building-identity-governance-lifecycle-process

Featured

Builds comprehensive identity governance and lifecycle management processes including joiner-mover-leaver automation, role mining, access request workflows, periodic recertification, and orphaned account remediation using IGA platforms. Activates for requests involving identity lifecycle management, JML processes, role-based access provisioning, or identity governance program design.

AI & Automation 12,642 stars 1468 forks Updated today Apache-2.0

Install

View on GitHub

Quality Score: 99/100

Stars 20%
100
Recency 20%
100
Frontmatter 20%
70
Documentation 15%
100
Issue Health 10%
50
License 10%
100
Description 5%
100

Skill Content

# Building Identity Governance Lifecycle Process ## When to Use - Organization lacks automated joiner-mover-leaver (JML) processes for identity management - Access provisioning is manual and takes days, creating productivity loss and security gaps - Former employees retain access to systems after termination (orphaned accounts) - Role explosion has created thousands of roles with unclear ownership and overlapping entitlements - Compliance requirements mandate documented identity lifecycle processes (SOX, HIPAA, GDPR) - No centralized visibility into who has access to what across the enterprise **Do not use** for single-application user management; identity governance addresses cross-system lifecycle management requiring correlation of authoritative HR sources with downstream application provisioning. ## Prerequisites - Authoritative HR system (Workday, SAP SuccessFactors, BambooHR) as identity source of truth - IGA platform (SailPoint, Saviynt, One Identity) or Microsoft Entra ID Governance - Active Directory and/or Azure AD as primary directory services - Application connectors for target systems requiring automated provisioning - Defined organizational role structure and reporting hierarchy - Stakeholder buy-in from HR, IT, security, and business unit managers ## Workflow ### Step 1: Define Identity Lifecycle States and Transitions Map the identity lifecycle from hire to termination: ```python """ Identity Lifecycle State Machine Defines all identity states and val...

Details

Author
mukul975
Repository
mukul975/Anthropic-Cybersecurity-Skills
Created
3 months ago
Last Updated
today
Language
Python
License
Apache-2.0

Integrates with

Similar Skills

Semantically similar based on skill content — not just same category

AI & Automation Solid

implementing-identity-governance-with-sailpoint

Deploy SailPoint IdentityNow or IdentityIQ for identity governance and administration. Covers identity lifecycle management, access request workflows, certification campaigns, role mining, SOD policy

12,642 Updated today
mukul975
AI & Automation Listed

maturity-ladder

Build a per-role human AI adoption maturity matrix with observable behaviors per level, current state assessment, barrier-informed progression paths, and visibility infrastructure — saved to $HOME/.ai-first-kit/. Measures where HUMANS actually are on the AI adoption journey — by evidence, not self-report — using human job titles or solo-founder operational modes (never agent role definitions). Use when the user says 'maturity matrix', 'capability ladder', 'adoption levels', 'how AI-ready is my team', 'measure AI adoption', 'where are we on AI', 'track AI skills', 'readiness assessment', 'AI capability assessment', or 'adoption scorecard'. Also use when the user describes uneven AI adoption across teams, people saying they don't need AI, wanting to create social proof for adoption, needing to measure progress, or wanting visible levels that motivate improvement — even if they don't use the word 'maturity'. This skill MUST be consulted because it produces a structured per-role maturity matrix with behavioral ev

5 Updated yesterday
synaptiai
AI & Automation Featured

performing-entitlement-review-with-sailpoint-iiq

Performs entitlement review and access certification campaigns using SailPoint IdentityIQ including manager certifications, targeted entitlement reviews, role-based access validation, SOD violation remediation, and automated revocation workflows. Activates for requests involving access reviews, entitlement certifications, SailPoint IIQ governance, or periodic user access recertification.

12,642 Updated today
mukul975
AI & Automation Featured

implementing-just-in-time-access-provisioning

Implement Just-In-Time (JIT) access provisioning to eliminate standing privileges by granting temporary, time-bound access only when needed. This skill covers JIT architecture design, approval workflo

12,642 Updated today
mukul975
AI & Automation Solid

iam

AWS Identity and Access Management for users, roles, policies, and permissions. Use when creating IAM policies, configuring cross-account access, setting up service roles, troubleshooting permission errors, or managing access control.

1,111 Updated 5 days ago
itsmostafa