Add user to a group

Last update:
Aug 21, 2026
Scenario
An administrator needs to add a registered user to an application group in AIC to grant the correct access scope for their work. This is commonly required during onboarding, role/team changes, or urgent access enablement. For Policy-on groups, membership may automatically grant inherited roles, so adding the user to the right group is the approved way to provide access. For Policy-off groups, membership may provide context but roles might still need to be assigned separately.
Prerequisites
  • Administrator has access to the Users page with role-based permissions.
  • Administrator has access to Applications → Access tile to manage group membership (add users).
  • The user is registered and searchable in AIC, and the target Group name and Application ID are identified.
  • The user’s UUID is available (used for searching the user inside the group’s users list in the application context).
  • Administrator has confirmed business justification / approval exists (if your org requires it).
  • Inheritance behavior is understood (Policy-on vs Policy-off).
Steps
  • Identify the correct application and target group (Users view - user-centric)
    1. Sign in to Aikyam Identity Console.
    2. Navigate to Users from the left navigation pane.
    3. Search for the user and open the user profile.
    4. Go to the Groups tab to review existing memberships.  and confirm the user is not already a member of the target group.
    5. Note the Application ID and the Group name to which the user must be added (you will use these in the Applications view).
    6. Copy/confirm the user’s UUID from the user profile (needed to find the user in the group Users list).
  • Add the user to the group (Applications view - application-centric)
    1. Navigate to Applications from the left navigation pane and select the relevant application (using the noted Application ID).
    2. Open the Access tile.
    3. Click View & Update.
    4. Go to Groups, select the target group name, then open the Users section.
    5. Click Assign users in the Users section.
    6. Search for the user using the UUID, select the user, and click Add / Save / Confirm.
    7. Verify the user now appears in the group’s Users list.
  • Validate effective access after addition (Validation- users view)
    1. Return to the user profile in Users and open the Roles tab.
    2. Select the relevant application from the Application dropdown and confirm roles inherited from the added group are now effective.
    3. Open the Groups tab and confirm the new group membership is visible in the user profile.
Note:
  • For Policy-on applications, users inherit roles through group membership; adding the user to the group grants inherited access automatically.
  • For legacy / Policy-off applications, group membership may not grant roles automatically; assign roles separately if required.
  • If the user already has conflicting memberships (e.g., mutually exclusive groups), resolve conflicts before adding.
  • Use Activities tab to trace access changes for compliance and investigations.

On this page

Powered by Aikyam @2025 All rights reserved