Avatier

Streamlining Identity Management. Accelerating Business Results.           Open support ticket  Email a friend!  Sign me Up!
 

Solutions Products Support Partners Company News Contact
Products
Avatier Identity Enforcer
    Architecture
Benefits
Get Pricing
Highlights
Requirements
Supported Platforms

Download the

White Paper on Avatier's Identity Management Solutions Now!

 

To learn how Avatier's  solutions can help your business, call 800-609-8610.

TEL: 925-217-5170
FAX: 925-275-0853

info@avatier.com



 


 

Avatier Identity Management Server (AIMS)
Transforming User Provisioning

SELF-SERVICE USER PROVISIONING AND POLICY ENFORCEMENT

What is Avatier Identity Enforcer?
 
New users, even those with assigned roles, generally need customized access to additional roles or individual IT resources and corporate assets such as business cards, cell phones or laptop computers.  With Identity Enforcer, identity customization is a fully automated, secure process that saves time and reduces the strain on critical IT resources.  Users (or their managers) can submit self-service access requests while Identity Enforcer's dynamically generated workflow, IdentiflowTM, provides the business controls required by corporate policies and external regulations.

How Does Identity Enforcer Transform User Provisioning? 
Traditional user provisioning solutions require extensive consulting, analysis and design to create a complex maze of roles, rules and workflow.  This leads to long implementation cycles and multi-million dollar budgets.  Even worse, many implementations fail before they are ever rolled out to the field or, once deployed, are too difficult to maintain in response to the rapid rate of business change.  Using a combination of patent-pending technologies, Identity Enforcer's new approach overcomes all of these obstacles- enabling managers to define business relationships and implement policies with drag-and-drop ease while Identity Enforcer transparently manages all of the underlying workflow and provisioning operations.  The result is a system that deploys faster, at lower cost and evolves with the business.

How Does Identity Enforcer Work? 
To deliver user provisioning that's as dynamic as modern business requires a simplified method to build and visualize business processes; a flexible role model that supports incremental changes; and an automated workflow system.  Most important, each must be implemented without the complex scripting and programming that's made user provisioning systems cumbersome, slow and expensive.  Identity Enforcer meets these objectives with three pioneering technologies:

  • The Hierarchical Business Services Repository™: Neatly organizes assets and applications to mirror business processes and allows end-users or managers to request what they need when they need it.
  • Hybrid Roles™: Supports evolutionary change by combining enterprise roles with individual assets and privileges. Hybrid roles can be modified by line of business or IT managers.
  • IdentiFlow™: Identity-oriented approval workflow is automatically generated for all role management and user provisioning operations from the structure of the Hierarchical Business Services Repository without the cost and delays of traditional workflow programming.
     

The Repository can be structured in any manner (organizationally, geographically, etc.) and order that matches how the organization operates.  Managers define and place assets, IT privileges and roles into the structure and define ownership.  Hybrid Role creation is as simple as dragging-and-dropping the required assets and privileges into a role container.   IdentiFlow workflow is automatically generated based on the Repository and organizational structures.  Perhaps most important, the Repository structure and contents, including roles, can be modified at any time and Identity Enforcer will automatically make all required changes to inherited ownership rights and workflow.

User access requests are as simple as selecting the required assets, privileges and roles from the Repository and dropping them in a shopping cart.  After the user fills out any required on-line forms (for example, a manager can utilize Identity Enforcer's user interface to create a form requesting justification or further details), the request is sent to the required approvers.  User and administrative interfaces show the status of the approval process, including escalation.  Once the request is approved Identity Enforcer's web-services based provisioning engine will automatically create the desired accounts (or modify the user's permissions if the account already exists) and send asset requests to the appropriate administrator for execution.
 


Try automating user provisioning
see it for yourself
 
All Identity Enforcer administrative and user requests and workflow are logged and reported to create the comprehensive audit trail required by internal and external auditors.  To further ensure compliance, Identity Enforcer's Sarbanes-Oxley (SOX) Separation of Duties feature identifies potential conflicts (for example, processing an invoice and  authorizing payment) that could trigger an audit flag.  Policy over-rides are carefully documented in management reports to ensure full visibility.

Integrated Identity Management
Identity Enforcer is based on the Avatier Identity Management Server architecture so it shares the same ease of deployment, simplified operation and multi-lingual support as the other user provisioning and password management modules in the Avatier Identity Management Suite.  All user and administrative operations are performed with a familiar web-based user interface.

Identity Enforcer also integrates seamlessly with Account Creator and Account Terminator to provide fully automated employee lifecycle provisioning and deprovisioning.  As new employees are hired Account Creator's HR Integration automatically detects the change and creates user accounts and privileges based on enterprise roles (using job code, job title, etc.).  With Identity Enforcer, the employees (or their managers) can customize their identities via selection of additional assets, privileges and roles required for their specific job assignments.  Upon termination, Account Terminator will automatically remove access or delete accounts to ensure compliance with corporate policy and regulations.


Identity Enforcer Benefits

Reduce Costs
Identity Enforcer's
simplified deployment and self-service request model dramatically reduces the cost of provisioning operations.

Increase IT Efficiency
The automated processing of provisioning tasks frees help desk, service desk and administrator resources to handle higher value assignments.

Accelerate User Productivity
The self-service request process combined with automated workflow and provisioning delivers faster access to required IT resources and business assets.

Achieve Compliance
By implementing approval processes to comply with internal and external standards and building an audit trail of all provisioning operations, Identity Enforcer is a key component of a comprehensive corporate compliance strategy.  The SOX Separation of Duties (SOD) feature ensures that multiple stages of critical business processes are not assigned to a single employee.

Increase Business Agility
Identity Enforcer's Hierarchical Business Services Repository, Hybrid Roles and IdentiFlow workflow all adapt to rapidly changing business demands.  Instead of waiting for complex role design and workflow programming, IT and line of business managers can easily make the required changes and roll out new business processes.

Learn more about all of the benefits of the Avatier Identity Management Suite. 

     
 
 whatshot

AIMS Architecture

Click above to learn about the world's most advanced Identity Management design.

 
 latestdocs
Password Reset Microsoft Word Manual Identity Enforcer Overview (2 pages)
Password Reset Microsoft Word Manual AIMS Reviewer's Guide (45 pages)
Password Reset Microsoft Word Manual AIMS QuickStart Guide (4 pages)
Password Reset Microsoft Word Manual AIMS Reference Guide (400 pages)
 
 keybenefits
Web Based Password Reset Save Money
Enterprise Password Reset Meet Compliance
Web Based Password Reset Reduce Threats
Password Management Simplify Administration
Web Based Password Reset Decrease Licensing Fees
Web Based Password Reset Gain Interoperability
Unassisted Password Reset Increase Productivity
Password Management Build Foundation for Trust
Password Management Leverage IT Assets
Password Management Highest Acceptance
Unassisted Password Reset Justify Investment
Unassisted Password Reset Safest Purchase
 
 keyfeatures
Self Service Password Reset Design Advantages
Multilingual interface, alerts, & reports
LiveUpdate Service with rollback
Designed using managed code
Leverages any LDAP infrastructure
Interface & text are easy to customize
Does not require J2EE or WebSphere
Every task supports user exits
Not a proprietary script-based solution
Multi-platform & two-factor support
Parallel cross-platform processing
Guaranteed transaction tracking
Web service infrastructure with SDK
 
 keyrequirements
Reset Forgotten PasswordSystem Requirements
Help Desk Outsourcing | Login Password Recovery | Identity Access Management Strategy | Password Management Programs | Reduce Help Desk Ticketing | Self Service Identity Management | Single Sign On Software Solution | User Password Management Utilities | Sitemap

 Copyright © 1995-2008 Avatier Corporation. All rights reserved.
 All other trademarks or registered trademarks are owned by their respective holders.