Provision any HRIS source or app target to SAP Cloud Identity Access Governance

Propagate JML events from any HRIS into SAP Cloud Identity Access Governance and auto-trigger downstream provisioning and governance in real-time, with 800 directories, apps, and databases available. Deliver day one productivity, improve security, and lower operational costs.

Benefits

  • Deliver day-one readiness for new hires

    Automatically synchronize user information from SAP Cloud Identity Access Governance and initiate IT onboarding on a predetermined date before the employee starts. Immediately give employees access to applications necessary to do their jobs on day one.

  • Sync employee app access in real time from HR events

    HRIS joiner, mover, and leaver events are automatically synced to SAP Cloud Identity Access Governance and all downstream applications. This ensures that when an employee joins, moves, or leaves an organization, their access to the systems is given, changed, or removed immediately.

  • Mitigate security gaps

    When an employee leaves a company, their accounts on all connected apps are deprovisioned and access is immediately revoked. This eliminates security gaps arising from delayed removals and human error.

  • Accelerate ROI with rapid deployment

    This out-of-the-box solution rapidly deploys with no code, making implementation simple and fast. The result is an accelerated time to realized value for the solution.

Features

Visualize integration flow to clarify scope for business users

The solution maps the inbound and outbound provisioning flows for SAP Cloud Identity Access Governance. From here, the configuration of individual connectors configuration is initiated.

Visualize integration flow to clarify scope for business users
Enlarge

Accelerate time to value with rapid solution configuration

In a single screen, select the application connector of interest, and identify its unique tenant URL for cloud applications or its IP for on-premise applications. Aquera generates a unique URL that designates a SCIM endpoint, which is then copied into SAP Cloud Identity Access Governance.

Accelerate time to value with rapid solution configuration
Enlarge

Run campaigns to collect entitlement file extracts for disconnected apps

For disconnected applications, the solution automates the manual pre-validation and collection processes of entitlement file extracts via regularly scheduled campaigns. Application owners are routinely reminded to upload their files per the campaign schedule.

Run campaigns to collect entitlement file extracts for disconnected apps
Enlarge
Show moreView media gallery

Plans and pricing

All plans include:

User-based pricing on a subscription basis