This statement accurately describes core Identity Governance and Administration capabilities. Effective IGA provides centralized visibility into identities, accounts, entitlements, roles, applications, and the relationships between identities and their access. This allows security and governance teams to determine who has access, how that access was obtained, whether it remains appropriate, and where excessive or conflicting privileges exist.
IGA also provides policy-driven control. Organizations can implement lifecycle-based provisioning and deprovisioning, access-request approvals, role-based access, periodic certification campaigns, privileged-access governance, and Separation of Duties policies. These mechanisms enable organizations to enforce least privilege while maintaining an auditable record of access-related decisions.
SailPoint describes IGA as providing visibility and oversight of user access across systems and applications while strengthening security through policy-based controls, access reviews, provisioning automation, and SoD. SailPoint also describes its identity-security capabilities as providing detailed visibility into identities, access privileges, and policies throughout an organization.
Therefore, access visibility combined with policy-based governance is a defining IGA capability.
Study Guide Reference: General knowledge for Identity Security Administrators — IGA Fundamentals, Access Visibility, Governance Policies, Least Privilege and Access Controls.
===============