
IT departments are responsible for provisioning and managing scores of applications while ensuring organizational
security and compliance, yet most systems used for this mission-critical job are inflexible and incomplete.
This results in a set of processes that are labor intensive, expensive and error-prone.
Companies and their IT staff seek an effective way to answer the question, "who has access to what corporate
resource, and why were they granted that access?" Centralized automation of the entire lifecycle of enterprise
resource provisioning and roles-based entitlement management is the only viable solution for delivering
consistent service, effective resource security, and the information needed for compliance. As the only
Identity Management vendor with a specific focus on the problem of Resource Lifecycle Management, EmpowerID
provides a cost-effective answer to the problems of resource provisioning and ongoing authorization management.
EmpowerID's Resource Lifecycle Management solution is built on a next generation Business Process Management
(BPM) platform built on Microsoft Windows Workflow Foundation. EmpowerID's BPM-based Resource Lifecycle
Management solution offers flexible workflows that automate resource provisioning, access requests, delegated
administration, resource access attestation, and de-provisioning. EmpowerID's automated, self-documenting
and auditable workflow processes manage the entire lifecycle of your enterprise resources with an extensible
model that can also support custom applications.
Resource Lifecycle Phases
- Provision: self-service resource request with workflow approvals
- Inventory: discovery and inventory new resources
- Enforce: enforce a unified role-based authorization model
- Manage: securely delegate administration of resources
- Certify: scheduled attestation of resource access
- Retire: de-provision resources from use
Resource Lifecycle Management Solutions:
Microsoft SharePoint: provide scheduled workflow-based reviews and
approvals of accounts and their access rights for compliance reporting
Windows File Shares: enable end-users to reset forgotten passwords and
unlock their accounts
Windows Print Shares: enable end-users to update selected portions of their
directory information
Microsoft Exchange: automated enterprise user provisioning with optional
integration to Microsoft Identity Lifecycle Manager 2007
Active Directory & LDAP Groups: delegate management of user accounts in
your enterprise directories (Active Directory, LDAP, SAP, and others) through easy to use web interfaces
Custom Applications: provide scheduled workflow-based reviews and approvals
of accounts and their access rights for compliance reporting
|