TrustRadius: an HG Insights company

SailPoint Identity Security Cloud Reviews & Insights

Score9 out of 10

34 Reviews and Ratings

Community insights

TrustRadius Insights for SailPoint Identity Security Cloud are summaries of user sentiment data from TrustRadius reviews and, when necessary, third party data sources.

Pros

Easy-to-use UI: Users have consistently praised the easy-to-understand and navigate user interface of SailPoint Identity Platform. Many reviewers have found the UI to be comprehensible and user-friendly, making it effortless to perform tasks and manage access.

Flexibility and scalability: Multiple users have highlighted the flexibility and scalability of SailPoint Identity Platform. They have mentioned that the system effectively handles a large number of applications, individual entitlements, and request transactions without any performance issues. This indicates that SailPoint Identity Platform can accommodate complex business needs without requiring customization.

Streamlined provisioning process: Reviewers have appreciated SailPoint Identity Platform's access request workflow and back-end process. The system manages all the various pieces of a request and presents the completed request to the provisioning agent as a single record. This streamlines the provisioning process, enhances efficiency, and reduces manual effort for provisioning agents.

SailPoint Identity Security Cloud Reviews

15 Reviews

Why to and Why Not to Use SailPoint

Rating: 9 out of 10
Incentivized

Use Cases and Deployment Scope

SailPoint IIQ is used for identity governance and to understand who has access to what and whether that access should be granted or not. We also use it for access to recertification automation which provides a complete report of who has what access in the organization at the press of a button. We are able to automate the entire process of joiners, movers, leavers and the provisioning and de-provisioning of identities. When someone joins any organization, all their roles and access are provided at the click of a button. When they move from one department to the other, the accesses which are not required are revoked, and the ones which are necessary are provisioned. SailPoint offers complete automation of the lifecycle of any user. We are able to offer on-prem on cloud-based deployments, depending on our customer's requirements.

Pros

  • Identity Governance
  • Access Reviews (Certification)
  • Audit and Compliance
  • Risk and Policies
  • SOD Policies

Cons

  • More Out of the Box Connectors
  • Support for Customizations
  • Improved UI

Likelihood to Recommend

Employee lifecycle, join, move, certify and leave, as well as self-service for access and password management are suitable cases.

SailPoint Access Risk Management (ERP Maestro) review

Rating: 8 out of 10
Incentivized

Use Cases and Deployment Scope

I suggested it to my customers to implement the compliant user provisioning for the SAP landscape. After joining hands with SailPoint Access Risk Management (ERP Maestro) it is able to manage the E2E User life cycle and Role life cycle for SAP Landscape.

Pros

  • SOD Risk Management
  • User level and Role Level Risk Analysis
  • Compliant User Provisioning

Cons

  • SailPoint Access Risk Management do not have Fiori, S/4 HANA, Non-SAP rulesets
  • SailPoint Access Risk Management do not support cross system risk analysis

Likelihood to Recommend

If an organization already using SailPoint Access Risk Management (ERP Maestro) as an identity management system, then it will be beneficial to bring in SailPoint Access Risk Management (ERP Maestro) to cover the topic of SOD for the SAP landscape.
Vetted Review
SailPoint Identity Security Cloud
1 year of experience

Great IAM solution

Rating: 8 out of 10

Use Cases and Deployment Scope

We use currently SailPoint in our company as a self-service platform for the whole management and lifecycle for the joiner mover leavers of all our employees IDs, Accounts as well for the whole management of the access right, roles and the access reviews. Also for the management for more than 200 applications that are connected to the system.

Pros

  • Management of User ID
  • Management of accounts
  • Management of access reviews
  • Management of applications

Cons

  • UI should be more user friendly
  • Management of roles

Likelihood to Recommend

We are happy with the management of the Id, accounts where the user can request any access easily. Also the many connector which Sailpoint is offering in order to onboard lots of applications is quite helpful. The access review module has also have been improve so that large campaigns can we work out easily. Where we see some improvement is on the UI as here it is not so intuitive for the end user, so that we need to make lots of communications and training so that the user is able to understand how to use it. For the administration and creation of roles it also would be great to have some improvements here to make it more easily its management.

SailPoint IdentityIQ - Rolls Royce of a platform if used correctly and truely invested in

Rating: 8 out of 10
Incentivized

Use Cases and Deployment Scope

We have the IdentityIQ platform implemented within my organization, and its main benefit (although not it's only one) is the automation it brings to the Provisioning of user accounts/profiles and the automation of access via its roles functionality. Through this automation, LCM is also controlled by IdentityIQ, where people joining, moving, and Leaving the organization have their accounts subsequently amended or removed. This mechanism saves countless hours across our organization both in Technology and Business support departments. The product ties all our employee's access to our critical Applications and enables them to access them at the right time, and in the right place.

Pros

  • Brings users access, profiles and accounts all into one place
  • Manages the Life Cycle Management process across ALL identities, permanent and Temporary
  • Secures and manages access to critical applications and resources across the group
  • Enables Info. Security to customise, share and delegate authority across the group
  • Single version of the truth across our technology platform

Cons

  • The use of a Distinguished name and the lack of a clear support model for the task that is necessary for this process to work is not a good idea.
  • In a hybrid model where application automation is not fully rolled-out, means that there can be inconsistency in the process, which leads to duplicate accounts.
  • Certification: The functionality is a bit clunky and could be designed with the end-user experience in mind (Although this might be due to our version of IIQ)

Likelihood to Recommend

This platform is well suited for managing large-scale employees/Customers/Users. Its ability to handle and work through thousands of transactions on a daily basis is one of its true benefits. Conversely, companies with smaller user bases might not feel this processing power. Organizations with a large number of users in similar roles, such as a Contact Centre or warehouse, will really benefit from being able to deploy Role-based access controls that will enable large numbers of people to access what they need in order to complete their roles. Highly audited and compliant companies would really benefit from the ability to customize and access low-level provisioning access logs.

SailPoint IdentityIQ Implementation in a Dynamic Healthcare Environment

Rating: 8 out of 10

Use Cases and Deployment Scope

We utilize the SailPoint IdentityIQ platform to build and manage employee identities which include various types of user accounts, birthright access, and application assignment. IdentityIQ is also used for self-service account registration, password/account management, and automating several employee onboarding and offboarding workflows. By interfacing with our company's HR system, IdentityIQ allows us to quickly build and modify employee identities, reduce the required time for application assignments, and allow our hospital staff to begin working without any delays in a dynamic healthcare environment.

Pros

  • Role & Entitlement Management
  • Platform Scalability and High Availability
  • Robust Capabilities for Application and Systems Integration

Cons

  • The development process for managing and Debugging rules could use some Enhancements
  • Auditing and logging capabilities are limited
  • Documentation regarding the specific process, programming details, and system limitations are missing

Likelihood to Recommend

IdentityIQ works well in our environment which requires interfacing with many on-prem and cloud-based applications. The multi-domain and identity governance capabilities are also very useful. Because of the dynamic healthcare environment where IIQ is being used, some additional out-of-the-box capabilities and tools would be appreciated.

SailPoint Identity IQ - it just works great.

Rating: 9 out of 10
Incentivized

Use Cases and Deployment Scope

We use SailPoint's platform for the employee lifecycle, join, move, certify and leave, as well as self-service for access and password management. This helps to drive the least privileged access, the speed of access provisioning is increased, and avoid helpdesk calls.

Pros

  • Access management
  • Password / account management
  • Certification campaigns
  • Leaver (termination) process

Cons

  • Workflow can be overly complex
  • Support for n and n-1 operating systems and target applications even though the vendor still supports the older versions (n-2 and earlier).
  • Metrics and reporting are rudimentary at best

Likelihood to Recommend

Customer support is top-notch. The product, out of the box, works very well - do not customize it. Certifications are very flexible. The user interface is well comprehended for all experience levels of users.
Vetted Review
SailPoint Identity Security Cloud
6 years of experience

SailPoint IdentityIQ Review

Rating: 9 out of 10

Use Cases and Deployment Scope

We use On-Premise IdentityIQ product with all functionalities that are LCM, SOD Controls, BirthRight Roles, different types of Certification, custom Access Requests Workflows, custom role and service account create, update, delete request forms and workflows, custom reports, etc. Before SailPoint implementation, we had some pain points about Access Governance functionalities. So we have solved most of the painpoints.

Pros

  • Well Engineering, robust, highly capable about all departments of Access Governance
  • User Friendly, comprehensible, easy UI
  • Easy development, integration and deployment processes

Cons

  • Easier upgrade processes
  • More Country Spesific Education Opportunities
  • Adding Firewall rules management modules or connectors
  • Adding Create Access Request over voice command

Likelihood to Recommend

We boosted on-boarding durations with Birthright roles capabilities. We gains a lot of improvements about auditing results. We determine a lots of orphan accounts, dormant accounts, unused accounts and cancel most of them.

Pain to learn at first, but gets easier and more helpful as it's used more

Rating: 7 out of 10
Incentivized

Use Cases and Deployment Scope

It's being used to manage software and access requests for users across the organization. Especially database accesses. Users can go in to request access to a tableau data source for example, and the approval process would kick in. The user's request would be submitted for the manager to approve, then once the manager approves, the app owner can provide access or it can be set up to automatic.

We also use it to allow access to applications. Once a user requests access to an app like lucid.app, the admins can go in to submit an access request. There are ways to limit who can submit specific access requests.

Pros

  • Has a good workflow
  • Easy for developers to use

Cons

  • Not a lot of documentation out there
  • Runs into a lot of development and testing issues

Likelihood to Recommend

It's appropriate for tools that already integrate well. Not good to force it on technologies and tools that don't natively work well with Sailpoint.
Vetted Review
SailPoint Identity Security Cloud
1 year of experience

SailPoint Identity Platform Governance Solutions, a must have!

Rating: 9 out of 10
Incentivized

Use Cases and Deployment Scope

We used SailPoint Identity Platform as our Identity Access Management tool for the who organization. It was managed by my team before and we've used it for Joiner-Mover-Leaver process as well as for account recertification. The issue we addressed by using SailPoint is that there were a lot of active accounts but the users have already left he organizations for a couple of years. There were a lot of inactive accounts as well as orphaned accounts and we used it to clean it up and avoid doing it manually.

Pros

  • Joiner-mover-leaver feature.
  • The availability of connectors for different applications and platform.
  • The account recertification feature.

Cons

  • During the time we acquired the solution, there wasn't a cloud version yet.
  • The SSO feature was sun-set so we used another product to use (okta).

Likelihood to Recommend

I believe SailPoint Identity Platform is well suited for large companies and those with a lot of users and applications. It would tremendously improve their security posture in terms of user account management. It may not be ideal for small companies that have less than 100 employees but it there's a way that they can accommodate those, then I think it would be great. In our experience, it works perfectly for those using Active Directory.

SailPoint's IdentityIQ IDM Solution

Rating: 10 out of 10
Incentivized

Use Cases and Deployment Scope

Identity IQ is being used by the entire Western Union enterprise with 20,000+ users. It is our primary access request system with 750+ applications. It manages the workflow for request approval and in many cases provided the automatic provisioning and de-provisioning of accounts upon approval. We also use the system to manage our quarterly access review and re-certification process.

Pros

  • The access request work flow and back end process is exceptional. It effectively manages all of the various pieces of a request and presents the completed request to the provisioning agent as a single record. This is very helpful to the efficiency of the process since the provisioning agent only sees the completed request rather than seeing each component as it is approved. Other systems deliver the various request components to provisioning as they are approved but cannot be provisioned without all the components. Thus creating complexity for the provisioning agent and impacting the SLAs with what looks like a delay with the provisioning process.
  • The system is robust enough to effectively handle the scale that we need. With 750+ applications, 24,304 individual entitlements to select from, and an average of 10,200 request transactions per month. We have never had any performance issues.
  • The system flexible enough to accommodate our complex business needs without needing to customize the base system. We have been able to add significant functionality to the system in order to support the business needs by extending the code rather than altering the base code. This has enabled a simple upgrade of the system without having to re-apply code enhancements.

Cons

  • The user interface is not very intuitive. It is hard for the occasional user to navigate through the request process. There are no instructions on the screen to help the user to know what to do. It is left up to the user to figure out what to click on and how to navigate through the process.

Likelihood to Recommend

It is most appropriate for organizations that categorize the request in a "role" configuration but is quite appropriate for "entitlement" based configurations as well. Its flexible configuration is very effective for accommodating any business needs in an efficient manner.