Major Healthcare Provider IAM Case Study

Automating Identity Lifecycle Management for a University Medical and Research Hospital

Organization Profile

A large university medical and research hospital operating a complex, integrated ecosystem that includes hospital, research, higher education, and numerous third-party entities. The organization supports a diverse identity population — including employees, clinical and non-clinical staff, medical students, residents, and external providers — all requiring access to critical enterprise and clinical applications.
A large university medical and research hospital partnered with Presidium Solutions to modernize its Identity and Access Management program using SailPoint Identity Security Cloud (ISC) and Non-Employee Risk Management (NERM). Managing fluid, multi-persona identities across a highly integrated healthcare environment was creating access delays, compliance risks, and operational strain. Presidium delivered a scalable IAM solution that automated lifecycle management for both employees and non-employees, streamlining access governance across cloud and on-premises applications.

The Challenge

Our client’s organization includes hospital, research, high-education and numerous 3rd party entities. Providing fast and accurate access to clinical applications was a real struggle given the variety of avenues users were being on-boarded and complex relationships between entities. Long waits for access were the norm, which delayed ability of front-line staff and providers to deliver patient care.

The Solution

Presidium Solutions set out on a discovery effort to understand all the different types of identities and their relationship with the client’s organization. This included hospital, research and university HR teams; medical student (residents and nursing) and numerous 3rd party clinical and non-clinical staffing teams. Lifecycle workflows including role-based access and entitlements to key enterprise and clinical applications were documented into use cases and requirements.
SailPoint ISC was configured with complex joiner, mover and leaver workflows to meet the documented requirements. SailPoint NERM was deployed and custom workflows configured to handle all 3rdy party non-employee on-boarding/off-boarding and recertification.

PRESIDIUM Solutions delivered an IAM solution which provides the following:

  • Sourcing HR data from Oracle and Workday
  • Non-employee management portal
  • Assignment of birth-right roles

Provisioning/de-provisioning user accounts and entitlements to Active Directory, ServiceNow, Epic, Oracle Cloud, O365 and other applications

Results & Impact

  • Defining the various identity types and consolidating identity management processes across the organization with the IAM solution enabled faster and comprehensive onboarding for new and re-hires. The ability to handle multi-persona use cases resulted in smoother transitions without impact to access.
  • Access automation significantly improved the speed at which employees and non-employees were able to be productive on the first day of work.
  • The amount of manual work required by staffing teams to submit and track tickets was reduce significantly, improving team’s SLAs and reducing burden on IAM and Service desk for manual processing.
  • Timely and automated de-provisioning of access upon termination ensures all access to critical applications was shut off immediately, in a secure and auditable manner
  • Method for consistent management of non-employees, empowering staffing teams to use self-service capabilities to on/off board staff in a timely and efficient manner.
  • The initial phase provided the foundation to on-board additional applications, resulting in even greater efficiencies, compliance, administrative cost savings and ROI.

More Client Success Stories

US Telecom PAM Monitoring Case Study

Integrated CyberArk with Splunk to deliver centralized visibility, real-time monitoring, and proactive alerting across a large-scale telecom PAM environment.

Canadian Provisional Lottery Case Study

Expanded CyberArk PAM from minimal use to enterprise-wide coverage across gaming systems, infrastructure, endpoints, and vendors—improving security, audit readiness, and user adoption.

Credit Union IAM Case Study

Presidium Solutions modernizes Identity and Access Management for a California-based credit union, automating lifecycle provisioning and de-provisioning across cloud and on-premises applications for 225,000+ members.

Canadian Utility PAM Case Study

Presidium Solutions implements Privileged Access Management for a major Canadian electric utility, securing critical infrastructure and enforcing least privilege across 4,000+ endpoints.

Let’s Strengthen Your Identity Security Program

Whether you are beginning your journey, looking to expand your program, or struggling with a current implementation, we provide the expertise to move your security objectives forward with confidence.