This scenario extends the architecture introduced in part III by shifting responsibility for provisioning SAP role assignments from SAP Cloud Identity Services (CIS), Identity Provisioning, to SAP Cloud Identity Access Governance (IAG). Microsoft Entra ID Governance manages the access package and its assignment lifecycle, while SAP IAG applies SAP-specific approval workflows, risk controls, and downstream role provisioning. The scenario also introduces the new SAP IAG connector in Microsoft Entra and Microsoft Azure Key Vault for securely storing the credential for calling the SAP IAG REST API.
Read More Technology Blog Posts by Members articles
#abap