Identity and Resource Management

Five capabilities at the heart of your IT governance

Our platform covers the entire identity and resource lifecycle of your organisation, from onboarding to offboarding, with complete traceability at every step.

Manage Users

Create, update or deactivate user and guest accounts, and manage their information. Full lifecycle: onboarding, change, offboarding and audit.

Manage Roles

Assign or modify user roles and access rights. Create new roles and assign users and resources according to your corporate policies.

Manage Resources

Grant or revoke access to shared resources such as folders, drives or mailboxes. Direct user assignment and parameter modification.

Manage Applications

Install, configure or remove applications for users or teams. Centralised deployment via Intune with licence and version control.

Manage Devices

Register, configure or troubleshoot company devices: computers, phones or tablets. Real-time inventory and automated compliance.

Our Process

Six steps for every request

From submission to execution, every request follows a structured, auditable and automated process — ensuring compliance and traceability at every step.

01Self-Service
02Ticket
03Rules
04Approval
05Runbook
06Report
01

Self-Service

Self-service portal for submitting identity requests. Authentication via EntraID, Google, ADFS (SAML), Active Directory, Okta, Centrify. Interface available in 28 languages, fully customisable fields: pre-filled, editable, dropdown, SQL query.

02

Ticket

Each request generates a structured ticket. Ticket type with custom fields and standards. Value templates to inject default values. Smart assignments by category, filter and responsible team.

03

Rules

Security, governance and classification rules. Conditional evaluation on each ticket. Segregation of duties to prevent non-compliant assignments. Classification and labelling for audit tracking.

04

Approval

Simple or complex approval process. User approval (self-approval). Manager / owner approval. CAB approval with multiple voting rules for critical requests.

05

Runbook

Automatic provisioning of identities and resources on demand. Scheduled synchronisation with the CMDB. System and audit actions: real-time log and event processing.

06

Report

Simple and advanced reports from the identity CMDB. Personal report (each employee's roles and resources). Department report. Audit and governance report: complete tracking of all requests and activities.

Architecture

A Proven Tech Stack

Our platform is built on recognised and ISO/27001 certified solutions, integrated to deliver complete and secure IT governance.

HaloPSA

Self-Service Portal, CMDB, Processes, Roles & Permissions, Multi-organisation and Runbook API. ISO/27001 certified. AES-256 encryption and OIDC/OAuth 2.0 authentication.

CIPP

EntraID and Microsoft 365 administration via the Microsoft Graph API. Open source solution ISO/27001 certified (Cyberdrain B.V.). Data stored in Azure Key Vault and Azure Storage. MFA and conditional access.

Power Automate

Cloud Flows and Desktop Flows for identity, resource and change provisioning automation. Integration with Active Directory, third-party applications, databases and REST APIs.

Availability

  • SaaS — Hosted in the Microsoft Azure cloud, automatic updates
  • On-premise — Deployment in your infrastructure for complete sovereignty
  • Multi-organisation — Manage multiple entities from a single console

Security

  • ISO/27001 certification (HaloPSA & CIPP)
  • AES-256 encryption of data at rest and in transit (TLS/HTTPS)
  • OIDC (Microsoft) authentication, OAuth 2.0 for APIs
  • Sensitive fields protected by X509 certificate
FAQ

Frequently Asked Questions

What technology does your IAM platform run on?

Our platform is built on HaloPSA for the self-service portal, CMDB and processes, CIPP for EntraID and Microsoft 365 administration, and Power Automate for runbooks and automation. The entire stack is ISO/27001 certified.

Which identity providers are supported?

Our self-service portal supports authentication via EntraID, Google, ADFS (SAML), Active Directory, Okta and Centrify. The interface is available in French, German, English and 26 other languages.

How does the request approval process work?

Each request goes through 6 steps: Self-Service (submission), Ticket (structuring), Rules (governance), Approval (by user, manager or CAB), Runbook (automated provisioning) and Report (audit).

Is the platform available as SaaS or On-premise?

Our platform is available in SaaS mode hosted in the Microsoft Azure cloud or as an On-premise deployment for complete data sovereignty according to your regulatory constraints.

YOUR TRUSTED TECHNOLOGY PARTNER

Ready to centralise your identity governance?

Contact us for a demonstration of our Identity and Resource Management platform, tailored to your organisation.