170 likes | 263 Vues
March 4 th , 2014. Access Control and Employee Off Boarding. Melody Wayman. About Us. Oil and gas exploration and production company Split from Williams Companies in January 2012 Headquartered in Tulsa with operations in Colorado, New Mexico, North Dakota, Pennsylvania and Wyoming
E N D
March 4th, 2014 Access Control and Employee Off Boarding Melody Wayman
About Us • Oil and gas exploration and production company • Split from Williams Companies in January 2012 • Headquartered in Tulsa with operations in Colorado, New Mexico, North Dakota, Pennsylvania and Wyoming • Approximately 1600 users • Copied Williams ServiceNow instance prior to spinoff OK SNUG | March 4, 2014
Call to Action • Recreate CAMS – Williams Access Management System • Record enabling and disabling of user application access • Handle unique approvals and fulfillment tasks • Import existing user access • Automate employee off boarding process OK SNUG | March 4, 2014
How did we do it? • Service Catalog = Access management system • Each item has a corresponding ‘disable’ item • Imported over 24,000 user access records to date • Termination request – automates off boarding process OK SNUG | March 4, 2014
Application Access OK SNUG | March 4, 2014
Access Profile OK SNUG | March 4, 2014
Disabling Application Access OK SNUG | March 4, 2014
UI Action OK SNUG | March 4, 2014
How does this work? • RITM0077399 granted Aaron Hardison SW Viewer rights in SolarWinds • RITM0088402 was submitted to disable this access • Aaron’s profile will show this access until the disable request is complete OK SNUG | March 4, 2014
How does this work? • RITM0088402 was closed complete • Both requests are set to Access = Disabled • Aaron’s profile no longer shows SolarWinds access OK SNUG | March 4, 2014
Employee Off Boarding • Streamline process and eliminate duplicate work • Document removal of access • Simplify HR interfaces OK SNUG | March 4, 2014
Termination Workflow OK SNUG | March 4, 2014
Termination Subflow OK SNUG | March 4, 2014
Subflow Script OK SNUG | March 4, 2014
How does this work? • Queries user access • Creates individual requests to document removal of access • Saves time and eliminates human error • Simplifies audit trail OK SNUG | March 4, 2014
Next Steps • Employee On Boarding • Automating software entitlements • Orchestration • Enabling/disabling network access • Creating email accounts • Application access fulfillment OK SNUG | March 4, 2014
Questions? OK SNUG | March 4, 2014