We have a requirement where after the authoritative HR Source account has been aggregated based on the STATUS attribute of the HR Source the lifecycle status should change to ACTIVE and create an Active Directory account ( Create Profile is already configured) for the identity. What is the best way to achieve this?
This is a relatively standard use case. You should be mapping the “lifecycleState” identity profile attribute to the “STATUS” attribute on your HR Source.
Once this is mapped, you will want to configure the various provisioning actions for each state under the provisioning tab for your identity profile (i.e. check enabled for state, add source accounts to enable, and add any desired access profile to the state)
Something like this: