About a-team Marketing Services
The knowledge platform for the financial technology industry
The knowledge platform for the financial technology industry

A-Team Insight Blogs

Sallie Mae and Société Générale Select SailPoint for Identity Governance and Compliance

Subscribe to our newsletter

SailPoint today announced that Sallie Mae and Société Générale have chosen SailPoint IdentityIQ to automate and streamline their identity related compliance processes. SailPoint IdentityIQ, an identity governance solution, helps corporations of all sizes keep track of who has access to critical applications, data and IT systems while greatly reducing audit and compliance costs. A comprehensive view of user identity data enables customers like Sallie Mae and Société Générale to more easily comply with regulations that require regular audits and certification of access privileges, including SOX, FISMA, Basel II, PCI and the European Union’s Data Protection Directive.

“As a publicly-traded company and financial services provider, we are subject to a variety of regulations including FISMA, SOX, PCI, and SAS 70,” said Jerry Archer, chief security officer for Sallie Mae. “To meet these requirements, we are standardising and automating our compliance processes for identity management, so that we can centrally control who gets access to sensitive resources and maintain compliance as the organisation changes over time. This centralised and automated approach allows us to proactively address risk and more efficiently maintain a compliant, secure environment.”

Identity governance provides companies with an enterprise-wide view of who has access to sensitive or proprietary information and applications. This allows them to analyse risk, make better decisions, and implement the appropriate controls for achieving and maintaining compliance. It also reduces the cost of compliance by creating a consistent, reliable and auditable process to manage access certification and policy enforcement.

“The compliance burden that global companies face will continue to grow in 2010 through additional industry regulations and stronger enforcement of existing mandates,” said Kevin Cunningham, president and founder of SailPoint. “SailPoint IdentityIQ provides companies with the necessary visibility to better understand the risks associated with user access privileges on sensitive information systems, allowing them to strengthen controls and automate compliance processes across the enterprise.”

Subscribe to our newsletter

Related content

WEBINAR

Recorded Webinar: GenAI and LLM case studies for Surveillance, Screening and Scanning

As Generative AI (GenAI) and Large Language Models (LLMs) move from pilot to production, compliance, surveillance, and screening functions are seeing tangible results – and new risks. From trade surveillance to adverse media screening to policy and regulatory scanning, GenAI and LLMs promise to tackle complexity and volume at a scale never seen before. But...

BLOG

The Data Backbone of Defence: Powering Next Generation Surveillance

A unified data fabric is fast becoming wholesale finance’s front line of defence. By fusing millions of voice calls, chat messages and trade records into a single analytical view, next generation surveillance promises to detect misconduct in minutes and to satisfy regulators who increasingly ask firms to prove that capability. A-Team Group RegTech Summits in...

EVENT

TradingTech Summit London

Now in its 15th year the TradingTech Summit London brings together the European trading technology capital markets industry and examines the latest changes and innovations in trading technology and explores how technology is being deployed to create an edge in sell side and buy side capital markets financial institutions.

GUIDE

The DORA Implementation Playbook: A Practitioner’s Guide to Demonstrating Resilience Beyond the Deadline

The Digital Operational Resilience Act (DORA) has fundamentally reshaped the European Union’s financial regulatory landscape, with its full application beginning on January 17, 2025. This regulation goes beyond traditional risk management, explicitly acknowledging that digital incidents can threaten the stability of the entire financial system. As the deadline has passed, the focus is now shifting...