Skip to main content

SCIM (System for Cross-domain Identity Management)

SCIM (System for Cross-domain Identity Management) is an open standard designed to manage user identities across different applications and platforms.

It provides a universal framework for automating the exchange of user identity information between identity domains, such as IT systems, cloud services, and enterprise applications.

SCIM simplifies the process of managing user identities by allowing organizations to automate the provisioning, deprovisioning, and updating of user accounts across multiple systems.

Benefits of SCIM for User Managementโ€‹

  1. Efficiency and Automation: SCIM enables organizations to automate the management of user identities, reducing manual errors and increasing efficiency. In Orgvue this automation extends to tasks like creating, updating, and deleting user accounts, as well as managing user attributes and roles.

  2. Consistency Across Systems: By providing a standardized way to manage user identities, SCIM ensures consistency across different systems and platforms. This consistency is crucial for maintaining accurate and up-to-date user information, which is essential for security and compliance purposes.

  3. Simplified User Lifecycle Management: SCIM facilitates the management of the entire user lifecycle, from onboarding to offboarding. This includes provisioning new users, updating existing user profiles, and deprovisioning users when they leave the organization. This lifecycle management is critical for maintaining a secure and compliant environment.

warning

The use of SCIM does not remove the need for auditing the users list within Orgvue to ensure compliance with data protection laws and internal information security policies

SCIM in Orgvueโ€‹

Orgvue supports a single and multi tenancy SCIM integration for the User and Role fields.

info

Role Based Access Control (RBAC) is supported via SCIM through the Role field. Attribute Based Access Control (ABAC) is not currently supported via SCIM

Orgvue can integrate with your SCIM user management system through the use of a third party service provider - WorkOS

In order for the SCIM integration to work, your user management system will need to integrate to WorkOs.

See the list of supported user management systems on this webpage WorkOS.

Any change within your Identity and Access Management system will be synced via the integration with WorkOS which will inturn sync with your Orgvue Users dataset as shown in the flowchart below

alt text