Top Banner
2013 Open Stack Identity Summit - France Leveraging Cloud and Expert Managed Services to simplify your IAM implementation
12

Identity as a Managed Cloud Service

May 10, 2015

Download

Technology

ForgeRock

A Case Study presented by Abhimanyu Yadav, Vice President of Simeio Solutions in EMEA
Welcome message from author
This document is posted to help you gain knowledge. Please leave a comment to let me know what you think about it! Share it to your friends and learn new things together.
Transcript
Page 1: Identity as a Managed Cloud Service

2013 Open Stack Identity Summit - France

Leveraging Cloud and Expert Managed Services to simplify your IAM implementation

Page 2: Identity as a Managed Cloud Service

•  A comprehensive suite of services and solutions that provide a single-source for all IAM needs

Simeio Solutions

Page 3: Identity as a Managed Cloud Service

Simeio Solutions

•  Successful deployments of all ForgeRock Open Identity Stack products in a Cloud, Hosted, or On-Premise model

•  Managed services operation center in Bombay providing expert resources for ops & maintenance

•  ForgeRock products provided with Quick Start offerings in the Simeio Business-Ready IAM Cloud

•  Developed Simeio Advanced Authentication Service for leveraging OpenAM in the Cloud

•  Developed portable administration console for OpenSSO / OpenAM - POssO

Page 4: Identity as a Managed Cloud Service

Drivers for Cloud Managed Services ⬆ Improved Risk Mitigation via faster project deployment

o  Measured 60% better time on deployment in the Cloud vs. traditional on-premise o Re-usable components in terms of code o Can turn on hardware with pre-configured environment in days o No lead time to get High Availability, Disaster Recovery, Scaling setup o  Images are cloned with basic OOTB use cases configured

⬇  Lower Capital Investment & Supporting Infrastructure costs o  Clients who do not have investment in particular DB/App Server/OS o  Clients who do not have standard or in-house skills for ForgeRock

⬆  Operational Efficiencies & Quicker Time to Value o  Hybrid solutions for Clients interesting in migration from Sun/legacy to ForgeRock o  Reduced timing to procure hardware o  Quick-start packages for initial trials

Page 5: Identity as a Managed Cloud Service

An enterprise-grade Identity-as-a-Service (IDaaS) platform having over 10 million Identities managed

•  Complete •  Access Management •  Identity Administration •  Role and Compliance Management •  IT Governance, Risk and Compliance •  Security and Risk Intelligence

•  Flexible •  Technology agnostic •  Tailored to specific specifications •  Flexible subscription options

•  Secure & Reliable •  Architected for security, scalability and reliability •  Multiple certifications and attestations (e.g. ISO 27001, SOC 1/SSAE)

Simeio Business-Ready IAM Cloud

Page 6: Identity as a Managed Cloud Service

•  Complete end-to-end IAM services and solutions

•  Seamless, secure and role-appropriate access to information and

services anytime, anywhere, on any device.

Simeio Business-Ready IAM Cloud

Page 7: Identity as a Managed Cloud Service

Representative Case Studies A European Financial Services organization •  Managing customer relationships for B2B services •  Chose the ForgeRock Open Identity Stack as strategic IAM platform •  Deployed OpenIDM for access request & provisioning

An American Research company with global based •  Enabling Business Performance through Cloud-based IAM services •  Centralized authentication and SSO •  OpenAM in Cloud Authentication Service

A Media-Entertainment giant from AsiaPac •  Simplifying IAM experience through expert managed services •  Migration of legacy systems to ForgeRock •  Managing large volume of identities using OpenDJ

Page 8: Identity as a Managed Cloud Service

Case Study 1

•  Replace legacy Customer Access Request and Administration tool

•  Lack of efficient customer registration, management, and request processes

•  Extensive use of ‘model-on’ methods for granting access

•  Relationship managers do not know which groups to request for the customer as they are “IT groups”

•  Process relied on trust & knowledge of business users, as there was no systemized review of validity of the requestor and customers they manage

•  Potential in-efficiencies of user id management

•  Lack of management visibility into who has access to what

Business Challenges

•  Reduced costs & time for customer on-boarding through automatic registration / population customer data data requiring only service administrator approvals

•  Improved accuracy of access grants through business-friendly descriptions of access groups

•  Enablement of connectors for integration and basic IAM services for underlying applications

•  Increased productivity by reducing the time required to create accounts, passwords, and access rights for new customers

•  Automated generation of necessary attributes, such as mailboxes an account names

•  Replaced legacy mainframe system functionality with OpenIDM for customer registration, assigning certificates and provisioning LDAP groups

•  Implement approval workflows for required controls

•  Implement account creation and automated provisioning capabilities

•  Implement end-user e-mail notifications and data reconciliation with target systems

•  Provide a business friendly user interface for relationship managers to register customers, renew certificates & request access to target systems

•  Enhance audit controls by providing audit trail reporting & task delegation capabilities

The Simeio Solution Key Results

•  Managing customer relationships using ForgeRock OpenIDM

Page 9: Identity as a Managed Cloud Service

Case Study 2

•  Users distributed all over the world (40 countries, 80+ locations) need a seamless and single method to access enterprise services

•  Existing SSO solution is limited in terms of global reach, as well as integrating applications;

•  Needed access to both on-premise and SaaS applications, using one set of credentials;

•  Be able to use certificates as user identifier instead of loginID +password

•  Consolidate users distributed across different AD instances all over the world and create a single window for provisioning and user authentication

Business Challenges

•  Delivered an Access Management platform that is able to onboard new applications with very little integration

•  Established a standard and integrated with SaaS applications

•  Integration with ADFS for Office365 and SharePoint users

•  Certificate based authentication provides increased security

•  Seamless access from desktop and mobile devices, both from within the network and over VPN

•  Single view of all the users and single solution to provision and manage user identities for all the locations across the globe

Simeio Cloud Authentication Service •  Provided a cloud-based single sign-on

and virtual directory solution;

•  Provided single sign-on service for 10 applications In 10 weeks time

•  Provided SSO service to in-house, on-premise (e.g. EBS) and SaaS (e.g. travel, learning management)

•  Added new applications (after first deployment) within a week;

•  Users can access either by using a user cert issued by Client, or using AD credentials

•  Seamless access to Office365 and SharePoint applications

The Simeio Solution Key Results

•  Enabling Business Performance through Cloud-based IAM services

Page 10: Identity as a Managed Cloud Service

Case Study 3

Business Challenges

•  Off-shore and on-shore model for management, monitoring & maintenance of IAM infrastructure

•  Program management – Simeio providing operational support & managed services staff

•  Skilled managed services team integrated into Client organization taking over production system support

•  Access to large source of IAM technical specialists with ability to scale as needed through shared services model

•  Ensure high availability of IAM infrastructure, and production environment support to include reporting, application support, log monitoring & patching

The Simeio Solution Key Results

•  Simplifying IAM through Expert Managed Services

•  Layoffs in security group led to search for managed services organization to assist wit multiple products

•  Sun Identity Manager

•  CA SiteMinder

•  Virtual Directory

•  Migration of ForgeRock products

•  24x7 support for incident and problem management (root cause analysis, resolution & reporting)

•  Knowledge base creation & maintenance

•  Periodic development & integration support requirements

•  Streamlined vendor management process – Simeio now handling all support, maintenance & enhancements

•  Operational cost savings – economies of scale gained from shared infrastructure & shared resources

•  Improved management of capital & resources – operational & capital expenses became more predictable and cash flow improved

•  Enhanced integration & delivery time for on-going projects by 40%

•  Agility and increased business focus – Client was able to focus on core business activities, their market and customer

Page 11: Identity as a Managed Cloud Service

Our Differentiators COMPLETE We’re the only company that offers complete, end-to-end IAM services, from plan to build to operate.

FOCUSED All we do is IAM. Our technical, functional and domain knowledge is unparalleled.

FLEXIBLE We sell solutions, not products. We’re not tied to any one vendor, technology or model, so we’re free to deliver a perfect-fit solution.

Page 12: Identity as a Managed Cloud Service

Our Global Service Team

For more information contact: Abhimanyu Yadav, VP | [email protected] | +44 (0) 7919955480