Growth Without Expanding the Administration Team
When DEVK planned to connect around 3,000 sales employees to its central master data management application, manual administration would have created a significant additional workload. Until then, a five-person IT team had handled administration and access provisioning for internal users through the host-based RACF access control system. Managing new users in the same way would have required a substantial increase in IT staff.
DEVK therefore opted for a centralized Identity Management solution. Today, Garancy Identity Manager manages automated access provisioning for around 90 applications – from host systems and SAP to LDAP and Active Directory.
Managing Roles Instead of Individual Access Rights
A differentiated role model reflects DEVK’s business requirements for access rights management. Specific SAP roles are combined with access rights for other IT systems into higher-level Garancy roles. This creates a personalized access profile for each employee, bringing together the access rights they need to perform their specific responsibilities.
The benefits are particularly evident during onboarding: While it previously took up to five days for new employees to become fully operational, the required access rights are now available within just two to three hours.
Self-Service: Giving Business Teams Greater Responsibility
With the Garancy Process Center, DEVK has further streamlined access provisioning. Business process-oriented workflows support the provisioning, modification, and revocation of access rights. This enables business teams to handle more standard tasks independently.
The web-based interface allows responsible staff and managers to manage access rights independently without requiring in-depth technical expertise. This reduces the IT team’s routine workload and allows it to focus more on its core responsibilities. As a result, the same team can manage a significantly larger number of users.
Automation Also Enhances Operational Security
Automation does not end with provisioning new access rights. Synchronization between Garancy IDM and the PIA/Loga HR software ensures that accounts belonging to departing employees can be disabled immediately. Access rights for the Oracle database can also be managed centrally through Garancy, eliminating additional routine tasks for IT.
Results at a Glance
2–3 hours instead of up to 5 days to provision new access rights
Around 90 connected systems managed through a central platform
Self-service processes for business teams through the Garancy Process Center
Stronger implementation of Access Governance requirements
Significant reduction in the IT department’s workload
Scalable Access Rights Management with Garancy
DEVK demonstrates how a heterogeneous IT landscape that has evolved over many years can be centrally integrated into Identity & Access Management. Automated access provisioning, higher-level roles, and greater involvement of business teams make it possible to manage more users and systems without a proportional increase in administrative workload.
According to DEVK’s IAM specialist responsible for the solution, without Garancy, the company would need around ten additional IT employees today to implement its access rights model and meet Governance requirements.
Read the Full DEVK Success Story
Learn more about DEVK’s IAM journey. The full customer success story shows how DEVK built its role architecture, integrated SAP and mainframe systems, and reduced the time required to provision new access from several days to just a few hours. Read the full story now!
With Garancy IDM, we can place an even stronger focus on complying with Governance requirements in access rights management.
:quality(50))
:quality(100))
:quality(100))
:quality(100))
:quality(100))
:quality(80))