Gebäude der KGAL GmbH & Co. KG
KGAL GmbH & Co. KG

Enhanced Security and Compliance with IAM at KGAL

Success Story5 min read
Flexible Role Models
Automated Processes
Simplified Recertification

KGAL GmbH & Co. KG is one of Germany’s leading real asset managers, managing an investment volume of around €16 billion. To professionalize its access rights management, the company replaced individual manual processes with a centralized Identity Governance solution powered by Garancy. Today, automated processes, a differentiated role model, and centrally managed recertification provide greater transparency, security, and efficiency.

The Case at a Glance

  • Challenge: Manual processes made it difficult to meet compliance requirements.

  • Approach: Automating JML processes with Garancy Identity Manager.

  • Success: IAM reduces the workload for IT and business teams while simplifying recertification.

Access Rights: Manual Processes Had Reached Their Limits

KGAL already had an internally developed solution in place to support standard processes for employee onboarding and offboarding. However, it reached its limits when it came to managing roles, recurring recertification, and centralized governance. Additional workflows involving Excel and tickets required considerable manual effort, made processes harder to track, and increased the need for coordination between IT and business teams.

KGAL therefore needed a professional IAM solution that would centralize and automate existing processes while remaining flexible enough to accommodate the company’s individual requirements. After evaluating several vendors, KGAL selected Garancy Identity Manager in 2022, and the solution has been in production since July 2023.

Centralized Identity Governance with a Differentiated Role Model

With Garancy, KGAL introduced a centralized platform for access rights management. Existing systems were connected, standard processes were automated, and recertification was integrated into a centralized workflow.

A key component is the role model, which was further developed as part of the project. Basic, organizational, functional, and business roles cover different access assignment requirements – from fundamental access rights for employees to specific permissions for individual tasks and external service providers.

The integration of existing systems was also standardized. Access rights for numerous applications can now be provisioned automatically once approved. Where manual provisioning is required, Garancy integrates with the ticketing system. This creates a more seamless link between access requests and actual provisioning, reducing unnecessary rework and eliminating process disruptions between different tools.

The Result: Less Effort for Recertification and Administration

The benefits are particularly evident in access recertification. Previously, access lists for individual applications were processed using Excel and tickets – a process that could take one to two weeks. With the Garancy Recertification Center, progress can now be monitored centrally, while an employee’s access rights can be reviewed across applications. 

At the same time, KGAL has built up sufficient expertise with the system to implement many adjustments independently. For larger projects and changes, KGAL works together with the Garancy team to develop the right solution. 

Results at a Glance 

  • Automated Joiner, Mover, and Leaver processes

  • Significantly simplified access recertification

  • Flexible role models for internal employees and external service providers

  • Less manual effort for IT and business teams

  • Greater transparency, compliance, and traceability

  • Independent administration of many changes without vendor support

IAM as a Building Block for Secure IT

By centralizing access rights management, KGAL has gained greater transparency into existing access rights and reduced the risk of unauthorized access. Automated standard processes reduce the workload for IT, while centralized recertification helps the company meet compliance requirements.

The detailed customer success story explains how KGAL developed its role model, integrated existing systems, and redesigned its approach to access recertification.

Read the Full KGAL Success Story

Learn more about KGAL’s IAM journey. The full customer success story PDF shows how KGAL replaced individual manual processes with centralized Identity Governance – and how Garancy brings together role management, system integration, and recertification in a single solution.

Download reference

A centralized IAM solution is vital for building a modern and secure IT environment. Any company aiming to professionalize their access rights management should invest in IAM. With Garancy, we made the right choice.

KGAL Logo
Ludwig Eggersdorfer
Head of Digital Workplace, IT-Governance & Infrastructure Solutions

Further Resources

NBank Gebäude
NBank

Identity Management Starts with Expert Guidance

75
Systems Connected
1.000
Roles Created
< 5%
Rights Assigned Directly
Gebäude der IFB Hamburg
IFB Hamburg

From Concept to Centralized Identity & Access Management in Five Months

70
Systems Integrated
100+
Business Roles
5
Months to Go-Live

Let’s Talk Business!

Are you facing challenges in cyber security, automation, or compliance? In a compact strategy meeting, we will clarify which IAM approaches make sense for your company.

What you can expect:

  • Discussion of your individual requirements

  • Practical insights into our identity management software

  • Q&A and recommendations for the next steps

More than 6.16 million managed identities worldwide
A man in a white shirt, holding a yellow folder, smiles while speaking into a smartphone, standing beside a window with soft light.