Identity Governance & Administration (IGA) is a core IAM discipline focused on deploy-time management of identities, accounts, and entitlements, plus post-event governance such as regular access recertification. Alongside Access Management (authentication and session control) and Privileged Access Management (PAM), it forms one of the three major pillars of common IAM deployments. IGA comprises Identity Lifecycle Management (ILM), User Access Provisioning (UAP), Identity Access Governance (IAG), workflow management, and application connectors, enabling consistent management across infrastructure (servers, databases, IaaS/PaaS) and applications from on-prem to SaaS.
IGA projects are complex because they span divisions and must translate technical entitlements into business-relevant access. This challenge is especially visible in role management—where business roles must be mapped to IT roles despite complex entitlement models in systems like Active Directory, Windows file servers, and SAP ECC—and in access recertification, where poor business representation of technical entitlements can lead to rubber-stamping rather than true least-privilege enforcement. Technical complexity is driven by application onboarding (SCIM is emerging but often insufficient for complex entitlements; legacy systems need custom connectors) and customization, particularly workflows and UI, compounded by the lack of an established IGA process framework.
Tuebora, headquartered in Fremont, CA, positions itself as “agent driven IGA,” aiming to simplify IGA via agentic AI. Its platform supports common IGA use cases (provisioning, ILM, requests/approvals, recertification, SoD, analytics, auditing/reporting) plus policy mining and some password management. AskTuebora applies ML/AI to identify entitlement anomalies, generate workflows via natural language, create custom connectors faster, and improve recertification efficiency. The cloud-native microservices platform supports SaaS and container deployments, with on-prem/hybrid enabled via virtual appliance and SCIM gateway. Strengths include analytics-driven governance, broad SaaS connectors, extensive reporting, and API coverage; challenges include limited legacy on-prem connectors, a small partner ecosystem, and a non-graphical workflow editor (planned).
See All Locations
See All Locations