diff --git a/iam-functions-list b/iam-functions-list new file mode 100644 index 0000000..ce98142 --- /dev/null +++ b/iam-functions-list @@ -0,0 +1,48 @@ +*User management, user concerns* + +identity registration, enrollment, +identity proofing +credentialing +account validation +attribute verification + +identity resolution +progressive profiling + +self-service identity management, credential binding, password management, profiling, preferences, account linking + +consent and privacy protection + +support for multiple identity records (and credentials) for a single person + +*IAM Capabilities* + +multiple AuthN sources and styles, (local SSO, social, federated, protocol gateways), +password and MFA management +session mgmt, logout + +access policy management (coarse and fine grained) +Access Mgmt admin, (distributable) +request/approval processes +lifecycle transitions definition and admin + +service accounts +apps, services as credentialed agents for invoking other services, apis + +API management +API access to all IAM functionality +api authNZ, registry, gateway, specifications, style guidelines + +provisioning, deprovisioning, +messaging and api integration with connected apps & services, app integration +batch reconciliation, near real time sync between registry and connected systems +auditing, logging, reporting, attestation + +*data management* + +directory services +IAM data dictionary +identity and entitlement data access + +*The ...ities* +scalability reliability, performance, security, maintainability, other ...ities