Identity governance that delivers results
without enterprise-suite complexity
RAC/M Identity helps organizations govern every identity and access relationship, automate lifecycle processes and demonstrate compliance, backed by OKIOK’s proven implementation expertise.
100%
Implementation success rate
>90%
IAM operations automated
Cascades
Microsoft Azure
SaaS hosting in Canada
ISO 27001
SOC 2 Type 2
certified and attested
Learn more about RAC/M Identity
The cornerstone of a successful IAM program
With seamless integration with your identity sources, HR and ITSM systems as well as your existing and future IT landscape, RAC/M Identity is the cornerstone of a successful IAM program, taming the challenges that derail most: limited resources and budgets, tight timelines, and a complex technological and business landscape.
Govern every identity, human and non-human
RAC/M Identity manages workforce, external, seasonal and other human identities alongside machines, bots, workloads and AI agents, all within a unified governance framework.
It excels in complex environments where individuals may hold multiple roles, relationships and personas, each requiring distinct access, policies and lifecycle controls.
Governance first, automation next
RAC/M Identity differs from traditional IGA suites by being part of a full-service offer, backed by a proven, risk-free deployment methodology.
Our approach centers on a solid foundation: identity governance processes come first, as a prerequisite for automating provisioning. Results are lasting, not just fast.
Real challenges, proven results
Discover how organizations use RAC/M Identity to simplify complex identity environments, strengthen governance and deliver successful outcomes.
Complex identities, simplified
A university health network governs overlapping clinical and academic identities, granting thousands of students timely access as each new session begins.
Read the storyOne access model, 100+ sites
A large manufacturer streamlined IAM operations, governance and compliance with automated lifecycle processes and role-based access across 100+ sites in Canada and the U.S.
Read the storySeasonal workforce, always ready
A government organization manages thousands of seasonal workers by automating lifecycle processes and implementing an effective role-based access model.
Dynamic roles for a mobile workforce
An educational service centre manages a highly mobile population with multiple personas and dynamic assignments through automated lifecycle processes and role-based access.
Keeping pace with a dynamic campus
A university business school keeps access current for a highly dynamic user population by automating lifecycle processes and implementing role-based access.
Results you can see, risk you can measure
Configure, don’t code
Adapts to any technological and business context through configuration of built-in building blocks, eliminating costly customization and delivering better results faster.
Swift, compelling results
Every implementation begins with identity data analysis and consolidation. Clients report detecting and revoking hundreds of unnecessary accounts within days.
Reduce risk
Continuously find and remediate orphaned and rogue accounts, enforce segregation-of-duties rules, and revoke access when people leave or change roles.
Empower your workforce
Leverage Entra ID Single Sign-On and a powerful self-service portal to provide an optimal user experience for all users, on any compatible device.
Four steps, one solid foundation
Discovery & Analytics
Identify stakeholders, identity sources, target systems, owners and IAM processes. Determine who has access to what, identify and remediate risky situations.
Governance
Formalize approval workflows, access-rights reviews, establish a role based access model and define SOD rules and compliance processes.
Automation
Automate identity lifecycle workflows and implement self-service portal.
Evolution
Expand integration coverage, automate further and refine IAM processes and business rules.
Flexible deployment, simpler operations
Deploy RAC/M Identity as a fully hosted SaaS solution or within your own environment.
For most organizations, SaaS provides the simplest path, reducing infrastructure, maintenance and upgrade effort. OKIOK can also manage the platform and operate your identity governance program.
- Administer
- Host and run the platform, from setup and installation to monitoring, security patching, upgrading and evergreening, keeping the solution healthy, secure and up to date.
- Operate
- Run the governance program day to day, covering the access model, access reviews, requests and approvals, and own the processes and outcomes.
On-premises
- Administer
- You
- Operate
- You
RAC/M Identity runs in your own infrastructure. Your team installs, maintains and operates it end to end, backed by OKIOK’s proven methodology and support.
SaaS
- Administer
- OKIOK
- Operate
- You
We host and administer RAC/M Identity in a dedicated tenant in a public or private cloud, with monitoring, evergreening, upgrading and patching, so you keep full control of your governance program without maintaining infrastructure or specialized staff.
Managed services
- Administer
- OKIOK
- Operate
- OKIOK
We administer the platform and operate your governance program for you, including access reviews, requests and the access model, as a turnkey service. No need for an in-house IAM operations team.
Secure, available, and supported
Security
Secure by design: strong encryption with Azure SQL and strong authentication through Entra ID or your preferred SAML IdP. RAC/M Identity SaaS runs in a hardened, dedicated per-customer tenant, kept patched, regularly tested by a professional offensive-security team, and audited yearly for SOC 2 Type 2 and ISO 27001.
Availability
RAC/M Identity SaaS runs on Microsoft Azure across the Canada Central and Canada East regions, geo-replicated between the two for high availability, with a guaranteed 99.5% monthly availability SLA, 24/7/365, continuously monitored by OKIOK.
Support
Backed by OKIOK’s expert team: Level 2 and 3 support included at no extra cost: unlimited phone and email during extended business hours, priority-based response SLAs, optional 24/7 coverage, in English and French.
Simple, predictable pricing
RAC/M Identity is licensed as an annual, tiered subscription, priced on the number of active identities under management. Connectors and inactive identities are always included.
Priced by active identities
Your subscription tier is set by the number of active identities RAC/M Identity governs, so the cost reflects the population you actually manage, not your entire directory history.
No hidden add-ons
There are no additional costs or limits for connectors or inactive identities. Connect as many source and target systems as you need, and retain inactive identities for audit and compliance at no extra charge.
Questions about RAC/M Identity?
Answers to the questions we are asked most: what RAC/M Identity governs, how it fits beside the systems you already run, and how a deployment starts.
Take control of your identities
Gain a clear view of who has access to what, automate time-consuming IAM processes, strengthen governance and reduce identity-related risk across your organization. Talk to our identity experts about your environment, priorities and requirements, and how RAC/M Identity can help.
Prefer to explore on your own? See the complete RAC/M Identity capabilities and compare what is included in each edition.
