How to Leverage New Capabilities in the CA Identity Suite

Post on 11-Feb-2017

663 views 0 download

Transcript of How to Leverage New Capabilities in the CA Identity Suite

HowtoLeverageNewCapabilitiesintheCAIdentitySuite

JoeBurgett

Security

CATechnologiesAdvisorSCX04E

2 ©2015CA.ALLRIGHTSRESERVED.

©2015CA.Allrightsreserved.Alltrademarksreferencedhereinbelongtotheirrespectivecompanies.

Thecontentprovidedinthis CAWorld2015presentationisintendedforinformationalpurposesonlyanddoesnotformanytypeofwarranty. The informationprovidedbyaCApartnerand/orCAcustomerhasnotbeenreviewedforaccuracybyCA.

ForInformationalPurposesOnlyTermsofthisPresentation

3 ©2015CA.ALLRIGHTSRESERVED.

Abstract

ThissessionwillhighlightkeynewfeaturesoftheCAIdentitySuite,includingintegrationswithCASSOandotherCASecurityproducts. ComelearnhowtheIdentitySuitecanhelpyousimplifyyouridentitymanagementchallenge.

JoeBurgett

CATechnologiesAdvisor

4 ©2015CA.ALLRIGHTSRESERVED.

Agenda

IDENTITYMANAGEMENTINTODAYSENTERPRISE

DEMO

OVERVIEWOFCAIDENTITYSUITE(ARCHITECTURE&CONCEPTS)

CONFIGURATIONOFTHESUITECAPABILITIES

REVIEW/Q&A

1

2

3

4

5

5 ©2015CA.ALLRIGHTSRESERVED.

IdentityManagementshiftsfrombeingIT-centric…toBusiness-centric…

BusinessUser&Customers

IT-awareusers

6 ©2015CA.ALLRIGHTSRESERVED.

DemandsoftheBusinessUser

Supportmydevice

Businessfriendly

Decisionsupport tools

Unifiedinterface

Productivity

Customizedexperience

7 ©2015CA.ALLRIGHTSRESERVED.

But,theITuserhasneedstoo!

Policyenforcement

LowTCO

Applicationconnectivity

Fastprovisioning

FastROI

Compliancereporting &auditing

8 ©2015CA.ALLRIGHTSRESERVED.

CAChangestheGame

9 ©2015CA.ALLRIGHTSRESERVED.

Convenient,Intuitive,Business-orientedUserExperience§ AOne-StopShopforbusiness

useraccesstoallidentityservices– Userexperiencethatisspecifically

designedforbusiness.Usestermsthatbusinessusersunderstand.§ Business-orientedproactiveanalytical&advisorytools

§ Personalizeddashboards§ Business-oriented resourcenames

10 ©2015CA.ALLRIGHTSRESERVED.

Demo NOTEToBeRemoved:

AccessRequest(Role/Group/Attr.)

ADEndpointGroupRequest

AppLauncher(W&W/OCASSO)

EnhancedRequestTracking

11 ©2015CA.ALLRIGHTSRESERVED.

CAIdentityManagement&GovernanceCapabilities

Business-OrientedUserExperience

IDENTITYMANAGEMENT&GOVERNANCE

LIFECYCLE

CAPABILITIES§ Automatedprovisioning§ Userself-service§ Supports on-premise&cloud apps§ Deploymenttools

BUSINESSVALUE§ Increasedefficiencies§ Reduced HelpDeskcosts§ Flexibility foryourcloud adoption§ Customization without coding

CAPABILITIES§ Rolemining&analytics§ Privilegeclean-up§ Automatedaccesscertifications§ Accesspolicyenforcement

BUSINESSVALUE§ Simplifyusermanagement§ Highlights improper entitlements§ Simplifiedcompliance§ Preventspolicyviolations

Management Governance

12 ©2015CA.ALLRIGHTSRESERVED.

LogicalArchitecture

RequestAccess

UsersOnboarding

SelfRequest

SelfRegistration

Certification

CAIdentityGovernance CASingleSign-On

AggregatedTasks

AggregatedEntitlements

AggregatedUsers

CAIdentityManager

Passwordreset

SingleSignOn

Action/Service Fulfillment

Emailnotification

Helpdesktickets

SIGMAimplementation

AutoProvisioning

Reconciliation

Target

Systems

LDAP

DB

Apps

Privilegedaccounts

Mobileapps

OnboardingUsers

AccessRequest

Certification

Ext.Usermanagement

User360°view

SSOLaunch Pad

ConnectorsLayerdatamappingcorrelationandaggregation

Logical Layer

PresentationLayerEndusers

BusinessManagers

DelegatedAdmin

Contract-ors

BusinessPartners

User Type

ApplicationOwner

RiskAnalyzerandSimulator

Approvals/Implementations

RequestManagementEntitlementCatalogMng

Preventative Advicetools

ManagerialDashboards

PersonalizationandBrandingAdvancedFormGenerator

CAIdentitySuite

13 ©2015CA.ALLRIGHTSRESERVED.

FoundationofaRequest

CAIdentity Suite(Portal)

Tasks

Forms

TargetPermissions

AccessCatalog

Apps/Groups Entitlements

Cart

AdministratorView

BusinessUser

ViewCAIdentityManager

Tasks

Events

Forms/Profile Screens

Roles/Attributes /Groups

PX Emails

Identity Policies

1:1TEWS

14 ©2015CA.ALLRIGHTSRESERVED.

OrderofaRequest

CAIdentity Suite

AccessCatalog

Apps/Groups Entitlements

Cart

CAIdentityManager

Task

Events

Roles/Attributes/Groups

15 ©2015CA.ALLRIGHTSRESERVED.

EntitlementCatalog

16 ©2015CA.ALLRIGHTSRESERVED.

AccessRequest

17 ©2015CA.ALLRIGHTSRESERVED.

DirectActiveDirectoryGroupRequest

18 ©2015CA.ALLRIGHTSRESERVED.

AppLaunch(Placeholder…WorkingthroughanIssue)

19 ©2015CA.ALLRIGHTSRESERVED.

AdvancedSearch

20 ©2015CA.ALLRIGHTSRESERVED.

ConfigurationDemo NOTEToBeRemoved:

AccessRequest(Role/Group/Attr.)

ADEndpointGroupRequest

AppLauncher(W&W/OCASSO)

EnhancedRequestTracking

21 ©2015CA.ALLRIGHTSRESERVED.

ConfigurationDemo

§ AccessRequest(Role/Attribute)

§ ADEndpointGroupRequest

§ AppLauncher(W&W/OCASSO)

§ EnhancedRequestTracking

22 ©2015CA.ALLRIGHTSRESERVED.

Review

IDENTITYMANAGEMENTINTODAYSENTERPRISE

DEMO

OVERVIEWOFCAIDENTITYSUITE(ARCHITECTURE&CONCEPTS)

CONFIGURATIONOFTHESUITECAPABILITIES

REVIEW/Q&A

1

2

3

4

5

23 ©2015CA.ALLRIGHTSRESERVED.

RecommendedSessions

SESSION# TITLE DATE/TIME

SCX07S IdentitySuiteRoadmap&Vision 11/19/2015 at1:00PM

SCT29SCaseStudy:DigitalTransformationthroughSuccessful,Large-scaleIdentityManagementDeployment 11/19/2015 at11:30AM

SCT12S TeachingIdentitytoSing:ACocaColaCaseStudy 11/19/2015 at3:00PM

24 ©2015CA.ALLRIGHTSRESERVED.

Q&A