Description
SailPoint® is excited to announce the upcoming release of Dynamic Access Roles in Identity Security Cloud!
Dynamic Access Roles targets the needs of organizations who have specific access requirements and must base their access decisions on multiple and varying factors. Typically, these are organizations with large populations of users with shared access criteria and who have a large number of identities, entitlements, and roles within their environment.
New Capabilities
The initial release of Dynamic Access Roles for Identify Security Cloud in Q4 '24 will allow organizations to leverage dynamic access roles for automatic (birthright) access assignments. This will allow them to implement Identity Lifecycle management use cases such as joiners, movers, and leavers with far fewer roles than were needed previously.
As organizations grow, managing traditional roles becomes more complex, especially in large enterprises where similar jobs require varying access. This often leads to an increased number of ad hoc access requests and manual work items for end users.
Dynamic Access Roles address this by using dimensions, attributes, and criteria to automatically assign the right access to each role member. Each dimension includes an attribute criteria expression that determines if the access should be assigned. For automatic (birthright) assignments, values are sourced from the user’s Identity object, while ad-hoc assignments can be set during role requests.
With Dynamic Access Roles, organizations can simplify role management, reduce manual work, and better meet their evolving access needs.
Example of Dimension Criteria
Example of a Dimension’s Access Selection
Who is affected?
Business+ Customers.
The ISC Business Plus Suite level is required for this feature.
Important Dates
Delivery of the feature will start Monday, October 7th, 2024.