As enterprises launch their digital transformation strategies, it is essential to implement secure, compliant, appropriate, yet convenient identity and access management (IAM). IAM ensures that the right individuals access the right resources at the right times, and for the right reasons. This slide deck covers why IAM is crucial in digital transformation.
13. • Better customer onboarding
• Simpler and seamless interaction
– Social logins, mobile connect, Google reCAPTCHA
• Misuse/breaches of customer identity data ->
devastating results!
• Compliance adherence
• Scalability
Challenges for Customer IAM System
14. • Insurance agents sell insurance, record
customer data
• Customers must register online to pay
premiums
• Customer provides minimal data to register
– Rest of the data fetched from the CRM
Easy Registration Using Existing Data
A Multinational Insurance Provider, USA
16. • When registration
– Login using Facebook
– Provide additional details
• Multi-factor authentication or internal
credential for transactions
Social Logins
A Multinational Energy Provider, Europe
18. • Allows to login to applications using mobile
phone
• 20 million active users in India
• Any application developer can utilize mobile
connect to provide easy authentication
Mobile Connect Platform
6 Top Mobile Network Operators in India
20. • Reduce entry barrier to the digital transform
program (competitive advantage)
• Security, compliance and monitoring
• Identity governance -> new business models
• Address technical challenges
– Awesome UX!
– Scalability
Quality of Your CIAM
22. • Automating processes
– Applications
– Processes
• Exposing internalexternal APIs
• Using digital communication
• Dashboards and digital access to information
• Evolving digital vision
Digital Operation Processes
Example Scenarios
23. • Integrate with enterprise IAM
• Expand into federation silos
• Acquisition, mergers, and partnerships
• BYOD - bring your own device
Challenges for the IAM System
24. • Manage identity for staff and students to access
internal applications
• Multiple Identities and federation silos
• SSO across over heterogeneous protocols for
SaaS, cloud and onprem apps
• Automatic provisioning and easy management of
identities
Identity Broker
University of Foo, USA
26. • An organization with 100 of applications
• Overcoming application silos
• The solution
– Partitioned user spaces that can be automatically
provisioned
– Automatically populates the enterprise LDAP
Unified Application Portfolio
A Multinational Laboratory System - Bar, USA
27. Solution
Domain A
App-P App-Q
Users - A
App-R
App-X App-Y
Users - B
App-Z
Domain B
App-P App-Q
App-X App-R
App-Z App-Y
WSO2 IS Custom
User Store
Users - BUsers - A
Primary
User DB
28. • Application portfolio for hundreds of partners
• Each partner has a user space
• Partner administrator provisioned (workflow)
• Partner administrator and business unit
managers
– Manages identity
– Defines access control
Digital Partner Management
A Multinational IT Hardware Manufacturer - Baz, USA
30. Identity Management Maturity Levels
Defined by Forrester
0 - Nonexistent No identity management ( e.g. data kept in spreadsheets)
1 - Ad hoc IAM not planned. Some applications require authentication. On
case-by-case, users manually provisioned, use different usernames
2 - Repeatable Intuitive, not documented, but occurs when necessary
3 - Defined Documented and predictable. IAM is maintained from a checklist
4 - Measured Well managed and automated. User gets automatically provisioned
once HR record is created and provisioned when removed
5 - Optimized Continuous, integrated, and proactive. Analytics available
31. • Reduce entry barrier to the new process
• Productivity, security, governance, compliance,
monitoring and visibility -> innovation, reduce
risk
• Overcome technical challenges
– Penetrate into federation silos
– Acquisition, mergers, and partnerships
Quality of your EIAM
33. • Radically shifting what you sell, how you sell,
and make money
– Reinvent
– Redefine
• Could require an extensible IAM system
IAM for Business Models