SailPoint IdentityIQ Review

ROI has been outstanding and our user onboarding time has been significantly decreased

What is our primary use case?

We primarily use this solution to manage our identity. We use it for identity access and onboarding accounts and users.

How has it helped my organization?

Previously, when someone came on board, it took them almost a week or two to get access, to settle in, to be able to become productive. Now, with SailPoint, we can get all of that done within a few hours. It has decreased the onboarding process and increased productivity.

What is most valuable?

So far, we are still in the implementation phase, but one feature that is so valuable is the life cycle management of identity. We also like the integration with other systems. Is very robust and solid. They built some plugins that are really well thought out and they handle most of our requirements. We also like the user interface of the product.

What needs improvement?

The service could be improved with some more out-of-the-box features. If the solution could make the forms more customizable, for example. They are very generic and any changes you make to them, you are doing customization. The solution needs more templates that meet general needs.

I would like to see more Cloud management from this product. Right now they have some, but they are currently plug-ins. It does not handle the management of some of the groups or dynamic groups in the Cloud. I would like to see that in the future. I have heard that they are releasing one soon, but I'm not sure when. That will help us a lot because we are a hybrid solution company. We have some on-prem, some in the Cloud, and we want to manage both.

For how long have I used the solution?

I've been using the solution for one and a half years.

What do I think about the stability of the solution?

When we were doing the request for proposal, we did evaluate stability and got some references from other big enterprise companies that use the product. So we knew, before we selected, we knew that they had a solid product. We've heard that from many of the references we received. But when they came and did the presentation for us, they impressed us. They knew the product, they listened to what we needed, what our pain points were, and they were able to answer our questions and provide us with answers to some of our use cases. We had our requirements and they were pretty much the only one from the other vendors that we selected that could meet ninety percent of all requirements. The rest, they were limited. They had some, or they were struggling on one feature, but not others. But SailPoint, they were strong in most of them.

What do I think about the scalability of the solution?

In terms of scalability, they can handle it. That was one of our requirements is how they could scale. We asked what number of accounts they can handle, and they were way beyond those. Some of their previous implementation, some of the companies they implemented for, they were four times the size of our company. So we were aware that this solution could handle our growth.

I would say we have about eighteen thousand users. 

Right now we are using the solution for onboarding user accounts. Primary and secondary accounts. Our second phase will be managing groups and applications, access to new groups and applications. Then the third, we'll go a little bit with analytics with doing some risk-scoring. Beyond that, we might even use it for any new innovation or company comes with, in terms of managing access to devices and IOTs.

How are customer service and technical support?

So far the integrators have been doing the support. I wish the support from SailPoint was a little bit faster than we've experienced so far. It has taken, sometimes, a couple of weeks to get feedback from them. At the same time, support played a big role in selecting the product.

Which solution did I use previously and why did I switch?

Previously, we picked a product that got moved between so many companies and got bought and merged, so the support was really horrible. We had bad support back then.

How was the initial setup?

The initial setup was straightforward. We knew our requirements, and we've got all the infrastructure required for the system. We didn't have a lot of issues with the product itself. There were some vulnerabilities in the product, but they addressed them in the next version. They were able to address them in version 7.3.

Our deployment took us about, I would say a week. We had to do it in different phases. 

The implementation strategy we had was to start with first, deploying development and QA systems. Then gather lessons learned from these systems, then go to production. That helped us a lot because we found out that we have a lot of concerns with our infrastructure. There were a lot of firewalls that we had to open to communicate with the external system, with the Cloud system that we needed to connect to. So, a lot of that was more like ad-hoc testing. Because we weren't sure how many of the firewall ports we needed to open and which ones we needed. That took a lot of our time. It was just the infrastructure from our end. In terms of the installation of the product and the implementation of it, that was very quick.

We have a big staff because we are integrating with so many other systems from HR to Active Directory to SAP. So the core team is about twelve to twenty people, but the extended team, I would say, if you combine them all together with all the work we've done, is probably more than thirty or forty. They are not all technical. Some of them were just there for governance or requirement gathering.

What about the implementation team?

We use an integrator to do all the coding for us, and that worked very well. They knew the product. They've implemented for a while for other clients. The company we work with is called Edgile and we have had a great experience working with them. We work very well with them. We consider them our partners. They understand our requirements, and they give us their feedback and their best practices. So we have a good relationship.

What was our ROI?

In terms of our phase one, to get people onboarded right away, within a day, that has saved us a lot of money. Also, the product discovered a lot of clean-up that we needed to do in the kind of systems that we integrate. Previously, we didn't know. So that helped us a lot in cleaning up some of our data. 

There are so many other features and other things that we can do probably, that we haven't gotten to that we know is going to save a lot in terms of the password reset support. Right now, our outsource company handles that. Once we start implementing that in a few more weeks, people will have self-service password resets. They don't need to call the help desk to get it unlocked. It costs us money, using the help desk. They will be able to do it themselves and it will save us money.

Group management and access to the application will help us too. Right now, that's all done through ticket requests and manual access implementation. In our next phase, that's all going to be automated where do you go to a form and select that and you get access, get approved and get access. It will save us a lot of time from the support respect.

What's my experience with pricing, setup cost, and licensing?

The licensing fees are on a yearly basis. That's not my part of the job, so I don't know what the costs are. I handle Bio Supply management so I really don't know.

There are add-ons. A lot of them have to do with if we want any plug-in's. So if there's any new system that comes to our company that we want to integrate with, they sell their plug-ins as an add-on. It's not out-of-the-box. So integration with Active Directory, that was an add-on. Integration with SAP, that was an add-on. They are their own module. They are not packaged with the product that comes with it. You have to buy them separately. But, everybody needs them.

Which other solutions did I evaluate?

We had our previous vendor submit in our RFP, but they did not bring anything to the table that was new. There weren't many enhancements and improvements to the product and we really did not have a good experience with their support. 

We were looking at One Identity. SAPIEN was another one we looked at. Also, Okta, NetIQ, and Centrify. But, some of them were mainly cloud-based. Some of them were a mix of both, but more of cloud and less of on-prem. So, SailPoint was the right one that handled both.

We had some use cases that we gave to them and we needed them to answer how they would implement that use case. We wanted that feedback out of all of the vendors. SailPoint was the only one that came back with the right answers.

What other advice do I have?

We have some old processes in place that need to be revisited and updated. Those, of course, made our implementation a little bit late and we ran into some issues.

One of the hurdles has been that people are used to the old method and when a new change comes in, a lot of people are not very open-minded to it. So it takes a lot of training and convincing about this new technology. We need to make changes to the way the form looks, the process. We had to make a lot of changes to the current processes. We had very outdated processes that were not working well for us because we had to get a lot of exceptions. And any exceptions you make, you tend to break automation and start doing manual processes, and that slows down productivity. 

That was a little bit frustrating and a lesson learned. Feedback from the client and explaining to them why we're changing some of the processes, policies, and standards was challenging. But we had to do a lot of cleanup before doing the implementation. We had an old system that was there for more than seven years. So that product was almost at the end of its life and we had a lot of complaints from the client that they were fed up with it. They wanted a change. But they were not expecting a change to the forms and the processes. They were expecting us to just solve the issues and move on, not a big system change. So we're training people. We created a lot of videos for them to play back when they request things. That helped a lot. We created a blog for them to give us any of their feedback. So we can make improvements because we are still in phase two of our implementation. We still have three more phases to go.

For advice, I would say to make sure you gather your requirements first. Make sure you have more thoughts, make sure you know what your pain points are and what are you expecting to get out of the product that you select. That will help you a lot in selecting the right vendors. Secondly, have some solid use cases, and when you use those use cases, most of the time you should know the answer to the questions. That will help you in identifying who can meet your requirements.

Do your diligence in terms of getting some references. Specifically, references for a current implementation from another customer. Getting that information from that customer will help you a lot in terms of how their implementation went, and what their pain points were in implementation.

I would give the solution a nine out of ten. When every possible manual process we have right now can get automated, I'll give it a ten. We still have some processes that we have to do manually.

Which version of this solution are you currently using?

**Disclosure: I am a real user, and this review is based on my own experience and opinions.
More SailPoint IdentityIQ reviews from users
...who compared it with NetIQ Identity Governance
Find out what your peers are saying about SailPoint, Oracle, Broadcom and others in User Provisioning Software. Updated: February 2021.
464,857 professionals have used our research since 2012.
Add a Comment