Enterprise IAM governance lifecycle
archimatev1/01 Views
/02 About
Connect joiner-mover-leaver lifecycle, privileged rights, identity attestation, access reviews and enforcement to security assurance
Purpose: Connect joiner-mover-leaver lifecycle, privileged rights, identity attestation, access reviews and enforcement to security assurance. Reading the diagrams: Architecture landscape contains the complete semantic model. Governance and delivery isolates organizational decisions and enabling services. Delivery and assurance isolates runtime capabilities, controls, stewardship and evidence. Adoption: this is a reference architecture, not proof of implementation or regulatory compliance. Replace generic roles with actual owners and solutions. Record decisions, scope, constraints, interfaces, data classification, implementation status and evidence. Verify all applicable policies and control objectives against the current official source. Source and attribution: original Arq interpretation informed by https://cloudsecurityalliance.org/artifacts/zero-trust-principles-and-guidance-for-iam. No official source artwork is reproduced, and no endorsement or certification by the source publisher is implied.
Published by Lattix · 12 elements · 13 relationships · validated on publish
/03 Contents
- Organization Unit
- Workforce administration
- Process
- Joiner mover leaver, Access approval, Entitlement recertification
- Role
- Identity governance owner
- Application Component
- Identity provisioning, Authentication enforcement, Authorization policy, Privileged access, Access anomaly detection
- Application
- Protected enterprise services
- Data Store
- Identity governance evidence