Track VI: Roles & Provisioning

1st European Identity Conference
07.05. - 10.05.2007, Munich

Moderator:

The Business of Roles

09.05.2007 11:00-12:00

The Business Aspects of Roles & Provisioning, and how to Address them effectively


RBAC ? It works! Global Roles based Entitlement Management within Siemens AG


Entitlement bei Siemens, d.h. konzernübergreifend werden seit einigen Jahren für über 550.000 Mitarbeiter, Geschäftspartner und Kunden auf Basis RBAC die Berechtigungswelten der zentralen Geschäftsapplikationen, verschiedenen Portale und SAP Systemen verwaltet. RBAC ist also in der Praxis umsetzbar. Michael Gerlach, Siemens CIO IS als verantwortlicher Projektarchitekt wird aus der Praxis über diese Lösung und die organisatorischen Auswirkungen und prozeßseitigen Einflußfaktoren eines erfolgreichen RBAC Projektes berichten. Ergänzend werden die aktuellen Herausforderungen und zukünftigen Themen wie z.B. Federation vorgestellt.

Identity Management Roadmap

09.05.2007 12:00-13:00

Identity Management Praxis: Vom Einstieg bis Provisioning 2.0


KCP has developed a model that will enable companies to assess their level of "identity-readiness" and adopt practical measures leading to true identity excellence. From basic identity management through advanced and service-oiented IAM companies can advance to true business-driven identity management by following a set of simple steps and guidelines.

Modeling Roles

09.05.2007 14:00-15:00

Tailoring Roles for Automated Provisioning


The speech (in German) will give an overview of thevarious methods of role modelling as well as success factors and best-practice examples.

Roles, Process Model and Automated Provisioning at ePlus


  • Short description of biCube IPM in general
  • Role concept – possible content of a role
  • Role structure for E-Plus and subcos
  • Process description from the entry of an employee to exit
  • Automated provisioning of access rights
  • Limitations and capabilities of a role model

Podium: The Art of Defining a Role Model that works

Since the first attempts have been made to model an individuals relationship to the organization and express this relationship in roles, role modeling has faced several challenges. Not surprising several role modeling project failed. Some people even state, that the failures outnumber the successes.

The experts panel will give some insight in state of this discipline, the driving forces towards more formal model based entitlement assignments, the critical factors for success and failure, some quality metrics of good results, the necessary re-requisites for successful role modeling projects, the tool support available and finally some real world examples.

Insurance Industry

09.05.2007 15:00-16:00

Identity Management in der Versicherungsindustrie - von der produktorientierten Lösung zur Gesamtstrategie


  • Business Driver für Identity & Access Management bei Versicherungen - Rainer Knorpp
  • Projektziele für Identity & Access Management bei Versicherungen - Rainer Knorpp
  • Case Study: Einführung eines rollenbasierten Identity Management - Michael Arnold
    • Ausgangssituation
    • Projektziele und –planung
    • Umsetzung eines Rollenmodells
    • Erstellung von Workflows
    • Provisionierung der Systeme
    • Weitere Projektphasen
    • Lessons Learned
  • Case Study: Von der produkt-orientierten Lösung zur Gesamtstrategie - Michael Arnold

Identity Management bei der Deutschen Rentenversicherung


Top-down or Bottom-up?

09.05.2007 16:30-17:30

Role-based Privileges Management - Using Analytics to Quickly Deliver Meaningful Results


Based on the experience of the past few years, Role-based Access Control (RBAC) has emerged as best practice in the management of enterprise privileges, with the major drivers being Identity Management projects and regulatory compliance requirements. Eurekify presents an RBAC implementation approach that is based on pattern-recognition analytics, and has been shown to enable much faster implementation and significant immediate and ongoing benefits to the organization. We will discuss this approach compared to manual and process-oriented approaches.

Top-down or Bottom-up Roles Modeling: Which Approach fits best?


It is commonly accepted that enterprises are urged to take a more rigorous approach to modeling the relationship of individual to the organization, aka role modeling.

Less agreement can be found on the question which path to take best to achieve this goal. Should we choose a stepwise or a big bang approach, model system wise, business process by business process oder enterprise wide and finally should we model top down form business processes to elementary business functions to actors an their interactions with resources?. Or better take the bottom-up path of constructing roles from existing privileges, aggregating and refining them step by step to be sure to match with the enterprises real existing requirements?

The expert panel will discuss these questions and will come up with suggestions and recommendations.

© 2012 KuppingerCole