Fischer

  Remotely-hosted, secure identity services  
 
Iaas Solutions
Overview
Password Reset & Synchronization Service
Access Termination Service
Self-Service Portal Service
Automated Role & Account Management Service
Privileged Access Management Service
Identity Compliance Service
Federated & Web Single Sign-On Service
InCommon® Federation Enablement

Automated Role & Account Management Service
Real-time response for real-time businesses

The Automated Role & Account Management Service enables organizations to automatically add/change/revoke user access to IT and physical assets based on real-time business events (e.g., hire, termination, promotion, new customer, end of term, etc.) – all in compliance with your business and security policies. Business events are detected in real-time to determine the necessary provisioning actions and approval processes to execute, ensuring that your users always have just the right access, and at the right time. Note: this service includes all the capabilities, functionality, and benefits of the Self-Service Portal Service.

Problem: While many organizations lack sufficient provisioning processes, even organizations that have repeatable processes for onboarding and offboarding user access to IT assets and other resources have found that the processes are costly and require time and resources. Also, as with any manual processes, they can introduce errors. Manual processes usually don’t assure that records presented to auditors for regulatory compliance are accurate since they rely on the accuracy of manual tasks. Manual processes can also fail to properly offboard users when they leave the organization or no longer need a specific resource.

Solution: The Automated Role & Account Management Service gives you complete, automated control over what is generally assumed to be uncontrollable: managing user access to accounts and resources. Keep pace with your business by immediately and accurately creating, changing, or revoking user access in response to the thousands of business events that occur every day, and in accordance with your company’s business and security policies:

  • New hires: “Hiring” events in HR and other systems result in intelligent, compliant creation of user accounts, and authorizations for badges, PDAs, credit cards, and other assets
  • Terminations: Access for departing employees can be revoked entirely on termination day, or can occur gracefully over time for employees that are entitled to ongoing access to select assets
  • Transfers: When employees transfer to a new location, so should many of their current assets. But which ones? Automatically determine new access requirements and update entitlements.
  • Self-service requests: In addition to automated event-driven provisioning, users can submit their own requests for automated or administrative fulfillment

Benefits & Capabilities

  • Fully automate and standardize the provisioning processes for onboarding, offboarding, promotions, moves, and other events: Automated event detection triggers resource fulfillment and revocation processes
  • Ensure all accounts have appropriate privileges based on your business policies
  • Automate provisioning using role-based access control (RBAC), rule-based access control, or both.
  • Eliminate orphan and over-privileged accounts to mitigate risk and avoid paying for unused software licenses
  • Maximize productivity and improve service levels by providing “day-zero” access to needed IT and physical assets
  • Quickly and accurately respond to audits: automatically logs all activities in the audit database for compliance reporting
  • Optional policy configuration services further control and mitigate risks: e.g., alerting Payroll to withhold the final paycheck until a departing employee returns a laptop PC
  • Drive down help-desk and information security costs by automating identity administration
  • Includes all the capabilities of the Self-Service Portal Service
  • Roll-out identity services in days or weeks, not months

Learn More

For additional information on how your organization can benefit from Fischer IaaS® services, please contact Fischer International Identity at +1 (239) 643-1500, or contact us through this website.

heading

Brochure: Automated Role & Account Management

Brochure: Fischer Identity Overview

White Paper: Introduction to Fischer Identity™

Request an online demonstration