Identity Governance and Administration
Identity governance and administration, or IGA, is the discipline of deciding, granting, reviewing, and removing access to systems and data. It connects business roles and policies to the accounts, permissions, approvals, and evidence that enforce them.
itIdentity, access, and cryptography | OpenSkills.info
Intro
Identity Governance and Administration
Identity governance and administration, or IGA, makes access explainable over time. It connects a business decision to a technical grant, then retains evidence that the grant remains appropriate.
An access management system answers a request now: may this identity perform this action? IGA asks the longer question: should this identity have this access, who owns that decision, and when will it end?
The core model
IGA works as a control loop:
- A reliable source records a person, worker, contractor, or other identity.
- A business event or request identifies needed access.
- A policy and an accountable owner approve or reject it.
- Administration provisions the approved account, group, role, or entitlement.
- Logs and records show what changed.
- A review confirms the access still has a purpose.
- A departure, role change, or review removes access that no longer fits.
The loop prevents access drift. Drift is the gap between current permissions and current work. It appears when a person changes teams, a project ends, an account becomes dormant, or a temporary exception becomes permanent.
Governance and administration have different jobs
Continue the course
This section is part of the paid course.
See pricing to subscribe, or log in if you already have access.
Where this skill leads
Relevant careers
See how this topic contributes to broader role-level skill maps.
