Cloud adoption has made hybrid IT the prevailing reality, pushing IAM to evolve alongside critical workloads. Identity services cannot be split cleanly between “old” on-premises and “new” cloud environments; organizations need hybrid IAM that increasingly shifts toward cloud-based delivery while still supporting existing on-premises applications. Although many IDaaS offerings have entered the market, a large portion concentrates mainly on SSO and adaptive authentication, which is insufficient for comprehensive IAM governance. Effective IAM must also manage identities, entitlements, and authorization across diverse applications and deployment models.
Because the move from on-premises IAM to full IDaaS is a multi-step journey, managed IAM services can bridge the gap by combining enterprise-specific customization with service-based operations. The text argues that many IDaaS investments are tactical (adding connectors or SSO for new cloud services) rather than aligned to mid-term “cloud first/cloud preferred” strategies and the ongoing hybrid state. An “IDaaS first” posture is presented as a logical progression, but timing and approach matter; managed services can enable gradual modernization without sacrificing capability breadth.
iC Consult’s subsidiary Service Layers provides a managed IAM service built on ForgeRock and Ping Identity, supplemented with additional technologies and deployable across AWS, Azure, or customer on-premises platforms. The service emphasizes automation (“infrastructure as code” and “configuration as code”), microservices and containerization with Kubernetes, and DevOps practices including CI/CD and auto-scaling. A distinguishing design choice is dedicated customer instances with no shared runtime components, supporting data segregation while still standardizing operations and patching. Strengths include globalization (notably hosting in China and Russia), modern architecture, and best-of-breed foundations; challenges include organizational scale, limited customer base, and the need for clearer abstraction from underlying IAM products.
See All Locations
See All Locations