Organisations today want the business benefits that come from many varied parties accessing their applications. And, most have multiple business applications with different access management systems that require users to log-on separately to each application. These two issues combine to result in IT management and compliance issues in determining and controlling who has legitimate access and to what.

With the ever changing legal and regulatory requirements now being imposed on organisations such as PCI-DSS and SOX, companies are mandated to provide full audit trails of who had access to what, when , where and for how long. By implementing a robust identity and access management strategy organisations will be able to meet their compliance objectives in a costs effective manner.

Our IAM solution provides:
  • Agreed rule-based access controls
  • Design of new business process for privilege control (e.g. granting and revoking access privileges)
  • Appropriate authentication mechanisms
  • An integrated architecture
A staged approach will define business benefits and allow a staged implementation by starting with an IAM Readiness Assessment and an Identity Assurance Review.

The IAM Readiness Assessment

This will identify the business benefits to be gained by implementing an IAM solution and the key process improvements that can be achieved in your business.

This service will examine business processes, and determine the requirements of participating application owners and business units. The result will show the readiness of your organisation to implement an Identity and Access Management Strategy.

An Identity Assurance Review

This will provide a clear understanding of the current status of who has access to what information in the organisation. A thorough examination of business processes and the people engaged in them will identify anomalies, security holes and over provision.

The result of an Identity Assurance Review is cleansed organisational data that can be used as a firm foundation for the starting point of an IAM project, or for the deployment of controls that satisfy compliance requirements.