Blog
Enhancement: Improved Automated Role Assignment
Author
PGookin
SailPoint
This enhancement is brought to you by Idea GOV-I-1523
Description
This release improves Identity Security Cloud’s automated role assignment capabilities. Enhancements include the addition of new standard criteria operators and an improved role admin user experience. These updates make it easier for you to implement birthright provisioning processes and to enforce least privilege for your organization.
Enhancements include:
- A Does Not Contain operator has been added for Identity and Account attribute expressions.
- Starts With and Ends With operators have been added for Account attribute expressions.
- Numeric attributes are now supported for Account attributes.
- The >, >=, <, <= operators have been added for Account attribute expressions.
- A single criteria expression can be used to evaluate a list of values. For example, you can now evaluate if a user’s department is equal to Accounting, Finance, or Accounts Payable in a single statement. Previously, this would have required 3 separate OR statements. Each value list can contain up to 25 values.
Who is affected?
This feature is available for all customers.
Action Required
No action by customers is required.
Important Dates
Enablement of this capability will begin the week of June 30th 2025. All staging environments will be enabled first with production environments following in stages.
To ask questions and learn more please visit the Developer Community.