About a-team Marketing Services
The knowledge platform for the financial technology industry
The knowledge platform for the financial technology industry

A-Team Insight Blogs

Sallie Mae and Société Générale Select SailPoint for Identity Governance and Compliance

Subscribe to our newsletter

SailPoint today announced that Sallie Mae and Société Générale have chosen SailPoint IdentityIQ to automate and streamline their identity related compliance processes. SailPoint IdentityIQ, an identity governance solution, helps corporations of all sizes keep track of who has access to critical applications, data and IT systems while greatly reducing audit and compliance costs. A comprehensive view of user identity data enables customers like Sallie Mae and Société Générale to more easily comply with regulations that require regular audits and certification of access privileges, including SOX, FISMA, Basel II, PCI and the European Union’s Data Protection Directive.

“As a publicly-traded company and financial services provider, we are subject to a variety of regulations including FISMA, SOX, PCI, and SAS 70,” said Jerry Archer, chief security officer for Sallie Mae. “To meet these requirements, we are standardising and automating our compliance processes for identity management, so that we can centrally control who gets access to sensitive resources and maintain compliance as the organisation changes over time. This centralised and automated approach allows us to proactively address risk and more efficiently maintain a compliant, secure environment.”

Identity governance provides companies with an enterprise-wide view of who has access to sensitive or proprietary information and applications. This allows them to analyse risk, make better decisions, and implement the appropriate controls for achieving and maintaining compliance. It also reduces the cost of compliance by creating a consistent, reliable and auditable process to manage access certification and policy enforcement.

“The compliance burden that global companies face will continue to grow in 2010 through additional industry regulations and stronger enforcement of existing mandates,” said Kevin Cunningham, president and founder of SailPoint. “SailPoint IdentityIQ provides companies with the necessary visibility to better understand the risks associated with user access privileges on sensitive information systems, allowing them to strengthen controls and automate compliance processes across the enterprise.”

Subscribe to our newsletter

Related content

WEBINAR

Recorded Webinar: Are Your Legacy Voice Recordings a Compliance Time Bomb?

Recent enforcement actions underscore the importance of maintaining accurate, secure and up-to-date voice and electronic communication. For some organisations, legacy voice recording systems are not at or beyond end-of-life, posing significant compliance, operational and financial risks. These outdated systems often fail to meet evolving regulatory expectations around data authenticity, retention, and accessibility. Delaying action increases...

BLOG

Centralised Data Management Key to AI Success: Webinar Review

The absence of a centralised data management strategy for artificial intelligence is the biggest hurdle to integrating data from different sources for use with the technology. That was the finding of a survey of capital markets participants at a recent A-Team LIVE webinar “How to Organise, Integrate, and Structure Data for Successful AI”. While expert...

EVENT

Data Management Summit New York City

Now in its 15th year the Data Management Summit NYC brings together the North American data management community to explore how data strategy is evolving to drive business outcomes and speed to market in changing times.

GUIDE

The DORA Implementation Playbook: A Practitioner’s Guide to Demonstrating Resilience Beyond the Deadline

The Digital Operational Resilience Act (DORA) has fundamentally reshaped the European Union’s financial regulatory landscape, with its full application beginning on January 17, 2025. This regulation goes beyond traditional risk management, explicitly acknowledging that digital incidents can threaten the stability of the entire financial system. As the deadline has passed, the focus is now shifting...