Role definition is one of the most challenging aspects of an Identity Access Management (IAM) deployment. However, when done properly, it provides enormous business value, alleviates threats, reduces the total cost of ownership, and furthers adherence to compliance regulations.
Roles are essentially an extension of application or business entitlements that should be shared to multiple individuals at either an application or organizational level. Proper role and assignment must combine organizational business functions with individual user entitlement assignment. Syntegrity attains this through the usage of best of breed technologies including our best practices with OpenIdM, and OIA and integrates it with User Rights Management. This allows us to formulate a comprehensive view of Roles within the Enterprise and provide a detailed definition of what rights those roles enable from an organizational and application perspective.
Finally, Role Management and Role Mining provide corporations with the tools necessary for Segregation of Duties (SOD), in order to meet regulatory compliance (SOX, HIPPA). Role management in the context of a robust IAM/IdM architecture provides an auditable, repeatable solution for assigning entitlements within the enterprise.