About a-team Marketing Services
The knowledge platform for the financial technology industry
The knowledge platform for the financial technology industry

A-Team Insight Blogs

Sallie Mae and Société Générale Select SailPoint for Identity Governance and Compliance

Subscribe to our newsletter

SailPoint today announced that Sallie Mae and Société Générale have chosen SailPoint IdentityIQ to automate and streamline their identity related compliance processes. SailPoint IdentityIQ, an identity governance solution, helps corporations of all sizes keep track of who has access to critical applications, data and IT systems while greatly reducing audit and compliance costs. A comprehensive view of user identity data enables customers like Sallie Mae and Société Générale to more easily comply with regulations that require regular audits and certification of access privileges, including SOX, FISMA, Basel II, PCI and the European Union’s Data Protection Directive.

“As a publicly-traded company and financial services provider, we are subject to a variety of regulations including FISMA, SOX, PCI, and SAS 70,” said Jerry Archer, chief security officer for Sallie Mae. “To meet these requirements, we are standardising and automating our compliance processes for identity management, so that we can centrally control who gets access to sensitive resources and maintain compliance as the organisation changes over time. This centralised and automated approach allows us to proactively address risk and more efficiently maintain a compliant, secure environment.”

Identity governance provides companies with an enterprise-wide view of who has access to sensitive or proprietary information and applications. This allows them to analyse risk, make better decisions, and implement the appropriate controls for achieving and maintaining compliance. It also reduces the cost of compliance by creating a consistent, reliable and auditable process to manage access certification and policy enforcement.

“The compliance burden that global companies face will continue to grow in 2010 through additional industry regulations and stronger enforcement of existing mandates,” said Kevin Cunningham, president and founder of SailPoint. “SailPoint IdentityIQ provides companies with the necessary visibility to better understand the risks associated with user access privileges on sensitive information systems, allowing them to strengthen controls and automate compliance processes across the enterprise.”

Subscribe to our newsletter

Related content

WEBINAR

Recorded Webinar: GenAI and LLM case studies for Surveillance, Screening and Scanning

As Generative AI (GenAI) and Large Language Models (LLMs) move from pilot to production, compliance, surveillance, and screening functions are seeing tangible results – and new risks. From trade surveillance to adverse media screening to policy and regulatory scanning, GenAI and LLMs promise to tackle complexity and volume at a scale never seen before. But...

BLOG

From Validation to Intelligence: How n-Tier is Redefining Regulatory Reporting at Scale

As regulatory reporting matures into a data-driven discipline, n-Tier has emerged as one of the few technology firms able to bridge legacy fragmentation and the next generation of granular, real-time oversight. Speaking from n-Tier’s headquarters, Founder and Chief Executive Officer Peter Gargone describes a market reshaping around scale, consolidation and continuous validation – and a...

EVENT

ExchangeTech Summit London

A-Team Group, organisers of the TradingTech Summits, are pleased to announce the inaugural ExchangeTech Summit London on May 14th 2026. This dedicated forum brings together operators of exchanges, alternative execution venues and digital asset platforms with the ecosystem of vendors driving the future of matching engines, surveillance and market access.

GUIDE

GDPR Handbook

The May 25, 2018 compliance deadline of General Data Protection Regulation (GDPR) is approaching fast, requiring financial institutions to understand what personal data they hold, why they process it, and whether it is shared with other organisations. In line with individuals’ rights under the regulation, they must also provide access to individuals’ personal data and...