SlideShare a Scribd company logo
Sun2Oracle: Avea’s Identity
Management Platform
Transformation
Darin Pendergraft, Oracle IDM
Ulvi Bucak, Avea
Mahmut Kucuk, Avea
This document is for informational purposes. It is not a commitment to deliver any material,
    code, or functionality, and should not be relied upon in making purchasing decisions. The
    development, release, and timing of any features or functionality described in this document
    remains at the sole discretion of Oracle. This document in any form, software or printed
    matter, contains proprietary information that is the exclusive property of Oracle. This
    document and information contained herein may not be disclosed, copied, reproduced or
    distributed to anyone outside Oracle without prior written consent of Oracle. This document
    is not part of your license agreement nor can it be incorporated into any contractual
    agreement with Oracle or its subsidiaries or affiliates.




2   Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
Speakers


      Darin Pendergraft                                                          Ulvi Bucak         Mahmut Küçük




Sr. Director, Product                                                       Security Operations   Security Planning
     Marketing                                                             and Planning Manager      Supervisor


3   Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
Agenda
                                                                            IDM Drivers
                                                                            Barriers to Adoption
                                                                            Avea Case Study
                                                                            Platform Benefits
                                                                            Resources
                                                                            Q&A

4   Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
What is driving your IDM strategy?

                                                                           Mobile Application Security

                                                                                                     Regulatory Compliance

                                                                           Self Service Enterprise

                                                                                             Social Identity Integration

                                                                               Cloud Services



5   Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
Barriers to Adoption


                                                                            Need to leverage existing IDM investments
                                                                            Uncertain funding
                                                                            Lack of in-house resources
                                                                            Scalability concerns
                                                                            Architectural complexity
                                                                            Service outage




6   Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
AVEA
Identity & Access Management
            Project
•   About Avea
•   Business & Technical Requirements
•   What is the scope ?
•   Challenges
•   Lessons Learned
About Avea
• Avea, the sole GSM 1800 mobile operator of Turkey,
  was founded in 2004.
• Member of Turk Telekom Group.
• 12.8 million customers as of the first quarter of 2012.
• Offering services to 98% of Turkey's population
  through its next generation network.
Business & Technical Requirements
• Replace Sun IDM with OIM.
• Implement Role Based Access Control (RBAC) for entire Avea organization.
• Enhanced Self Service Workflows.
• Improve Provisioning Performance.
• Improve Security of Self Service Password Reset.
• Review process for user entitlements periodically.
• Enable new platform to scale . (Project Ph2 is on the way for dealers)
• Build accurate and customized reports.
Challenges
• Business Roles are not defined (OIA)

• Request & Approval processes are not defined.

• User Interface customizations on 11g R1 is not easy.

• Outsourced testing team.

• Migration from existing Sun IDM.
What’s in scope?
• 6300 identites (employees & outsoures)

• 16 Enterprise Systems and Applications Integration
  (SAP, MS AD,Exchange,Siebel CRM, Unix Systems, etc.)


• ~150 of Roles and Access policies are defined

• 23 Request& approval workflow processes

• Attestation & SOD
Avea IDM System Overview
Completed tasks ..
• SAP HR User and Organization reconciliation with RFCs.
   –   Hire,Update,Transfer,Fire,Transfer to Sister Company to User
   –   Create,Update,Delete,Disable Organization
   –   Resolve missing records and synch issues.
   –   Create groups for CC (OrgId+Title+Location)

• New Outsource Management Application is developed
  on SAPHR.
   – To improve data quality
Completed tasks ..
• SMS and IVR voice recognition based Password
  Reset.
• User entitlement structure is changed for Avea
  subscription system.
• HR has role management responsibility.
• Organizational Change Process has been rebuilt.
• Online end user training.
UI Customizations
• CC Role Management UI &Workflows
   –   Create New Access Policy (with template option)
   –   Assign Resource to AP
   –   Assign AP to Groups
   –   Assign User (Temporarily) to a Group
   –   ...
• NonCC UI and Workflows
   – Manage Entitlements (needs Admin approval)
   – Request Resource for User
         • Single or Multi Privileges
   – Request Group for User
   – Password Reset for IT Helpdesk
   – ...
Lessons Learned
• Product and Partner.
• You need role mining (OIA) to define business roles
  and policies.
• Business sponsors.
• Tests must be performed onsite.
• Sun migration was not just an upgrade.
Assess the Business Opportunity


                  Security                                                    Efficiency               Scale

                                                                                                  3X



 Compliance                                                                 User Productivity    New Customers
 Internal Governance                                                        Operational Cost     Quality of Service
 Security Risk                                                              Opportunity Cost


18   Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
Oracle Identity Management 11gR2


Simplified Experience                                                        Modernized Platform

Cloud, Mobile and Social


Extreme Scale

                                                                            Faster        Lower
Clear Upgrade Path
                                                                            Deployment    TCO

19   Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
Oracle Identity Platform


              Identity                                                      Lifecycle Management & 360 visibility
              Governance                                                    Regular & Privileged identities

            Access                                                          Complete access control Detection
                                                                                              Fraud & SSO

            Management                                                      Converged Policy Administration & Control


            Directory                                                       LDAP, VirtualizationFraud Detection
                                                                                                 & Meta-directory
            Services                                                        Unified Administration & Management



20   Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
The Platform Approach makes sense

                                                                            TAKING A
     48%                                              Cost Savings          REDUCES

     46%                                              More
                                                      Responsive
                                                                            INCREASES
                                                                            IMPROVES

     35%                                               Fewer Audit
                                                       Deficiencies


                                                                            Source: Aberdeen “Analyzing point solutions vs. platform” 2011



21   Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
Resources


                                                                            Blogs.oracle.com/OracleIDM


                                                                            Facebook.com/OracleIDM


                                                                            Twitter@OracleIDM



22   Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
23   Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
24   Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
25   Copyright © 2012, Oracle and/or its affiliates. All rights reserved.

More Related Content

PPTX
Biz case-keynote-final copy
PDF
Oracle_Cisco identity platform approach_webcast
PPT
Healthcare it consolidated
PDF
Od webcast-cloud-fraud final
PPTX
Round table guide
PPTX
Ioug webcast entitlements in check
PDF
Platform approach-series-building a-roadmap-finalv1
PPTX
Gartner iam 2011-analytics-aj-orig-recordednp-final
Biz case-keynote-final copy
Oracle_Cisco identity platform approach_webcast
Healthcare it consolidated
Od webcast-cloud-fraud final
Round table guide
Ioug webcast entitlements in check
Platform approach-series-building a-roadmap-finalv1
Gartner iam 2011-analytics-aj-orig-recordednp-final

What's hot (15)

PPTX
Scaling identity to internet proportions
PPTX
A better waytosecureapps-finalv1
PPTX
Declarative security-oes
PPTX
Platform approach-series-the oracleplatform-final
PDF
Cso oow12-summit-sonny-sing hv4
PPTX
Agilent webcast bestpractices-platformv2
PDF
DSS - ITSEC conf - Centrify - Identity Control and Access Management - Riga N...
PDF
Real User Experience Insight
PDF
Hitachi ID Access Certifier: Find and remove stale privileges with periodic r...
PDF
Overview of Identity and Access Management Product Line
PDF
Microsoft Service Manager 2010
PPT
Microsoft Forefront - Unified Access Gateway (UAG) Presentation
PDF
Enterprise Strategy for Cloud Security
PDF
Aberdeen ppt-iam integrated-db-06 20120412
PPT
Building an Effective Identity Management Strategy
Scaling identity to internet proportions
A better waytosecureapps-finalv1
Declarative security-oes
Platform approach-series-the oracleplatform-final
Cso oow12-summit-sonny-sing hv4
Agilent webcast bestpractices-platformv2
DSS - ITSEC conf - Centrify - Identity Control and Access Management - Riga N...
Real User Experience Insight
Hitachi ID Access Certifier: Find and remove stale privileges with periodic r...
Overview of Identity and Access Management Product Line
Microsoft Service Manager 2010
Microsoft Forefront - Unified Access Gateway (UAG) Presentation
Enterprise Strategy for Cloud Security
Aberdeen ppt-iam integrated-db-06 20120412
Building an Effective Identity Management Strategy
Ad

Viewers also liked (20)

PPTX
Identity Management “Who do you think they are?”
PDF
KBACE Applied Identity Management
PDF
Ds105 2013 ef_ep_a
KEY
Linkedin
PDF
VJ'ing Presentation at CWI
DOC
베트남 노동법 주요내용
DOC
DOC
Successes2009
PPTX
Sd10 nadia alkhazaliah
PPT
Photo album latest slideshow1
PDF
Índice de confiança do empresário industrial
PDF
Thinking & Planning the EPUB 3 Way
PDF
File management 101
PPTX
Juego con vene
PDF
Presentació del diccionari grec clàssic català
PPSX
שימו לב לסגול הרועד
PDF
Правила прийому до Київського Славістичного Університету 2016
PPT
Adco teaser
PDF
SBPS Staff Survey
PDF
Egoera: La economía de Bizkaia - Mayo 2016 - nº22. Cámara de Comercio de Bilbao
Identity Management “Who do you think they are?”
KBACE Applied Identity Management
Ds105 2013 ef_ep_a
Linkedin
VJ'ing Presentation at CWI
베트남 노동법 주요내용
Successes2009
Sd10 nadia alkhazaliah
Photo album latest slideshow1
Índice de confiança do empresário industrial
Thinking & Planning the EPUB 3 Way
File management 101
Juego con vene
Presentació del diccionari grec clàssic català
שימו לב לסגול הרועד
Правила прийому до Київського Славістичного Університету 2016
Adco teaser
SBPS Staff Survey
Egoera: La economía de Bizkaia - Mayo 2016 - nº22. Cámara de Comercio de Bilbao
Ad

Similar to Sun2 oracle avea's identity management platform transformation (20)

PDF
Identity management11gr2launch finalv2
PPTX
Oracle Fusion Middleware,foundation for innovation
PDF
Fusion Middleware 11g Keynote Foundation For Innovation
PDF
Business Integration for the 21st Century
PDF
2012 year Siebel CRM Strategy and Roadmap (outdated)
PDF
Ebs em con9053_pdf_9053_0001
PDF
Fusion app tech_con8707_pdf_8707_0001
PDF
How to Transform Enterprise Applications to On-premise Clouds with Wipro and ...
PDF
How to Transform Enterprise Applications to On-premise Clouds with Wipro and ...
PDF
How to Transform Enterprise Applications to On-premise Clouds with Wipro and ...
PPTX
SANS Institute Product Review of Oracle Identity Manager
PDF
Enterprise Security Architecture: From access to audit
PDF
Implementing Applications with SOA and Application Integration Architecture
PDF
Oracle enterprise architects day
PDF
Keynote by Mario Derba at OpenXperience event in Brussels, October 25 2012
PDF
Day 2 p3 - automation
PDF
Day 2 p3 - automation
PDF
Übersicht Cloud Control - EM 12c
PPTX
Tech editors conf tucker yen-jacoby revised final for may 24 2012
PDF
Real User Experience Insight
Identity management11gr2launch finalv2
Oracle Fusion Middleware,foundation for innovation
Fusion Middleware 11g Keynote Foundation For Innovation
Business Integration for the 21st Century
2012 year Siebel CRM Strategy and Roadmap (outdated)
Ebs em con9053_pdf_9053_0001
Fusion app tech_con8707_pdf_8707_0001
How to Transform Enterprise Applications to On-premise Clouds with Wipro and ...
How to Transform Enterprise Applications to On-premise Clouds with Wipro and ...
How to Transform Enterprise Applications to On-premise Clouds with Wipro and ...
SANS Institute Product Review of Oracle Identity Manager
Enterprise Security Architecture: From access to audit
Implementing Applications with SOA and Application Integration Architecture
Oracle enterprise architects day
Keynote by Mario Derba at OpenXperience event in Brussels, October 25 2012
Day 2 p3 - automation
Day 2 p3 - automation
Übersicht Cloud Control - EM 12c
Tech editors conf tucker yen-jacoby revised final for may 24 2012
Real User Experience Insight

More from OracleIDM (20)

PPTX
Con9573 managing the oim platform with oracle enterprise manager
PPTX
Con9024 next generation optimized directory - oracle unified directory - final
PPTX
Con8902 developing secure mobile applications-final
PPTX
Con8896 securely enabling mobile access for business transformation - final
PPTX
Con8837 leverage authorization to monetize content and media subscriptions ...
PPTX
Con8836 leveraging the cloud to simplify your identity management implement...
PPTX
Con8834 bring your own identity - final
PPTX
Con8833 access at scale for hundreds of millions of users final
PPTX
Con8828 justifying and planning a successful identity management upgrade final
PPTX
Con8823 access management for the internet of things-final
PPTX
Con8819 context and risk aware access control any device any where - final
PPTX
Con8817 api management - enable your infrastructure for secure mobile and c...
PPTX
Con8813 securing privileged accounts with an integrated idm solution - final
PPTX
Con8811 converged identity governance for speeding up business and reducing c...
PPTX
Con 8810 who should have access to what - final
PPTX
Opening remarks-dave-profozichv2
PPTX
Con8808 enabling business growth in the new economy final
PPTX
Innovations dbsec-12c-pub
PPTX
Identityofthings amitjasuj av10
PDF
Identityofthings amitjasuj av10
Con9573 managing the oim platform with oracle enterprise manager
Con9024 next generation optimized directory - oracle unified directory - final
Con8902 developing secure mobile applications-final
Con8896 securely enabling mobile access for business transformation - final
Con8837 leverage authorization to monetize content and media subscriptions ...
Con8836 leveraging the cloud to simplify your identity management implement...
Con8834 bring your own identity - final
Con8833 access at scale for hundreds of millions of users final
Con8828 justifying and planning a successful identity management upgrade final
Con8823 access management for the internet of things-final
Con8819 context and risk aware access control any device any where - final
Con8817 api management - enable your infrastructure for secure mobile and c...
Con8813 securing privileged accounts with an integrated idm solution - final
Con8811 converged identity governance for speeding up business and reducing c...
Con 8810 who should have access to what - final
Opening remarks-dave-profozichv2
Con8808 enabling business growth in the new economy final
Innovations dbsec-12c-pub
Identityofthings amitjasuj av10
Identityofthings amitjasuj av10

Sun2 oracle avea's identity management platform transformation

  • 1. Sun2Oracle: Avea’s Identity Management Platform Transformation Darin Pendergraft, Oracle IDM Ulvi Bucak, Avea Mahmut Kucuk, Avea
  • 2. This document is for informational purposes. It is not a commitment to deliver any material, code, or functionality, and should not be relied upon in making purchasing decisions. The development, release, and timing of any features or functionality described in this document remains at the sole discretion of Oracle. This document in any form, software or printed matter, contains proprietary information that is the exclusive property of Oracle. This document and information contained herein may not be disclosed, copied, reproduced or distributed to anyone outside Oracle without prior written consent of Oracle. This document is not part of your license agreement nor can it be incorporated into any contractual agreement with Oracle or its subsidiaries or affiliates. 2 Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
  • 3. Speakers Darin Pendergraft Ulvi Bucak Mahmut Küçük Sr. Director, Product Security Operations Security Planning Marketing and Planning Manager Supervisor 3 Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
  • 4. Agenda  IDM Drivers  Barriers to Adoption  Avea Case Study  Platform Benefits  Resources  Q&A 4 Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
  • 5. What is driving your IDM strategy? Mobile Application Security Regulatory Compliance Self Service Enterprise Social Identity Integration Cloud Services 5 Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
  • 6. Barriers to Adoption  Need to leverage existing IDM investments  Uncertain funding  Lack of in-house resources  Scalability concerns  Architectural complexity  Service outage 6 Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
  • 7. AVEA Identity & Access Management Project
  • 8. About Avea • Business & Technical Requirements • What is the scope ? • Challenges • Lessons Learned
  • 9. About Avea • Avea, the sole GSM 1800 mobile operator of Turkey, was founded in 2004. • Member of Turk Telekom Group. • 12.8 million customers as of the first quarter of 2012. • Offering services to 98% of Turkey's population through its next generation network.
  • 10. Business & Technical Requirements • Replace Sun IDM with OIM. • Implement Role Based Access Control (RBAC) for entire Avea organization. • Enhanced Self Service Workflows. • Improve Provisioning Performance. • Improve Security of Self Service Password Reset. • Review process for user entitlements periodically. • Enable new platform to scale . (Project Ph2 is on the way for dealers) • Build accurate and customized reports.
  • 11. Challenges • Business Roles are not defined (OIA) • Request & Approval processes are not defined. • User Interface customizations on 11g R1 is not easy. • Outsourced testing team. • Migration from existing Sun IDM.
  • 12. What’s in scope? • 6300 identites (employees & outsoures) • 16 Enterprise Systems and Applications Integration (SAP, MS AD,Exchange,Siebel CRM, Unix Systems, etc.) • ~150 of Roles and Access policies are defined • 23 Request& approval workflow processes • Attestation & SOD
  • 13. Avea IDM System Overview
  • 14. Completed tasks .. • SAP HR User and Organization reconciliation with RFCs. – Hire,Update,Transfer,Fire,Transfer to Sister Company to User – Create,Update,Delete,Disable Organization – Resolve missing records and synch issues. – Create groups for CC (OrgId+Title+Location) • New Outsource Management Application is developed on SAPHR. – To improve data quality
  • 15. Completed tasks .. • SMS and IVR voice recognition based Password Reset. • User entitlement structure is changed for Avea subscription system. • HR has role management responsibility. • Organizational Change Process has been rebuilt. • Online end user training.
  • 16. UI Customizations • CC Role Management UI &Workflows – Create New Access Policy (with template option) – Assign Resource to AP – Assign AP to Groups – Assign User (Temporarily) to a Group – ... • NonCC UI and Workflows – Manage Entitlements (needs Admin approval) – Request Resource for User • Single or Multi Privileges – Request Group for User – Password Reset for IT Helpdesk – ...
  • 17. Lessons Learned • Product and Partner. • You need role mining (OIA) to define business roles and policies. • Business sponsors. • Tests must be performed onsite. • Sun migration was not just an upgrade.
  • 18. Assess the Business Opportunity Security Efficiency Scale 3X  Compliance  User Productivity  New Customers  Internal Governance  Operational Cost  Quality of Service  Security Risk  Opportunity Cost 18 Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
  • 19. Oracle Identity Management 11gR2 Simplified Experience Modernized Platform Cloud, Mobile and Social Extreme Scale Faster Lower Clear Upgrade Path Deployment TCO 19 Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
  • 20. Oracle Identity Platform Identity Lifecycle Management & 360 visibility Governance Regular & Privileged identities Access Complete access control Detection Fraud & SSO Management Converged Policy Administration & Control Directory LDAP, VirtualizationFraud Detection & Meta-directory Services Unified Administration & Management 20 Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
  • 21. The Platform Approach makes sense TAKING A 48% Cost Savings REDUCES 46% More Responsive INCREASES IMPROVES 35% Fewer Audit Deficiencies Source: Aberdeen “Analyzing point solutions vs. platform” 2011 21 Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
  • 22. Resources Blogs.oracle.com/OracleIDM Facebook.com/OracleIDM Twitter@OracleIDM 22 Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
  • 23. 23 Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
  • 24. 24 Copyright © 2012, Oracle and/or its affiliates. All rights reserved.
  • 25. 25 Copyright © 2012, Oracle and/or its affiliates. All rights reserved.