlation rule matching its account attribute to the existing identity’s UID.
Synchronize Identity Attributes
Before migrating, mimic the attribute mappings from your ACT identity profile to the Workday profile. Use FirstValid Transforms on critical attributes (like email or department) to look for data in Workday first, falling back to ACT if necessary, during the transition.
Perform Overlapping Aggregation
Aggregate Workday accounts. Because the Workday identity profile is already higher priority, identities with accounts in both sources will automatically switch their “owning” profile to Workday once the accounts correlate.
Verify Profile Transition
Use the Identity Profiles page to check identity counts. Your ACT profile count should decrease as the Workday count increases. Use Search to spot-check identities and ensure all downstream accounts remain linked.
Clean Up the Legacy Source
Once all identities have successfully migrated to the Workday profile
Delete the ACT Identity Profile only after its identity count reaches zero.
Finally, remove the ACT source if it is no longer required for history or reference
If the UID coming from Workday is exactly the same value currently used from ACT and both sources map that UID to the same identity attribute in the Identity Profile, ISC will correlate the Workday account to the existing identity and not create a new one. Before removing ACT, run aggregation for Workday and then an identity refresh for a small test group to confirm all linked accounts remain attached and no duplicates are created. Once validated, disable ACT aggregation and monitor for any uncorrelated accounts before fully decommissioning the source.