Skip to main content

Glossary

TermMeaning
ISCSailPoint Identity Security Cloud — the SaaS identity governance platform this program migrates to
SourceThe ISC representation of one of your systems. Your system gets one source
Source IDThe internal identifier ISC assigns to your source. Handled for you — producers never manage it
Delimited File source / disconnected applicationThe source type your system uses: no live connection, ISC ingests state from periodic CSV uploads. SailPoint's own docs say flat file source; work items from it are manual provisioning tasks
AccountAn access record on your system, typically one per user
EntitlementA group, role, or permission your system can grant. Accounts hold zero or more entitlements
AggregationThe ISC process that ingests a CSV and updates its model of who has access
CorrelationThe ISC process that links an account on your source to an existing identity, keyed on employeeId
Uncorrelated accountAn account whose employeeId matched no identity: loaded, but attached to no person — invisible to that person's certifications and leaver workflows
Certification (cert review)A campaign where a reviewer (manager, application owner, compliance) decides keep-or-revoke for each access a person holds
UAR (user access review)The periodic certification cycle — where keep/revoke decisions are made, known exceptions are re-approved, and the audit evidence for an application's access is produced
BirthrightAccess granted automatically when someone joins (or holds a qualifying role), rather than individually requested — no request or approval step; fulfillment is still a ServiceNow ticket
Manual provisioning taskThe work item ISC creates when an approved request needs a human to make the change in your application — delivered today as a ServiceNow ticket
SDIMService Desk Integration Module — the ISC↔ServiceNow integration that turns manual provisioning tasks into the tickets fulfillers work. You may hear the IAM team use the term; to you it's just "the ServiceNow ticket"
SOX-criticalIn scope for Sarbanes-Oxley financial-reporting audit; gets the longer 30-day parallel-run window and stricter change control
Parallel runThe onboarding window where your feed and the legacy system's data are reconciled daily until a clean streak certifies the source