Risk Management Use Case: Access Rights Re-Certification (requires IGA solution)
Risk Management Use Case: Access Rights Re-Certification (requires IGA solution)
Use Case Description
This use case describes how access rights can be re-certified in the IGA solution. Re-certification ensures that users' access rights are reviewed based on IGA Admin's requests or recurring schedules, maintaining compliance and security.
Example Scenario
An IGA Admin identifies that all users with access to high-risk financial systems need to undergo a re-certification process to ensure their access rights are still valid. The admin initiates the re-certification process, and all relevant managers receive notifications to review and approve or decline the access rights. The process helps ensure that only authorized personnel have access to sensitive systems, reducing the risk of unauthorized access and potential security breaches.
Use Case Diagram

Workflow
Please find more information from the use case description: IGA Use Case - Re-certification.
Results
- Access rights re-certification has been successfully completed.
- IGA Admin or IGA Owner is informed about re-certification results.
- Audit details (access right records) are saved.
Benefits
- Ensures continuous compliance with access management policies.
- Reduces the risk of unauthorized access to sensitive systems.
- Provides clear visibility and accountability for access rights management.
Table of Contents