Identity and Access Management is shifting from enterprise-contained, perimeter-based security toward a model where identities and their access rights define the security boundary. This change is driven by mobile and remote access across many device types, the need to manage large volumes of external identities (partners, customers, prospects), and new collaboration patterns across B2E, B2C, and B2B relationships. Rapid cloud adoption further expands the scope of governance to include IaaS, SaaS, and cloud application platforms, requiring identity administration and governance that works “at Internet scale” and ties on-premises infrastructure to external cloud services.
Saviynt, founded in 2010 and headquartered in Los Angeles with offices in the US, UK, and India, offers a single platform—Saviynt Security Manager—for Identity and Access Governance and Cloud Security, supported by add-on modules. The platform emphasizes risk- and threat-aware governance with analytics-driven controls, providing risk-based access request management, preventive Segregation of Duties checks, risk-based approvals, and catalog filtering. Role engineering supports top-down, bottom-up, and hybrid approaches including role mining, along with attribute-based access control through rules, and lifecycle capabilities such as versioning, what-if analysis, and rollback.
The platform includes cross-application SoD management built on 200+ general rules plus application-specific rule sets, and it evaluates risk at the business-function level to abstract from technical entitlements. Extensions cover Application GRC, Cloud Infrastructure Governance, Data Governance, Privileged Access Governance, and Customer Identity Governance, with monitoring for misconfiguration and suspicious activity. Deployment spans cloud, on-premises, and hybrid models, complemented by broad out-of-the-box integrations and a growing partner ecosystem, while noted challenges include a US-centric customer focus and cloud-only PAM scope.
See All Locations
See All Locations