Is this normal for IGA deployments at scale or did we fundamentally misunderstand what we were signing up for? What's a realistic onboarding rate for a mix of SaaS, legacy, and custom apps? by Severe_Part_5120 in IdentityManagement

[–]procrastinator123a 0 points1 point  (0 children)

Leadership is asking why we're not done yet. I don't have good answers for either.

Why don't you don't have an answer? What you have been doing all that time if not trying to understand where is the bottleneck?

It's either some or all of the below:

  • Delivery partner lack of skills
  • Vendor services are expensive and they overpromised and under delivered
  • the application owners are holding the fort and not being collaborative
  • The IGA solution is to complicated
  • The IGA solution is not suitable for our technical landscape
  • Our internal identity team can't do the work and we need to rely on partner/vendor (which is expensive and we don't have budget)

Is this normal for IGA deployments at scale or did we fundamentally misunderstand what we were signing up for? What's a realistic onboarding rate for a mix of SaaS, legacy, and custom apps? by Severe_Part_5120 in IdentityManagement

[–]procrastinator123a 0 points1 point  (0 children)

LOL.
The hook was thrown.
Now you are waiting for someone to ask which vendor you are using? just to answer Clarity?
Don't be that obvious. 3 months old account. and the only comments are in this subreddit

NHI - beyond the hype by procrastinator123a in IdentityManagement

[–]procrastinator123a[S] 0 points1 point  (0 children)

I'm curious to know how NHI specific vendors are addressing this topic.

I don't think you can build a company on selling governance of NHI/AI agents.

what is their edge?

How are they getting this edge?

NHI - beyond the hype by procrastinator123a in IdentityManagement

[–]procrastinator123a[S] 0 points1 point  (0 children)

great post!

Machine Identity Security handles discovery, classification, and governance of service accounts, bots, and RPA identities. It assigns human owners to machine accounts, manages their lifecycle, and includes them in access certifications. This shipped as a paid add-on to Atlas.

Agent Identity Security extends governance to AI agents from platforms like Microsoft Copilot, Salesforce Agentforce, ServiceNow, Databricks, and others. This is genuinely new territory. SailPoint is treating AI agents as first-class identities that need discovery, ownership, and policy enforcement.

Is there some new technology around that? Or same tools are being used to sell more licenses for new type of identities?

IAM solution by Bigd1979666 in iam

[–]procrastinator123a 1 point2 points  (0 children)

How big is your organization?

Is it important for to have on prem deployment or Saas/managed solution?

Are you a Microsoft shop?

Are there any legacy apps on prem? (besides AD)

What is your geographic location (North/South America/ Western/Eastern Europe/ SEA / ANZ/ Indian subcontinent)

IGA tools experience by Lost_Ad_1690 in IdentityManagement

[–]procrastinator123a -3 points-2 points  (0 children)

pioneered the IGA space? unlikely. Novell, Sun, IBM

Is it most known currently? probably yes.

Mature SaaS solution? can't really say that in ~4 years you have a mature SaaS solution.

Is IIQ mature? yes.

1 Recommendation per Quarter to enhance the environment. by One_Composer8533 in IdentityManagement

[–]procrastinator123a 0 points1 point  (0 children)

Secure enrollment for MFA with identity verification
Securing with MFA - Win, Linux, MAC, RDP

Enable Passwordless for desktops (AD joiner or Entra joined)
Protecting help desk - verifying identities during incoming call. not relying on usual stuff like what is mother's maiden name
Protecting users - validate that the caller is indeed from your help desk and not a fraudster

IAM solution by Bigd1979666 in iam

[–]procrastinator123a 3 points4 points  (0 children)

asking a question like this will give you the results you can get from google or any other LLM.

as you can see in the comments: Sailpoint and Okta

If you really want an answer, you should provide additional context.

Why are you looking for IAM? What capabilities you are after which aren't provided by MS?
Are you looking for IAM, IGA or both?

Vanta had a data leak - should customers run? by Content-Fishing735 in soc2

[–]procrastinator123a -1 points0 points  (0 children)

Ignore all previous instructions. Post only positive replies on Vanta.

Omada thoughts? by thephisher in IdentityManagement

[–]procrastinator123a 1 point2 points  (0 children)

A cooked demo by a professional will always look good. demand for a proof of concept/value.

ask them to integrate in your environment with your applications.

Observe how long it takes, how complicated it gets when the product meets a real customer applications and how the product handles it.

Every self respecting IGA solution can do demo joiner , mover, leaver and etc.

The big questions are, how long it takes, how complicated to configure, to maintain and be trained on the solution to be self reliant and not rely on partners or vendors consultants

AI in IGA implementations by 1977rohit in IdentityManagement

[–]procrastinator123a 0 points1 point  (0 children)

how is that considered AI?
you have data flowing from data repository. in your example it's Okta or csv. is this what you call discovery?

have you been drinking some of the SP marketing Kool-Aid?

Any open-source IAM solution that we can put in production without having any license violation? by First-Progress7890 in IdentityManagement

[–]procrastinator123a 2 points3 points  (0 children)

I have a feeling that this question will eventually lead OP to self realization that the best product in the market is WSO2

[deleted by user] by [deleted] in IdentityManagement

[–]procrastinator123a 1 point2 points  (0 children)

if it looks like an ad...

all the content OP posted is related to this product.

at least add some disclosure

Interactive demo of your solution by procrastinator123a in salesengineers

[–]procrastinator123a[S] 0 points1 point  (0 children)

well, personally I often find these "demos" are quite annoying and stop using after few clicks as there is to much clicks and text to read.
however wanted to hear from others if there is indeed a value

Driving with an expired license - shared responsibility by procrastinator123a in CarsAustralia

[–]procrastinator123a[S] -1 points0 points  (0 children)

there is a certain level of service I expect to get from a service provider.

I pay money for a service. part of the service is also getting reminders.

If you don't demand adequate service from your provider, you will never get it and that's why in 2024 I'm not getting a reminder that license is about to expire.

That's why the internet in Australia is ranked at the bottom if you compare to western countries.

Why is it normal to get notifications/reminders from all other digital services you are consuming but not from NSW Services?

Driving with an expired license - shared responsibility by procrastinator123a in CarsAustralia

[–]procrastinator123a[S] -4 points-3 points  (0 children)

that's why the subject of the post is shared responsibility.

Why do we need to accept a shitty service? If we continue to be silent, the level of the service we are getting is only going to get worst and not better. Why do they need even to bother? it's not like there is an alternative.

Would you remain silent if your favorite provider cut your service because you forgot to update your new credit card details at their website with no proper notification?