KuppingerCole Leadership Compass Report 2023 – Access Governance Read More

Simeio
  • Services
    • Professional Services
    • Managed Services
    • Advisory and Assessment
  • Solutions
    • Industries
    • Identity Governance & Administration
    • Access Management
    • Privileged Access Management
    • Customer Identity & Access Management
    • CIEM
  • Identity Orchestration Platform
    • IAM Maturity
    • Application Onboarding
  • About
    • Awards
    • Leadership
    • Why Simeio
    • Partners
  • Insights
    • Resources
    • Blog
    • Webinars & Events
    • Media
  • Careers
    • Programs
  • Contact
Search for:
  • Support
  • Search for:

Resources & Downloads

Check out our latest analyst reports, datasheets, events etc.

Subscribe for Updates
  • Insights
  • Resources & Downloads
  • Case Study – AM Federation for a Major Oil Company Through Partnership with Ping

Case Study – AM Federation for a Major Oil Company Through Partnership with Ping

Jul 19, 2023

Background

The customer is the United States-based subsidiary of a multinational oil company (“supermajor”) of Anglo Dutch origins. The multinational figures amongst the six largest oil companies in the world and ranked as one of the largest companies in the world by revenue. Although approximately 22,000 employees are based in the U.S, the solution described below addresses use cases that support 150,000 employees worldwide, including 15000 external users. The U.S. head office is located in Texas. The client is vertically integrated, with many joint ventures and a high rate of acquisition. Including its consolidated companies and its share in equity companies, the client operates across exploration and production, refining, transport, distribution and marketing, petrochemicals, power generation and trading.

The upstream and downstream businesses that comprise the client’s value chain require access from and provide access to data and information according to policy and processes defined by the client. This complex set of interactions up and down the chain is governed according to various levels of confidentiality, and degrees of business impact. Availability, performance, reliability and integrity of accesses and data are critical as associated issues impact employee productivity, operational risks, and regulatory compliance.

The Challenge

Employees, contractors and vendors were unable to access corporate applications – in particular, Office 365, where most of the tickets had been created. Missing attributes, and duplicate users created during synchronization caused user downtime; and word of such problems spread among application owners.

This resulted in:

  • Significant employee and contractor productivity issues
  • Vendor access problems, impacting revenue and productivity
  • Application owners rejecting onboarding of their applications into the enterprise Access Management system – preferring instead to take on operational risk
  • High risk exposure
  • Audit findings associated with non-compliant SOX-scoped system

The client had been using a dated and poorly architected implementation of CA SiteMinder, “FAAS”, hosted internally within two datacenters in Europe. The deployment was performing so inadequately that application owners preferred to manage access directly rather than subject users to the flawed corporate access management system. This was reflected in a low and slow backlog of applications to be onboarded. Issues associated with the 7-year old design including:

  • Service outages which impacted business critical applications Bad user experience
  • Not scalable
  • Low application adoption rate
  • On-premise solution

Simeio found the following main causes of the outages:

  • Identity Synchronization Issues
  • Data Integrity Issues
  • Excessive Attribution / Wrong Attribution for Federation
  • No Disaster Recovery In Place
  • All requests were addressed centrally by servers in the EU, resulting in round trip delays and bad user experience
  • The existing business continuity management process was too difficult to test on an annual basis

The Solution

The client partnered with Simeio to build and deploy a pure IDaaS solution exclusively for the client (single rather than multi-tenant), powered by PING. This Access Management (AM), Federation and Multi-Factor Authentication (MFA) project involved setting up IAM service to support 150,000 B2E users, 50,000 B2B users, and over 90 applications, worldwide.

Simeio manages the client’s PING Identity Suite environment, including PingFederate – High Availability Cluster, PingAccess – High Availability Cluster, and PingOne/PingID MFA Tenant.

  • Simeio cloud with two regions: US and Europe
  • 70+ Servers, 3 Environments
  • Supports 116 federations
  • 150,000 users across multiple domains
  • Simeio Expert Managed Services
    • 1. Access Management
    • 2. Federation
    • 3. Multi-Factor Authentication
  • 24/7/365 Support – Hybrid on/off shore model
  • Outage Support and Ticket Management Deployment, rollout and on-going app/privileged account on-boarding services
  • Environment upgrades and stabilization, including infrastructure support such as patching, and server and OS upgrades
  • Trusted IAM advisor
  • Vendor evaluations and technology and industry best practice recommendations.

The client selected Simeio to be the IAM service provider and PING IAM Suite to address the challenges and other needs and requirements. Simeio Managed Services proved to be a true solution, beating competitive demonstrations from other vendors and service providers.

  • 150,000 B2E Users
  • 50,000 B2B Users
  • 90+ Applications

The Impact

Simeio addressed end user experience issues that were inhibiting adoption by application owners.
Simeio implemented geo-based clustering, auto-scaling, and addressed multiple levels of redundancy with automatic failover.

  • To handle peak and increasing load (traffic or number of requests) globally, without placing excess load on any one region
  • To ensure business critical applications can be serviced, addressing adoption challenges from application teams.
  • To reduce Recovery Time Objective (RTO) timelines

Ensured access from a given regional domain was authenticated from AWs servers within the same region.

Aligned with the client’s strategic goal to transition to SaaS platforms. They required a true SaaS IAM platform that could provide SSO to SaaS applications.

Provided a robust monitoring and alerting system to notify teams if there is an issue with a server on an application authentication. PING MFA worked seamlessly across all mobile platforms and improved user experience. The offline PING ID MFA capability was a significant advantage.

Within 8 Months, Simeio was able to significantly improve productivity and vastly reduced help desk tickets. The environment was run as a security program, with security and compliance reporting supplied by Simeio and the access management environment was vertically and horizontally scalable.

  • 35 Applications Migrated in 40 Days
  • 99% for the Uptime environment governed by SLA
  • 2x Increase in Adoption by Application Owners

Download Case Study
BACK
NEXT
Infographics
Infographic – IAM in Healthcare

From patient portals to caregiver records, safeguarding and optimizing user data is a chief concern in modern healthcare. Learn how IAM solutions contribute to a healthy identity environment.

Infographics
Infographic – Managed IAM in Retail

Retail has gone heavily digital and that means identity (and its management) has become paramount to marketplace success. Check out how managed IAM contributes to a more frictionless experience for customers and a more profitable venture for enterprises.

Get Our Report

    By registering, you confirm that you agree to the processing of your personal data by Simeio as described in the Privacy Statement.
    Simeio

    Services

    • Professional Services
    • Managed Services
    • Advisory and Assessment

    Solutions

    • Expertise
    • Identity Governance & Administration
    • Access Management
    • Privileged Access Management
    • Customer Identity & Access Management

    Simeio IO

    • Application Onboarding

    About

    • Awards
    • Leadership
    • Why Simeio
    • Partners
    • Contact

    Insights

    • Resources
    • Blog
    • Webinars & Events
    • Media
    • Career
    • Privacy Requests
    • Privacy
    • Privacy Requests
    • Privacy

    © Copyright 2023 Simeio, All rights reserved.

    • Twitter
    • Facebook
    • Instagram
    • Linkedin
    • Youtube

    Thanks for getting in touch!

    We typically respond within 24 hours. In the meantime, feel free to checkout our frequently asked questions.

    We use cookies on our website to give you the most relevant experience by remembering your preferences and repeat visits. By clicking “Accept”, you consent to the use of ALL the cookies.
    Do not sell my personal information.
    Cookie Settings Accept
    Manage consent

    Privacy Overview

    This website uses cookies to improve your experience while you navigate through the website. Out of these, the cookies that are categorized as necessary are stored on your browser as they are essential for the working of basic functionalities of the website. We also use third-party cookies that help us analyze and understand how you use this website. These cookies will be stored in your browser only with your consent. You also have the option to opt-out of these cookies. But opting out of some of these cookies may affect your browsing experience.
    Necessary
    Always Enabled
    Necessary cookies are absolutely essential for the website to function properly. These cookies ensure basic functionalities and security features of the website, anonymously.
    CookieDurationDescription
    cookielawinfo-checkbox-analytics11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Analytics".
    cookielawinfo-checkbox-functional11 monthsThe cookie is set by GDPR cookie consent to record the user consent for the cookies in the category "Functional".
    cookielawinfo-checkbox-necessary11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookies is used to store the user consent for the cookies in the category "Necessary".
    cookielawinfo-checkbox-others11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Other.
    cookielawinfo-checkbox-performance11 monthsThis cookie is set by GDPR Cookie Consent plugin. The cookie is used to store the user consent for the cookies in the category "Performance".
    viewed_cookie_policy11 monthsThe cookie is set by the GDPR Cookie Consent plugin and is used to store whether or not user has consented to the use of cookies. It does not store any personal data.
    Functional
    Functional cookies help to perform certain functionalities like sharing the content of the website on social media platforms, collect feedbacks, and other third-party features.
    Performance
    Performance cookies are used to understand and analyze the key performance indexes of the website which helps in delivering a better user experience for the visitors.
    Analytics
    Analytical cookies are used to understand how visitors interact with the website. These cookies help provide information on metrics the number of visitors, bounce rate, traffic source, etc.
    Advertisement
    Advertisement cookies are used to provide visitors with relevant ads and marketing campaigns. These cookies track visitors across websites and collect information to provide customized ads.
    Others
    Other uncategorized cookies are those that are being analyzed and have not been classified into a category as yet.
    Save & Accept
    Powered by CookieYes Logo