System for Cross Identity Management (SCIM)
User provisioning and access control to the BusinessOptix platform can be managed using SCIM
BusinessOptix SCIM Support
Overview
BusinessOptix supports SCIM (System for Cross-domain Identity Management), the industry-standard protocol for automating user provisioning and deprovisioning across enterprise applications. This integration enables seamless synchronization between your organization's identity provider (IdP) and BusinessOptix, ensuring user access is always current and accurately reflects your organizational structure.
Key Benefits
Automated User Lifecycle Management: SCIM eliminates manual user administration by automatically provisioning new users, updating user attributes, and deprovisioning users when they leave your organization or change roles. This reduces administrative overhead and ensures timely access control.
Enhanced Security & Compliance: Automated deprovisioning ensures that user access is immediately revoked when employees leave or change roles, reducing security risks from orphaned accounts. This automated approach supports compliance requirements by maintaining accurate audit trails of user access changes.
Reduced IT Burden: By automating user management, IT teams can focus on strategic initiatives rather than routine user administration tasks. Changes made in your identity provider automatically propagate to BusinessOptix without manual intervention.
Improved User Experience: New users gain access to BusinessOptix immediately upon onboarding, and updates to user information are synchronized automatically, ensuring a smooth experience without delays from manual provisioning processes.
Implementation Requirements
Single Sign-On Prerequisite: SCIM can only be enabled on libraries that are configured with single sign-on (SSO). This ensures consistent authentication and identity management across your organization.
Access Control Integration: Each access control group within BusinessOptix, including license types, can have the applicable Active Directory unique identifier associated with it. This enables precise mapping between your organizational structure in Active Directory and access permissions within BusinessOptix, ensuring users automatically receive the appropriate access levels based on their group memberships.