TrustRadius: an HG Insights company

Oracle Identity Governance

Score6 out of 10

48 Reviews and Ratings

What is Oracle Identity Governance?

Oracle Identity Governance (OIG) -formerly Oracle Identity Manager or OIM- is an enterprise identity management system that automatically manages users' access privileges within enterprise IT resources.

Top Performing Features

  • Account Provisioning and De-provisioning

    Capabilities for creating user accounts based on roles, group memberships and business processes

    Category average: 8.4

  • Password Management

    Self-help capabilities the help users recover forgotten passwords, etc.

    Category average: 8.6

  • ID-Management Access Control

    Authorization or restriction of access to information depending on role

    Category average: 8.8

Areas for Improvement

  • ID Management Workflow Automation

    Automated sequence of tasks to simplify processes

    Category average: 8

  • Multi-Factor Authentication

    Using multiple, independent components to gain access

    Category average: 8.5

  • ID Risk Management

    Identification, evaluation, and prioritization of risks with procedures to minimize, impacts of unplanned consequences

    Category average: 8.3

OIM - The Best Tool for Access Management

Pros

  • Provisioning and Deprovisioning from HR System PeopleSoft into OIM and downstream systems
  • Access Requests and SOA Workflows
  • Active Directory and Exchange Connnectors also work great

Cons

  • Custom Event Handler Generation
  • Integration functionality and the custom Connectors
  • Upgrade Process is clunky
  • Enterprise Role Based Build Out is strenous

Return on Investment

  • It has a great impact from moving us from paper based to full EHR Compliance
  • It's easy to check and see how users get and lose access to the systems that are administered through OIM
  • It's also helping in tying down Policies and procedures within the Orgainization

Other Software Used

BMC Remedy Asset Management, Amazon Web Services, Visual Studio IDE

Oracle Identity Manager Go or No Go - A Review

Pros

  • Very well defined connector framework, which enables us to connect with industry-leading applications, either as a trusted source or targets.
  • Very much customizable and scalable as per organisational needs.
  • Always a preferable choice when you have an Oracle applications ecosystem in place as it's easy to configure and maintain when coupled.

Cons

  • Very high cost compared to its competitors in the market, not suitable for medium or small businesses
  • There are a lot of known bugs and a constant need to patch [them]
  • Heavy on hardware, at least 8GB of RAM is needed!! There are much lighter products available with comparable features.
  • Need skilled professionals to configure and maintain, which leads to additional cost.

Return on Investment

  • Positive impact in terms of cost savings with regards to reduction in unwanted accounts, less turn around time for account provisioning leading to quick readiness of new users.
  • Negative impact- high investment of resources to start with, ROI realisation takes time (at least 2-3 years in many cases).
  • Negative impact - Bugs and patching lead to nightmare scenarios in SOC operations.

Alternatives Considered

ForgeRock OpenIDM and CA Identity Manager

Usability

Identity Governance

Pros

  • Cost-saving.
  • Provisioning.
  • Governance.

Cons

  • The cost could be lower.
  • Support.
  • Identity.

Return on Investment

  • It has sped up onboarding processes by at least 3x.
  • Reduced workload.
  • Auto-provisioning.

OIM. When and when not to.

Pros

  • It has a very well-defined and scalable framework (LDAP directory).
  • It scales particularly well, going from a basic platform to a complex one using customisation and extensions.
  • It integrates well with other components like SSO and Access Manager to provide comprehensive a one stop identity management solution.

Cons

  • It is NOT meant for a small or medium size business because it has a huge implementation cost to it.
  • Terrible UI which is extremely confusing.
  • The documentation provided by Oracle is as good as useless because it is written in an extremely complex manner. More often than not, you'll end up hiring a consultant or a dedicated person to take care of product and maintenance.

Return on Investment

  • Fewer support tickets from users since they can use self-service to take care of most of the problem.
  • The implementation cost was a big issue especially since Oracle provides no out of box strategy and it is quite difficult to get a hold of expert consultants who can help you navigate it.
  • Since OIM provides a comprehensive suit for all your identity and access manager needs, it saves from having to buy multiple softwares to do the same job.

Alternatives Considered

VMware Identity Manager, Centrify Identity Service, ForgeRock OpenIDM and IdentityIQ

Other Software Used

VMware Identity Manager, Centrify Identity Service, VMware Horizon View, VMware Player, Adobe Marketing Cloud

OIM - A very complex identity platform

Pros

  • It has many connectors to enterprise platforms like mainframe, AS400, all manner of LDAPS, databases, etc.

Cons

  • It is extremely difficult to install and administer.
  • It is very complex, to set it up correctly requires a huge learning curve.
  • The product is not stable and somewhat buggy.

Return on Investment

  • HIgh support costs if installed on-premise