Supported Features

The SailPoint CyberArk Privilege Cloud Shared Services SaaS connector supports the following features:

Note
Before you can use any item marked with an asterisk (*), SailPoint must activate the feature for your site.

Account Management

  • Aggregation ( Internal and External Users)

  • Refresh account

  • Create account provisioning (Local Users)

  • Enable/disable account provisioning

  • Add/remove entitlement(s)

    Note
    The SailPoint CyberArk Privilege Cloud Shared Services connector uses PUT method to add Users to Groups via the Groups endpoint.

Entitlement Management (Groups)

  • Aggregation group(s)

  • Single group aggregation

  • Aggregate container / safes permissions as direct permissions

Supported Use Cases

The following use cases are facilitated by the CyberArk Privilege Cloud Shared Services SaaS connector:

Read Operation

  • Fetch local and external users from the PAM system.

    Local users refers to users locally residing in PAM. External users refers to users synced from external managed system to PAM systems.

  • Fetch local groups from the PAM system.

  • View Safes/Containers and its permissions assigned to groups.

Provisioning

  • Create local users on the PAM system.

  • Add or remove internal and external users from local groups. This indirectly assigns and revokes Safes and its associated permissions.

  • Enable or disable internal and external users residing on the PAM system.

For more information on features, refer to Identity Security Cloud Source Features.