it_user194688 - PeerSpot reviewer
IT Access Management Process Leader at a consultancy with 10,001+ employees
Real User
Reporting and some GUI areas need work but we have consolidated a single view of a user's access to multiple systems.

What is most valuable?

  • Certification
  • Full Life Cycle management of IT system accounts

How has it helped my organization?

  • It has, for the first time, consolidated a single view of a user's access to the company's multiple IT systems
  • This has now allowed us to confidently cleanup a large proportion of accounts that could not previously have been easily identified as no longer required
  • Furthermore, it has forced ownership of non-user/non-individual accounts and accountability of them

What needs improvement?

  • Reporting and some GUI aspects. Reporting lacks the flexibility of retrieving the vast amount of data that we know is in the database, but not easily accessible
  • Scheduling also comes short, specifically when it comes to multiple jobs that are interdependent (e.g. preventing certain groups of jobs from running concurrently)

For how long have I used the solution?

Five years across different companies.

Buyer's Guide
SailPoint IdentityIQ
April 2024
Learn what your peers think about SailPoint IdentityIQ. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
769,630 professionals have used our research since 2012.

What was my experience with deployment of the solution?

Yes - Some application connectors (namely Lotus Notes) - have some fundamental flaws. But the major issue was cleaning up, what we expected to be, authoritative data - specifically HR data, and users not in HR (eg. contractors, etc) and ensuring global consistency and adherence to standards.

What do I think about the stability of the solution?

Not of the core product, but some issues with some of the connectors (especially Lotus Notes, and ServiceNow). This has led to some issues with daily batch jobs which either time out, hang, or are terminated and this has in turn, we suspect, created some internal DB link corruptions.

What do I think about the scalability of the solution?

Not yet. Though current nightly batch jobs range from completing within 8 hours to 48 hours, with no obvious reasons as to why

How are customer service and support?

Customer Service:

Very good.

Technical Support:

Very good.

Which solution did I use previously and why did I switch?

Yes we did. We switched because the solution no longer offered support as it was sold to Sailpoint.

How was the initial setup?

It was complex. Identity and account management is very heavily dependent on the accuracy, authority, and timing of the source data. As the implementation progressed, we became aware more and more that some of the missing detail (especially around the exceptions of when a central unique Employee number is actually "central" or consistent, or the complexity of some of the attributes - e.g. whether their validity is date dependent, allowing for multiple values, etc) will cause issues in the proposed processes and the timing of providing access when required.

What about the implementation team?

We used a vendor whose level of expertise was excellent.

What was our ROI?

No ROI as of yet.

What's my experience with pricing, setup cost, and licensing?

It was two years give or take.

Which other solutions did I evaluate?

Yes - NetIQ, Oracle, and SAP.

What other advice do I have?

Spend double the time/money up front in fully understanding your business requirements, opportunities for process changes. Also ensure you get a detailed understanding of identity and access business processes and understand your HR (and other authoritative) data source.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
PeerSpot user
IdM Consultant at a tech services company with 501-1,000 employees
Consultant
This is the best product of its type available however the price is very high

What is most valuable?

  1. Very user friendly unified UI (for users and administrators)
  2. An excellent out-of-the-box features (hierarchical RBAC, flexible provisioning policies, role-mining, certifications, life-cycle events, etc)
  3. Modest hardware requirements
  4. A large list of out-of-the-box connectors (with no additional charge)
  5. Using only standard java technologies (java, beanshell, HTML, jsp, JavaScript, XML, some Apache projects)
  6. Possibility to deploy the solution on different DBMS and application servers of your choice
  7. Very fast implementation of the solution with custom modifications

What needs improvement?

  1. The price is very high
  2. The partnership program is very inflexible
  3. Provisioning. This functionality sometimes require too much coding to implement some customers' requirements
  4. "Ease of use." IdentityIQ has a function that can be described as duplication (this can depend on the point of view) for example, groups, population, and work-groups
  5. Implement the support of organizational structure

For how long have I used the solution?

About one year.

What was my experience with deployment of the solution?

Yes, of course. Every time, when you implement a project for a customer you will encounter some issues.  The primary question - how quickly the vendor will help you with issues, or how strong are the programmers and engineers in your team to find a solution in-house.

What do I think about the stability of the solution?

No, I didn't.

What do I think about the scalability of the solution?

No, I didn't.

Which solution did I use previously and why did I switch?

Of course. In addition to SailPoint IdentityIQ I have experience in implementing MS FIM 2010, OIM 11gR2, and Oracle Waveset (Sun IDM) 8.

In my opinion this is the best product and I agree with Gartner which described it as the best product in the "Identity Governance and Administration Magic Quadrant" in 2013-2014.

How was the initial setup?

I would say it's simple (compared with OIM 11gR2, but more difficult when compared with MS FIM 2010 R2).
IdentityIQ has very good documentation and you shouldn't face problems with the installation.

What about the implementation team?

With an internal team. All team members have very strong experience in the IDM sphere, including working experience with other IDM vendors (Sun, Oracle, IBM).

What other advice do I have?

SailPoint IdentityIQ is a very good product (in my opinion - it is the best product and it took the leading place in Gartner's Magic Quadrant two years in a row) and I can recommend it to all who are looking for a very strong IDM solution (if the price suits you).

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
SailPoint IdentityIQ
April 2024
Learn what your peers think about SailPoint IdentityIQ. Get advice and tips from experienced pros sharing their opinions. Updated: April 2024.
769,630 professionals have used our research since 2012.
it_user191790 - PeerSpot reviewer
Security Consultant at a tech services company with 51-200 employees
Consultant
It has automated access governance but the multi-aggregation feature needs improvement.

What is most valuable?

Certification of user's access, enabling the organization to have a strict governance of what its employees are for entitled to currently.

How has it helped my organization?

By using this product the organization has moved from manual access governance done previously to automated governance which has a full audit trail, and this is very beneficial.

What needs improvement?

Some of the features like multi-aggregation and self healing feature in case of corrupted certificates would be pretty useful which would enable easy debugging in case of issues.

For how long have I used the solution?

More than two years.

What was my experience with deployment of the solution?

No, the deployment is pretty straightforward.

What do I think about the stability of the solution?

No, the product is pretty stable given it has sufficient clustering and HA catered for seamless 24x7 high volume access.

What do I think about the scalability of the solution?

Yes, with a growing number of certificates there was slowness in the overall certificate generation time which I believe is corrected in the upcoming release of the solution.

How are customer service and technical support?

Customer Service:

7/10.

Technical Support:

8/10.

Which solution did I use previously and why did I switch?

Yes, we used Aveksa's access governance which seemed to have a lot of issues with regards to aggregation and certificate generation which prompted the switch to Sailpoint.

How was the initial setup?

It was pretty straightforward, just need to follow installation documentation properly.

What about the implementation team?

It was done by the in-house team.

Which other solutions did I evaluate?

Aveksa was compared with Sailpoint identityIQ and Sailpoint IdentityIQ fared better in terms of performance and features.

What other advice do I have?

If you are looking for a product that would suit your access governance needs then perhaps Sailpoint identity IQ is a good option, but if you require automatic remediation capabilities as well then you might need to integrate it with an identity management product like OIM.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
it_user254895 - PeerSpot reviewer
it_user254895Senior Director at a insurance company with 10,001+ employees
Real User

SailPoint has a ton of end point remediation capabilities. This is one of the strengths of the product including Native Change Detection. Reaching out and sync'ing state with end-points to IIQ is one of the things it does very, very well. There are a number of options you can take from very draconian to launching a new certification to certify the end-point discrepancy. I'd place it toe-to-toe with any other product in this category. I don't know any other product that can beat it in terms of capability and ease of implementation here.

See all 4 comments
it_user201006 - PeerSpot reviewer
Identity Management Infrastructure Services Senior Analyst at a insurance company with 501-1,000 employees
Vendor
Make sure to verify your requirements before implementation.
Pros and Cons
  • "Security and administration for any new/current access."
  • "It allowed to implement the automated processes when a new employee is hired. It allows to have a main central process for new hires."

What is most valuable?

Security and administration for any new/current access.

Manage process and search information.

How has it helped my organization?

It improves the function for CMS - the website is a centralized system to manage accounts and access for CMS applications.

What needs improvement?

It allowed to implement the automated processes when a new employee is hired. It allows to have a main central process for new hires.

For how long have I used the solution?

I've used it for three years now.

What was my experience with deployment of the solution?

No, but we encountered some bugs after the implementation and they were fixed.

What do I think about the stability of the solution?

A few of them - they were connection and performance issues but they both have been fixed.

What do I think about the scalability of the solution?

Yes. We needed to contact Sailpoint directly to address the issue.

How are customer service and technical support?

Customer Service:

It was ok.

Technical Support:

It needs to improve SLA.

Which solution did I use previously and why did I switch?

The client made the decision.

What about the implementation team?

Both vendor team and in-house.

Which other solutions did I evaluate?

I wasn't involved in the process, but other solutions were evaluated before choosing this one.

What other advice do I have?

Verify the requirements and the growth.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Global Advisory Board for Certified Threat Intelligence CTIA at EC-Council
Real User
Ease of application onboarding, approvals, provisioning, and lifecycle UI performance have improved my organization
Pros and Cons
  • "This solution has improved our organization through its ease of application onboarding, approvals, provisioning, and lifecycle UI performance."
  • "I think that the onboarding framework could be improved."

What is our primary use case?

We primarily use this solution for simplifying the IAM lifecycle, naming conventions, and application onboarding.

How has it helped my organization?

This solution has improved our organization through its ease of application onboarding, approvals, provisioning, and lifecycle UI performance.

What is most valuable?

I have found all of the features valuable and easy to use.

What needs improvement?

I think that the onboarding framework could be improved.

For how long have I used the solution?

Three to five years.
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Jon Shende - PeerSpot reviewer
Jon ShendeGlobal Advisory Board for Certified Threat Intelligence CTIA at EC-Council
Real User

Great job with the new onboarding framework,SP! Also shoutout to my team at WU, I reckon for their work there on our custom framework from two years ago...

it_user787611 - PeerSpot reviewer
Works at a tech services company with 10,001+ employees
Real User
Great product to manage the access control of users
Pros and Cons
  • "Great product to manage the access control of users."
  • "Provides good authorization and authentication system functionality."
  • "Needs to focus on automation wherein provisioning of work can be improved and access certification should be automated without the intervention from a manager for approval."

What is our primary use case?

SailPoint IIQ Features:

  • Compliance controls
  • Access request and automated provisioning
  • Password management
  • Data access governance
  • Role lifecycle management

Great product to manage the access control of users.

How has it helped my organization?

  • Provides good authorization and authentication system functionality.
  • Keeps data safe.

What is most valuable?

  • Report generation
  • Compliance manager dashboard reporting
  • Policy violation
  • Access certification, etc.

What needs improvement?

Needs to focus on automation wherein provisioning of work can be improved and access certification should be automated without the intervention from a manager for approval.

For how long have I used the solution?

One to three years.

Which solution did I use previously and why did I switch?

Not applicable.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
it_user188808 - PeerSpot reviewer
IP Technical Consultant at a consultancy with 51-200 employees
Consultant
The layout of the controls had an intuitive feel but it ​broke down several times

Valuable Features:

Building/expanding a directory tree for my customers was the most valuable tool. Another was the ability to remove someone from the network with just a few clicks.  It was fairly easy to learn and the layout of the controls had an intuitive feel.

Improvements to My Organization:

The organization is moving to replace several tools with this one tool.

Room for Improvement:

Broke down several times during my 4 months but overall the delays were mostly minor.

Use of Solution:

I used it for four months.

Other Advice:

I was an Identity Access Management operator for a company contracted as an outsource for a major global company. My involvement was brief. I was part time help while looking for full time employment in an unrelated field.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
it_user711927 - PeerSpot reviewer
Delivery Manager at a tech services company with 1,001-5,000 employees
Real User
User provisioning and the role management features are good.
Pros and Cons
  • "User provisioning and the role management features are good."
  • "The advanced provisioning features require more improvement."

What is most valuable?

User provisioning and the role management features are good.

What needs improvement?

The advanced provisioning features require more improvement.

For how long have I used the solution?

I have used this solution for seven years.

How is customer service and technical support?

I would rate the technical support a 4/5.

How was the initial setup?

The setup was straightforward.

Which other solutions did I evaluate?

I did evaluate other options.

What other advice do I have?

I would recommend this product based on the customer requirements.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Download our free SailPoint IdentityIQ Report and get advice and tips from experienced pros sharing their opinions.
Updated: April 2024
Buyer's Guide
Download our free SailPoint IdentityIQ Report and get advice and tips from experienced pros sharing their opinions.