Access Certification
Access Certification is the formal process of asking designated reviewers to confirm whether access remains legitimate.
Explore the concepts used across Identity and Access Management, Identity Governance, Access Management, privileged access, authorization and identity security.
Definitions are organized to support search and navigation between related concepts.
Access Certification is the formal process of asking designated reviewers to confirm whether access remains legitimate.
Access control is the broader security discipline that enforces authorization rules on access to resources, actions, and data.
Access Management is the IAM domain responsible for controlling user authentication, session establishment, and access to applications and resources.
Access Remediation is the process of correcting inappropriate, excessive, conflicting, or unjustified access.
An Access Request is a formal request for new, changed, or extended access to a system, entitlement, or role.
Access Request Management is the controlled process through which users request new, changed, or exceptional access.
An Access Review is a review activity used to evaluate whether existing access is still appropriate for a user, account, role, or entitlement.
Access Simulation is the evaluation of the effect of a proposed access change before it is actually granted.
An Access Token is a token that allows an application to call a protected resource within a limited scope and duration.
Account Correlation is the process of linking discovered accounts in target systems to the correct digital identity in the IAM system.
Account Provisioning is the creation and maintenance of system-specific accounts linked to an identity.
Adaptive authentication dynamically adjusts authentication requirements based on contextual and behavioral risk signals.
An Administrative Workstation is a hardened workstation dedicated to privileged operations and isolated from standard user activity.
An Agent Identity is a digital identity associated with an autonomous or semi-autonomous software agent.
An AI Identity is a governed digital identity associated with an AI model, agent, or bot acting within an enterprise environment.
The Alternative Scenario is the second-best onboarding path combining modern authentication with managed account lifecycle in the target application.
An Anonymous Customer is a customer known only through limited interaction signals and not yet tied to a declared identity.
A control layer that secures and governs API traffic, especially for machine-to-machine access.
An API key is a static application credential used to identify or authorize calls to an API.
An API-Based Integration Path is a custom onboarding route that manages the application through its exposed APIs.
Application Criticality Ranking is the prioritization of applications according to their security or business importance for onboarding.
An Application Documentation Gap is the lack of usable information about profiles, rights, owners, and incompatibilities needed for proper onboarding.
Application Inventory for Migration is the structured catalog of applications used to prepare onboarding and IAM transition work.
Application Onboarding is the structured process of connecting a new application to the IAM control model for authentication, identity lifecycle, and access governance.