Workflow department change

Hello Community,

Please, what is the best practice to achieve this in Identity Security Cloud?

When the department of an identity changes, the identity should retain their previous access granted by birthright until the start date of their new position in the new department.

Shall i use two workflows one for detecting the department change and giving it the new access and another one for deleting the previous access ? Also, do you have any documentation on this subject it would be much appreciated

Thank you in advance,

the easiest way is have one more LCS let say transition state, have criteria such that roles can retain until the new position start.

And of course you can use two workflows as you stated as well, here you can have full command on timing as well.

Another way is APs on LCS, but it is not utilized by many orgs due to not using this feature.

This topic was automatically closed 60 days after the last reply. New replies are no longer allowed.