User Provisioning
Automate a user's access from first SSO login through offboarding.
What it does
Access granted by hand is granted inconsistently. And when someone leaves, deactivating their user leaves their profile and permissions untouched: one accidental reactivation and the old access is back. That is a recurring audit finding wherever this isn’t automated.
User Provisioning handles the whole lifecycle. On a person’s first single sign-on login it creates or updates their user and grants access based on a role mapping the organisation maintains. When they leave, it records exactly what they had, removes it and drops their profile to a safe minimum.
On a schedule, it also looks for inactive users who still hold elevated access, so anything that slipped through gets flagged. Joiner and leaver signals can come from an HR system or identity provider, and every step leaves an audit trail.
Who it's for
Identity admins who set it up once, security and compliance reviewers who need the audit trail, and integration teams who send joiner and leaver signals.