The Identity and Access Management (IDAM) project will transition to the new Identity governance and administration (IGA) solution (SailPoint IdentityNow) from Monday 21st August to deliver critical components of our Digital Enablement and Be Safe (DEBS) business case, to reduce significant risk associated with aging and vulnerable core IT infrastructure and unauthorised access to university systems and data, while significantly improving user experience for staff and students.
For definitions of birthright provisioning and access governance, please see the article "What is the Identity and Access Management project?" (KB0017111) linked in the Related Articles section
The key activities the project will include:
August
- Integrate the new IDAM solution (SailPoint IdentityNow) with IT account data source, staff data source and student data source. This will be read-only to test the connection between the various data sources and IDAM solution.
- Mon 21 Aug 2023: Integrate the new IDAM solution with four applications.
- Learning Pool [Access Governance]
- TargetConnect (My Career) [Access Governance]
- Student Counselling and Wellbeing (SCW) [Access Governance]
- Zoom [Access Governance]
September
- Monday 25 Sep 2023: Introduce the new starter processes for staff. This will implement changes for how usernames are created so that they are randomly generated and do not contain identifiable information such as initials or departments.
- Monday 25 Sep 2023: Implement automatic creation of IT accounts from the new IDAM solution based on active SAP records. As a result of the automated joiner process, start to phase out the username/IT access request form.
October
- Monday 02 Oct 2023: Introduce the new starter processes for students. This will implement changes for how usernames are created so that they are randomly generated and do not contain identifiable information such as initials or departments.
- Monday 02 Oct 2023: Implement automatic creation of IT accounts from the new IDAM solution based on active Banner records.
- Monday 02 Oct 2023: IDAM ServiceNow integration will be live where in all new students and staff joining the University will get a ServiceNow account.
- Monday 16 Oct 2023: Introduce the new leaver processes for staff and students including the new retention policy via manual processes. We will complete data validation in production to ensure active and inactive accounts are reconciled across IT, SAP and Banner and if the state of accounts is accurate, then the automated leaver processes will be implemented in the IDAM solution.
- Monday 16 Oct 2023: Audit functionality in the new IDAM solution will go live.
- Monday 30 Oct 2023: Link three of the identified applications that have a dependency on the legacy technology (LURCIS) to the new IDAM solution.
- SafeZone [Birthright Provisioning]
- Mediasite Test [Birthright Provisioning]
- ALMA – Students [Access Governance]
- ALMA – Staff [Birthright Provisioning]
November
- Monday 06 Nov 2023: Link three of the identified applications to the new IDAM solution.
- Mediasite Staging Database [Birthright Provisioning]
- Microsoft 365 (Specifically, admin requestable access) [Birthright Provisioning]
- Banner Staff Feed [Access Governance]
- PebblePad [Access Governance]
- Monday 06 Nov 2023: Auxiliary account types: IMC bulk request and external library accounts will become requestable within ServiceNow and provisioned by SailPoint IdentityNow.
- Monday 20 Nov 2023: Link three of the identified applications to the new IDAM solution.
- The Edge [Birthright Provisioning]
- Britsafe [Birthright Provisioning]
- Symplectic [Birthright Provisioning]
- Monday 27 Nov 2023: The remaining applications with a dependency on the legacy technology (LURCIS) will be integrated in production with the new IDAM solution.
- Minerva Students [Birthright Provisioning]
- Minerva Staff [Birthright Provisioning]
- QlikView [Birthright Provisioning]
- Monday 27 Nov 2023: Auxiliary account types: Privileged (Infrastructure and Secondary Accounts), Shared Mailbox and Resource Booking will become requestable within ServiceNow and provisioned by SailPoint IdentityNow.
- Monday 27 Nov 2023: ARC account process will become managed and provisioned via the new IDAM solution.
We will use this article to keep you up to date throughout our go-live over the coming months so stay tuned!
Should you have any questions or concerns in the meantime, please contact the IDAM Project team at IDAM-Project@leeds.ac.uk.