What is RITM
Overview
RITM is a delegated identity management system that allows organisations to securely connect identities through roles and their associated entitlements, while leveraging self service capabilities.
The tiered delegation model implemented into RITM brings a much more scalable approach to the administration of access rights, allowing application or process owners to create & manage or delegate role administration.
RITM is built upon our existing capabilities for delegated user management, customer care and self service, but with additional functionalities and benefits, such as:
- Dashboard
- Reports
- Roles, rules and flexible structures
- A better customisation and configuration experience
- Time-based roles
- Time-based account creation
- Invitation-based account creation
- Mass updates
- Approval workflow for application access (basic)
- Translations
Even though from an architectural point of view, RITM has been designed as a deeply integrated module into the OneWelcome IAM platform, it can also integrate with other identity stores.
RITM provides powerful yet flexible access management capabilities that allow companies to manage users and access to applications through delegation, entitlements and customisation.
Delegated identity management
By using a decentralised access management system, our customers leverage the platform's multi-level capability of managing identities. This means that at each level, users can become delegated admins, allowing them to cascade roles to identities in scope.
Roles, rules, flexible structures
RITM uses a combination of roles & role types, system rules and flexible structures to govern how identities can access or manage information.
Time-based roles
Allows the creation and assignation of a certain role within an application to a user for a limited period of time. After the expiration date passes, the user will no longer have that assigned role within that application, but his roles for other applications and his account will continue to exist.
Time-based accounts
Allows the creation of a user account for only a limited period of time. After the end date passes, the user will no longer have an active account, nor be able to authenticate.
Invitation-based account creation
New users can be added to an organisation and assigned to groups, collections and roles straight from the Customer Care menu, through an invitation email which contains a password set up link.
Automation rules
With the help of automation rules, you can define a job to run at a predefined periodicity. For example, you can set up a rule to deactivate users' accounts if they failed to login 3 times for the past 2 days.
Approval workflow for RITM roles
Users are able to request access to roles from the self service page (My Profile). The requests can then be approved or denied within the Users section, or straight from the managed identities' profiles.
Mass updates
When managing a large user base, it is important to be able to perform updates in a time-efficient way. RITM allows companies to perform mass updates such as role, group or attribute value changes for a large selection of users at once.
User import
In addition to adding users individually, a large amount of users can be easily imported into the platform using a .csv file. To ease things up, we provide a template to help you assign the users to groups and appropriate roles easier.
Customisation and configuration
RITM features powerful customisation, configuration and branding capabilities, ensuring our clients always get a custom-tailored platform for their organisation and customer needs.
Self service
The entire Self service page is customisable, allowing you to perform UI customisations for the branded apps that you define, making your application's self service page match your brand.
You can perform branding customisations (such as logo, favicon & colours), application cards customisations (customise how applications are displayed, or if they are displayed) and top and left menu structure customisations (choose your desired menu items and add additional ones).
Users
Being able to correctly identify users by their characteristics is the first step towards delivering an effective customer care experience. Our platform allows you to customise attributes, attribute categories and set up automation rules to adapt it to your workflows and needs.
Data visualisation
Our data visualisation customisation capabilities allow you to establish what events are displayed on dashboard charts and tables, and how they are displayed. Make the most out of the data that is relevant to you through custom event names and categories.
Translation
Language customisation is another platform capability that helps our customers meet their global business needs. RITM supports both application and platform translation. It comes with English as the default language, but you can add any other language you choose and then translate the different application or platform texts.