Made in Germany
GDPR & NIS2 compliant
25 Jahre IAM Experts
Vendor- & cloud-independent
Reality Check:
When every role change becomes an administrative burden
A company is not a static structure. Employees join and leave, responsibilities change, external partners and suppliers are brought into projects and later offboarded again. Nothing stays the same, and that is exactly what makes it so difficult for your IT team to keep these Joiner-Mover-Leaver processes under control over the long term.
Delayed onboarding
New employees wait for accounts, licenses and the access they need.
Excessive accumulation of access rights
Old permissions often remain in place after role changes.
Orphaned accounts
Former employees or partners retain access unnoticed.
High administrative effort
IT teams lose time on recurring manual tasks.

Your Identity Lifecycle Management with IDM-Portal

The Joiner Process:
Onboarding from minute one
Automated user provisioning
As soon as your HR department or a business unit creates a new colleague in the HR source system (Loga 3, Workday, Personio, SAP HCM) or directly in IDM-Portal, the digital identity is created automatically.
Based on predefined rules, IDM-Portal automatically assigns roles and permissions according to location, department and function (RBAC & ABAC). Usernames, email addresses and mailboxes are also generated automatically according to your naming conventions. Predefined templates and input forms ensure accurate, consistent data from the very beginning.
The result: your new colleague is fully ready to work on the first day, with an email mailbox, cloud licenses, directory profile and group memberships.
The Mover Process:
Role changes without access accumulation
Dynamic permission adjustment
When someone in your team changes department or takes on a new position, FirstWare IDM-Portal adjusts access rights in real time. Permissions that are no longer needed are consistently removed.
This keeps your organization aligned with the principle of least privilege at all times: every employee has exactly the access their current role requires.
Through role-based delegation, departments and managers assign standard access directly themselves, without going through IT. Group memberships in your hybrid environment are automatically assigned and cleaned up.


The Leaver Process:
Secure, reliable deprovisioning
Immediate removal of all access on the effective date
When an employee leaves your organization, FirstWare IDM-Portal deactivates all digital keys and licenses exactly on the effective date — on-premise, cloud or SaaS, all at the same time and without manual effort.
This prevents former employees, interns or external partners from retaining access unnoticed. Unused cloud and software licenses are released immediately, saving real costs. Every handover step is archived in an audit-proof way so that you meet strict compliance requirements.
You do not have to automate everything at once: many customers start with the Joiner process and gradually add Mover and Leaver automation.
Complete data in one place
Your hybrid infrastructure as the leading data source
FirstWare IDM-Portal provides space for all information that matters to your organization. It eliminates inconsistent, incomplete and redundant data.
With virtual attributes, you automatically populate combined fields and store individual identity data. Whether global cloud standards or your own custom data fields, you adapt terminology and data fields precisely to your company language. The portal grows dynamically with your requirements.
The portal applies this principle not only to user accounts, but to every object type in your directories, from groups and mailboxes to devices.


Full control over
non-human & AI identities
Service accounts and AI agents under control
Identity management in your organization no longer stops with employees. FirstWare IDM-Portal consistently extends automated Lifecycle Management to all non-human identities.
You retain full control over the lifecycle of service accounts, API interfaces and RPA bots — from provisioning to shutdown. You can regulate and audit just as precisely which data access your internal AI agents actually have.
Every permission assignment and every activity of non-human identities is logged in an audit-proof way, creating reliable non-human auditing that also stands up to strict audits.
What is FirstWare IDM-Portal?
Flexible IAM solution for Identity Governance & Administration
FirstWare IDM-Portal is a user-friendly IAM solution for automated provisioning and lifecycle management of all identities and groups in complex, hybrid IT landscapes.
Powered by my-IAM – the underlying technology platform that enables seamless connection of any IT systems and cloud services.

A central governance platform for your entire IT landscape
Whether cloud-native, hybrid or on-premise, FirstWare IDM-Portal connects your identities and systems into a homogeneous, secure Identity Governance landscape. You do not have to choose between isolated solutions: the portal integrates seamlessly with the systems you already use.
Lifecycle automation
Personio, SAP SuccessFactors, SD Worx / Loga3
Identity Providers & Directories
Microsoft Entra ID, Keycloak, hybrid infrastructures
Specialized & industry software
Dedalus Orbis, SQL connections, CSV & API connectors
No matter how individually your system landscape has evolved, you get a single, consistent view of all identities, regardless of where the data originally comes from.

Your benefits
Automated
JML processes
Less
IT effort
Onboarding from day one
Automatic license management
Consistent processes across all departments
Reliable
audit security
Frequently Asked Questions
Frequently asked questions about Identity Lifecycle Management, automated Joiner-Mover-Leaver processes and secure access management with FirstWare IDM-Portal.
What is Identity Lifecycle Management?
Identity Lifecycle Management (also known as the Joiner-Mover-Leaver process) automates the entire lifecycle of a digital identity, from creation and departmental changes to deactivation across all cloud and on-premise systems. The identity can be created directly in FirstWare IDM-Portal or imported from a connected HR system; both are possible.
What is the difference between Identity Lifecycle Management and Identity Governance & Administration (IGA)?
Identity Lifecycle Management describes the automated control of the Joiner-Mover-Leaver process itself — in other words, creating, updating and deactivating identities. Identity Governance & Administration (IGA) goes further: it adds control mechanisms such as recertification, audit reporting and segregation of duties, so you can prove at any time who has which access rights and why. FirstWare IDM-Portal covers both levels: lifecycle automation and the corresponding governance.
How does IDM-Portal automate the Joiner-Mover-Leaver process?
New hires, department changes and departures trigger automated workflows in real time. Rules based on roles and attributes (RBAC/ABAC) determine which access rights are granted or removed, without manual IT intervention.
Does IDM-Portal also work across multiple systems and locations?
Yes. The portal works independently of platforms and continuously synchronizes identities between cloud services and local directories. This creates a central, reliable source for all identity data, regardless of where an employee or system is actually located.
How does IDM-Portal support organizations with compliance audits, such as ISO 27001 or NIS-2?
Every change in the lifecycle of an identity is logged in an audit-proof way. Reports showing who had or approved which permissions and when can be exported quickly for auditors.
Why is data sovereignty so important in Identity Lifecycle Management?
Identity data is among the most sensitive corporate data. Our solution, developed in Germany and operated in European data centers, supports compliance with strict European data protection requirements and helps protect against access by authorities from third countries.
Let's Talk
We are here for you
Do you want to automate your Identity Lifecycle processes securely?
Call us at +49 8196 998 4330 or use our contact form.
