Try our new research platform with insights from 80,000+ expert users
Pratik Kumar - PeerSpot reviewer
Identity Management Consultant at Novozymes
Consultant
Good security and hassle-free user experience
Pros and Cons
  • "IdentityIQ's best features are the hassle-free user experience and security."
  • "There are various functions that don't work in IdentityIQ, including the access request reminder, which doesn't go to the approvals in the proper format, so it's hard for users to read."

What is our primary use case?

IdentityIQ is connected to all our target systems to manage access to various applications.

What is most valuable?

IdentityIQ's best features are the hassle-free user experience and security.

What needs improvement?

There are various functions that don't work in IdentityIQ, including the access request reminder, which doesn't go to the approvals in the proper format, so it's hard for users to read. In the next release, IdentityIQ should enable emails and reports through the UI instead of the code.

For how long have I used the solution?

I've been using IdentityIQ for two years.

Buyer's Guide
SailPoint Identity Security Cloud
November 2024
Learn what your peers think about SailPoint Identity Security Cloud. Get advice and tips from experienced pros sharing their opinions. Updated: November 2024.
824,067 professionals have used our research since 2012.

What do I think about the stability of the solution?

IdentityIQ is very stable.

What do I think about the scalability of the solution?

IdentityIQ is scalable manually and automatedly.

How was the initial setup?

The initial setup was easy, and the implementation was completed within four months.

What other advice do I have?

I would rate IdentityIQ nine out of ten because the UI is really easy for end users to understand and use.

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
reviewer1749858 - PeerSpot reviewer
Director - Cyber Security at a media company with 1,001-5,000 employees
Real User
I like the granular attachment management and certification customization features
Pros and Cons
  • "I like IdentityIQ's granular attachment management and certification customization features."
  • "The price of IdentityIQ could be lower. There are additional costs when you buy the licenses, and they force the customers to pay for them."

What is our primary use case?

We used it to manage our complete lifecycle completely. We migrated from CA Integrated Manager to SailPoint in my previous firm. Typical use cases include onboarding contractors, lifecycle management, and employee lifecycle management for user certification. Other use cases include password reset and any application group-level provisioning.

What is most valuable?

I like IdentityIQ's granular attachment management and certification customization features. 

For how long have I used the solution?

I've used IdentityIQ for the last year and a half.

What do I think about the stability of the solution?

IdentityIQ is pretty stable compared to our previous solution, and we're satisfied with the performance.

What do I think about the scalability of the solution?

We haven't had any issues with scalability. What we built earlier matched our requirements, so Identity IQ was scalable as per our need when we added more users or applications. We have about 100,000 users. 

How are customer service and support?

We've used their engagement and peer services team since the beginning. 

How was the initial setup?

It was a standard installation. It wasn't too complicated or easy. It is a typical out-of-the-box installation. We could do it all ourselves with our in-house engineering capability. We need at least one engineer for deployment and maintenance and 10 people for support. It's a multi-year project for us split into three phases. I was there for phase one and part of the second phase. The third phase is ongoing.

What's my experience with pricing, setup cost, and licensing?

The price of IdentityIQ could be lower. There are additional costs when you buy the licenses, and they force the customers to pay for them. Overall, enterprise pricing should be more transparent. It's a yearly license. 

What other advice do I have?

I rate IdentityIQ 7.5 out of 10. 

Which deployment model are you using for this solution?

On-premises
Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
SailPoint Identity Security Cloud
November 2024
Learn what your peers think about SailPoint Identity Security Cloud. Get advice and tips from experienced pros sharing their opinions. Updated: November 2024.
824,067 professionals have used our research since 2012.
Technical Advisor, Java EE Developer at a computer software company with 1-10 employees
Real User
What used to be very complex can be simplified if implemented correctly.

What is our primary use case?

Enterprise application provisioning and certifications. Provisioning automatically grants access to users based on pre-qualified variables like job function, region, etc; Certification feature of IIQ allows teams to go back and validate that access is still valid, limiting access to those who need

How has it helped my organization?

Improved visibility into who has access to what improved ability to validate and certify enterprise access to sensitive applications, useful for measurement and forecasting.

What is most valuable?

Automated provisioning platform, certification because it helps with automatically provisioning users based on discreet roles, access profiles, across many different applications.

What used to be very complex can be simplified if implemented correctly.

What needs improvement?

Some of the configuration options could be more automated, but this is a complex problem and I do not expect a simple solution.

For how long have I used the solution?

One to three years.

What do I think about the stability of the solution?

No.

What do I think about the scalability of the solution?

No.

How are customer service and technical support?

Excellent, they have a well supported active community of experts and support personnel.

Which solution did I use previously and why did I switch?

No.

How was the initial setup?

It can be a bit complex and requires training and a strong background in IT systems and some software development, but other than that it can be learned over time.

What's my experience with pricing, setup cost, and licensing?

N/A.

Which other solutions did I evaluate?

I implement enterprise software solutions for my clients and SailPoint happens to be one of them.

What other advice do I have?

Work with experience solutions experts who have worked with this tool before. Complement them with experience, and the tools needed to succeed including strong testing and development, project management and team support.

Disclosure: My company has a business relationship with this vendor other than being a customer: We are implementers of SailPoint software at this time. We also implement our own supply chain management software as well as expertise with Oracle database technologies.
PeerSpot user
Senior Architect at a consultancy with 1-10 employees
Real User
A simple and easy-to-implement tool with good technical support
Pros and Cons
  • "It is simple and easy to implement."
  • "It is not readily available and cannot be downloaded from the net."

What is our primary use case?

It is used on provisioning accounts, all the crude operations and enterprise resources. So an enterprise may have a different resource like SuccessFactor, Oracle or Microsoft. SailPoint IdentityIQ does the provisioning operation for all the users, which onboards it into the company enterprise. It also does the de-provisioning operations for all the users who leave the organization.

In between, it manages and maintains the accounts. Depending on the requirements, SailPoint IIQ provides a lot of functionality that can suit any enterprise's requirements.

What is most valuable?

It is simple and easy to implement.

What needs improvement?

Several resources and applications are entering the cybersecurity market, so if SailPoint IdentityIQ can provide a connector or a way to integrate all those resources, it would be good. For example, there is a connector in CyberArk, but it is not a direct connector. They go via Skim Server, and latency is experienced.

For how long have I used the solution?

We have been using this solution for more than ten years. We are using version 8.3, and it is deployed on-premises.

What do I think about the stability of the solution?

It is a stable product. 

What do I think about the scalability of the solution?

It is a scalable solution. We have more than 50 people using this solution.

How are customer service and support?

The technical support is good.

How was the initial setup?

The initial setup is straightforward. The deployment time depends on the customer's requirements. If we are using our maximum resources, it takes about ten days.

What's my experience with pricing, setup cost, and licensing?

It is a licensed product, but I am unsure of the exact cost.

What other advice do I have?

I rate this solution an eight out of ten because it is simple and easy to implement and develop. Regarding advice, it is not readily available and cannot be downloaded from the net. If they get a corporate account, they can create the account via corporate email ID only. Therefore, I would recommend focusing on implementation. In addition, choosing the latest release minus one is good because it is always a stable product because clients have already tested and implemented it in their environment. So instead of taking additional risks, it can be tested by other clients first.

Disclosure: My company has a business relationship with this vendor other than being a customer: Partner
PeerSpot user
Implementation Engineer at a tech services company with 5,001-10,000 employees
Consultant
Useful reports, customizable workflows, and feature rich
Pros and Cons
  • "The most valuable features of SailPoint IdentityIQ are the reporting because it is better than other solutions. The workflows can be customized to our requirements and the overall features are good."
  • "If you compare Saviynt and Okta Workforce Identity versus SailPoint IdentityIQ, SailPoint IdentityIQ needs to improve its UI."

What is our primary use case?

SailPoint IdentityIQ is used for reporting and identity, account, and access management.

What is most valuable?

The most valuable features of SailPoint IdentityIQ are the reporting because it is better than other solutions. The workflows can be customized to our requirements and the overall features are good.

What needs improvement?

If you compare Saviynt and Okta Workforce Identity versus SailPoint IdentityIQ, SailPoint IdentityIQ needs to improve its UI.

For how long have I used the solution?

I have been using SailPoint IdentityIQ for approximately four years.

What do I think about the scalability of the solution?

When using SailPoint IdentityIQ you need to tell them the capacity you want, and they will provide the solution with the appropriate license. For example, you have to tell them initially that you will have 50,000 users using the solution then they will tell you how much service you will need to deploy.

How are customer service and support?

The technical support is not very good but it is good. They can improve.

Which solution did I use previously and why did I switch?

I have previously used Saviynt and Okta Workforce Identity.

How was the initial setup?

The initial setup of SailPoint IdentityIQ is easy. The time of deployment can take approximately two days.

What about the implementation team?

We did the implementation of SailPoint IdentityIQ in-house.

What other advice do I have?

My advice to others is if you are new to the identity access management world, and you are starting with SailPoint IdentityIQ, you have the best tool in your hand to start with. You can receive complete exposure to all the types of operations or workflows.

I rate SailPoint IdentityIQ a nine out of ten.

Which deployment model are you using for this solution?

Public Cloud

If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

Microsoft Azure
Disclosure: My company has a business relationship with this vendor other than being a customer: Reseller
PeerSpot user
it_user715134 - PeerSpot reviewer
Information Security Architect and Senior Analyst
Real User
Customized Data Imports and Role Modeling
Pros and Cons
  • "The level of customization for data imports and role modeling, because it helps to integrate faster, support easier and let it reuse the organization role structure."
  • "Some setups should be done in the interface and in the code, and could be made simpler."

What is most valuable?

The level of customization for data imports and role modeling, because it helps to integrate faster, support easier and let it reuse the organization role structure.

How has it helped my organization?

It allowed us to execute account review campaigns from very different systems.

What needs improvement?

Some setups should be done in the interface and in the code, and could be made simpler.

For how long have I used the solution?

So far, from 2008 to 2017: 10 years.

What do I think about the stability of the solution?

No, the product is stable.

What do I think about the scalability of the solution?

As long as the database is very close to the application server, the system can manage many identities and connectors to various directory.

How are customer service and technical support?

Their technical support was very knowledgeable of their product, and we get answers within a day or so most of the time.

Which solution did I use previously and why did I switch?

Most of the clients kept the solution after using SailPoint IIQ. The only one that considered not using it anymore wanted to keep his historical supplier and to have the same solution for Identity Governance and Administration and for Authentication (which is not something SailPoint provides).

How was the initial setup?

Initial installation is straightforward and takes less than one day, once you have a VM, a database, and a directory available. What takes the most time is the connectivity to each authoritative source and target directory.

What's my experience with pricing, setup cost, and licensing?

SailPoint IIQ is the best of best. That is reflected in the pricing of the solution. The pricing is based on the number of identities.

Which other solutions did I evaluate?

Many clients considered the other main IGA solutions, like Oracle Identity Manager, CA Identity Manager, Microsoft Identity Manager, or NetIQ Identity Manager.

What other advice do I have?

Make sure the distance between the database and application server is very short. There is natural integration with other solutions that should be considered in your selection, like with CyberArk or ServiceNow.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
it_user871230 - PeerSpot reviewer
it_user871230Senior Technical Recruiter at a tech vendor with 11-50 employees
Real User

Hello There,

Awesome article. Thanks for making that available. I've been using your help to build my own POC and will publish the steps in another blog soon.
Did you able to resolve this issue? I am also facing same issue.
I have followed the below steps -
1. Created 3 rules for AfterCreate/Modify/Delete
2. Mapped them in App config for NativeRules attribute
3. executed IQService-Handshake Task - This has created a .dat file in IQService directory.
4. IQ Service and AD both are in same system - windows 2008
5. IIQ Version 6.3
Now, I am trying to request access for AD, Sailpoint tutorial account getting created on AD, but the native rules are not being triggered.

Regards,
Preethi.

See all 2 comments
SushantAggarwal - PeerSpot reviewer
Architect(IAM) at a tech services company with 201-500 employees
Real User
Great user and account management and reduces our user lifecycle time
Pros and Cons
  • "SailPoint IdentityIQ has more enriched out-of-box connectors than the others."
  • "There's a lot of customization required to improve the user experience."

What is our primary use case?

We have different use cases depending on the project. For example, we use it for user management, account management, user lifecycle, certifications, reporting, SODs, and governance. We use everything that SailPoint IdentityIQ provides.

How has it helped my organization?

Our user lifecycle takes less time with SailPoint IdentityIQ. Previously, it would take around one day to get all the users access, and now it is an automatic process with a good authentication authorization mechanism.

What is most valuable?

When deployed on-premises, it gives us a lot of areas to customize and provides many out-of-box features. For example, it offers different out-of-box connectors where we can connect with multiple forest configurations. There are also out-of-box connectors for CyberArk, Okta, and other applications, but SailPoint IdentityIQ has more enriched out-of-box connectors than the others.

What needs improvement?

There's a lot of customization required to improve the user experience. It would also be helpful if there were some out-of-box options for filtering.

For how long have I used the solution?

We have been using this solution for seven years. We are currently using version 8.2 or 8.3. We have also used versions 6.0, 6.1, 6.2 and 6. 3. It is deployed on-premises and on cloud.

What do I think about the stability of the solution?

The stability and performance are very good.

What do I think about the scalability of the solution?

Scalability is good, but if the number of users significantly increases, it requires different web servers and becomes difficult to manage. In addition, SailPoint IdentityIQ doesn't provide any SIM tool, so we have to implement it if required. Without it, we have to work locally, going into the logs for eServers by ourselves, and there isn't a central log factory where we can see all the logs for the SailPoint IdentityIQ.

The number of users depends on the project. There are projects with millions of users and others with 100,000 or 300,000 users. Also, the number of people required for deployment depends on the number of servers and users. However, if I were to estimate, it requires an average of three people, but if the server and the UI server increase, it becomes challenging to look at the logs.

Compared to SailPoint IdentityIQ, Saviynt provides a way to select servers. From the UI, you can choose different servers and see the logs.

SailPoint IdentityIQ is being used at full capacity, and I am currently working as an architect for both Saviynt and SailPoint IdentityIQ. If I were to compare solutions, there is no comparison with SailPoint in the market right now, and SailPoint is way ahead. Solutions like Saviynt and Omada have features such as logs, clarity of the risk and SODs that are not as good in SailPoint IdentityIQ.

How are customer service and support?

We have not used technical support directly, but our clients use them, and we have not heard of any problems.

Which solution did I use previously and why did I switch?

We previously worked with IBM IM products like ISIM and Oracle IM, and we switched to SailPoint IdentityIQ because it is an enhancing product. SailPoint IdentityIQ is the best in feature enhancement.

How was the initial setup?

It was straightforward to implement, which is an advantage with products deployed on-premises. However, there is minimal documentation around the firewall on SailPoint community sites. For example, sometimes, we want to configure SailPoint IdentityIQ for our developers in a development version, and we don't want it to connect inside a company's firewall. But that is not addressed in the architectural documents. The documentation covers areas like check configuration or DR configuration but does not mention options for different networking structures between a web server and a product and how it works. Deployment is dependent on the project. Sometimes we complete it ourselves, and other times it's done by a third party.

What was our ROI?

There is an ROI. I have worked in this domain for 12 years on different continents and have not heard of people replacing SailPoint IdentityIQ on-premise with other solutions.

What's my experience with pricing, setup cost, and licensing?

I rate the price a six out of ten, with one being least expensive and ten being most expensive.

What other advice do I have?

I rate this solution an eight out of ten. If deployment is done on-premises, SailPoint IdentityIQ is best, but Saviynt or Omada is better if it is cloud.

Regarding advice, SailPoint IdentityIQ is the most customizable product. However, it is good to minimize customization and use more out-of-box functionality because it becomes a hassle in the long term to manage customization in the IM product. In addition, it will be good if there is better log management in future releases.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
PeerSpot user
Digital Technology Leader, Risk Operations at Baker Hughes, a GE company
Real User
It is a stable tool, which we run in our complex environment
Pros and Cons
  • "It is a stable tool, which we run in our complex environment."
  • "The product has poor reporting and analytic capabilities. Reports are not easy to use and its analytic capabilities are limited."

What is our primary use case?

We use it for Identity Lifecycle Management: 

  • Access requests
  • Provisioning
  • Deprovisioning
  • JCT process and reconciliation (aggregation).

How has it helped my organization?

It provides one solution for the entire process in a complex environment with different types of applications and connectors.

What is most valuable?

All Identity Access Management processes in the tool are valuable. 

What needs improvement?

The product has poor reporting and analytic capabilities. Reports are not easy to use and its analytic capabilities are limited.

For how long have I used the solution?

One to three years.

What do I think about the stability of the solution?

It is a stable tool, which we run in our complex environment.

Disclosure: I am a real user, and this review is based on my own experience and opinions.
PeerSpot user
Buyer's Guide
Download our free SailPoint Identity Security Cloud Report and get advice and tips from experienced pros sharing their opinions.
Updated: November 2024
Buyer's Guide
Download our free SailPoint Identity Security Cloud Report and get advice and tips from experienced pros sharing their opinions.