Identity Lifecycle Manager (ILM)

Fálaina’s Identity Lifecycle Manager (ILM) is the next generation solution that uses lightweight .NET architecture for identity administration. ILM is an add-on component to Identity Analytics and Compliance Manager (IACM) and shares the same identity repository, workflow, operators, and user interface. Fálaina’s ILM is an automated solution that helps manage user identity and their access rights across an enterprise.

Identity Lifecycle Manager (ILM)

Automated identity lifecycle management (provisioning/de-provisioning)

Today, the on-boarding process of employees and non-employees in any organisation includes enabling access to various applications. Provisioning on time and only for the right applications with the right set of permissions is key to ensuring efficiency and overall security.

Fálaina’s ILM automates the complete lifecycle of a user, including events such as hiring (or customer on-boarding), transferring/ moving, access and identity data modifications, status change, password change, and termination of access. These use cases are complex and can vary from organisation to organisation and application to application. Non-employee or customer onboarding process is also made available via self-registration portal with validation via email and approval workflow.

Fálaina’s ILM also provides rule-based templates for events such as future, conditional provisioning, user account constructions, password generations, access rights granting, batch provisioning/ de-provisioning and so on.

Access request management and approval workflow

Fálaina’s ILM access request management is integrated with workflow on a self-service portal to enable users and delegated administrators to place requests, modify current access, and remove access to roles, entitlements, and accounts based on the rules and policies set.

These rules are based on role-based access control (RBAC) and attribute-based access control (ABAC), and include conditions such as who can request for what objects, which target systems, when and so on.

The access request portal has the following features:

  • View requestor’s current set of access
  • Attachment management (kept within ILM database for audit and reporting purposes)
  • Communication between requestors and approvers
  • Flexible options to approve requests: notification email, self-service portal, Fálaina mobile application
  • Access request validated against SoD ruleset, notifying user and approvers if there is a conflict

Self-service portal

Fálaina’s ILM self-service portal enables users (including customers) to manage their identity data (also known as personal information) and passwords.

The profile administration feature allows users to modify identity data centrally, and this data can be synchronised to the respective target systems. Rules can be applied to allow only selected data/ attributes to be modified as part of this profile administration.

Further, the portal provides comprehensive management of account unlocking, password reset, and password synchronisation for all target systems. Challenge/ Response password reset or unlocking of accounts supports OTP (one-time password) via SMS or WhatsApp message. The account unlocking and password reset can be applied directly to Microsoft Active Directory or any LDAP server if this is the network login or centralised authentication server.

Simplify identity & access management with the right tools

Rapid ROI, integrated solutions, with
modern flexible licensing