The lack of streamlined roles and identities management in the Active Directory (AD) in line with HR job profiles created potential security issues due to unprivileged access and delays in access removal upon terminations.
Fractured identity and access management systems
OrthoIndy had been struggling to manage access and create role-based privileges for its patient and clinical data systems for their over 900 employees across multiple locations. The lack of automated role and identity provisioning from ADP to AD also created a potential security risk of misuse of confidential patient information and clinical records. Additionally, there were delays in creating identity, emails, and providing access to clinical systems needed to perform the job when the new employees were hired. This created a barrier between eager new employees and their patients.
Automated role-based privileges and access to patient and clinical data systems
-
HR data from ADP and employee lifecycle changes – namely hiring, terminations, change of roles, and profile updates – were synchronised in real near time to identity systems, Active Directory, and Azure AD
-
Role-based access control ensured privileged need-to-know basis access to patient and clinical data and systems, and ensured legal compliance
-
Created a superior “First Day at Work” experience accounts, email, and system access ready for new hires when they walked in the door
-
Prevented data security risks by ensuring terminated employees’ access was removed in near real-time time and they did not walk away with sensitive protected data

Shreya Shukla
Shreya Shukla works as an Inbound Marketing Specialist at RoboMQ. She is a marketing professional with 7 years of experience in strategically planning marketing campaigns for some of the most trusted brands. She loves to explore new trends in the technology world.