Products
Identity & Access Manager
Features
10 min
the activate identity & access manager provides a comprehensive suite of tasks and workflows for managing user accounts throughout their lifecycle each task includes configurable approval steps from designated business or it roles, ensuring actions align with your organisation’s governance and business rules identity management tasks onboard user (create user) provisions a new active directory (ad) or other directory user account for employees contractors vendors accounts are created according to defined business rules, which can include home folder creation mailbox provisioning default entitlements based on department and location the new user form is fully customisable, allowing any ad attributes to be captured location specific fields such as office address are auto filled, and the user’s manager is automatically assigned in ad for use in future approval workflows offboard user (delete user) deprovisions a user account in accordance with business rules, including archiving home folders and email removing access from systems (automatically or by notifying relevant teams) supporting stand down periods before disabling or deleting accounts if the departing user was an approver, activate automatically prompts their manager to assign a replacement, ensuring no approval workflows are left orphaned update details allows users to update selected active directory attributes , such as mobile number extension editable fields are defined per organisation, and some updates may require approval from the user’s manager or other designated approvers move user moves a user between departments or locations upon approval, activate moves infrastructure components such as home folders and mailboxes updates distribution lists and other entitlements based on the new location or department rename user used when a user’s account name or display name changes, such as after a name change optionally, related infrastructure — including home folders — can also be renamed automatically disable user / enable user provides a quick and secure way to disable or re enable ad accounts directly through activate eliminates the need for service desk teams to access active directory users & computers allows fast user lookup and management via activate search delegate approvals enables approvers to temporarily delegate their approval authority to another user for a defined period the delegate can approve any pending or future jobs on behalf of the original approver during the delegation window update owner transfers ownership of linked accounts (such as administrative or shared accounts ) when an owner departs, activate can prompt for a new owner automatically terminate the linked account if configured to do so set out of office allows users to configure their exchange out of office status for a specific period this task can also be automatically triggered during user de provisioning add role / remove role permits authorised roles to add users to activate defined roles such as departments or locations remove users from those roles when necessary lifecycle workflows the following automated workflows run on a scheduled basis, typically overnight, to maintain account hygiene and compliance expired account identifies ad accounts with a set expiry date , commonly used for contractors or vendors managers are prompted to extend the expiry date disable the account terminate the account (which triggers the terminate user process) managers can also defer their decision, with automated reminders after the deferral period inactive user detects inactive ad accounts that have not logged in for a specified number of days, or have never been logged in within a defined timeframe managers can then choose to disable the account terminate the account (using the terminate user workflow) postpone the decision verify info prompts users to confirm or update their personal information using the update details task this workflow can be configured to trigger every x months send initial prompts to new users to complete their profiles issue follow up reminders to ensure data accuracy over time escalations all tasks include built in escalation mechanisms to prevent workflow delays activate automatically escalates approvals if a user or manager has not completed a task within a defined timeframe this ensures timely completion and reduces manual follow up by service desk teams