Different roles have varying levels of interaction with applications, necessitating fine-grained access control. For instance, Just-In-Time (JIT) provisioning allows visiting specialists to gain limited access to resources in real-time.
For applications with complex roles and permissions, we recommend governance at the group or organizational level. Group auto-inheritance policy simplifies administration of users and ensures better control over access and permissions.
The image below shows an access explosion due to poor governance (left) and optimized user management through group-based access control using Aikyam Identity Console (right).