Skip to main content

← Back to glossary

Term · 9. Business Processes & Methodology

Offboarding

IDM/IGA Domain
JML GDPR ISO/IEC OWASP Introduced by: Big4 (Deloitte / PwC / EY / KPMG)

Definition

End-of-lifecycle process when an identity is terminated — disable accounts, revoke entitlements, terminate active sessions, archive credentials, transfer data ownership. Speed of offboarding is a key security metric — orphaned access is a major insider threat vector. Best practice: complete termination within 1 hour of HR event.

Application
MidPoint: Business process that takes place when a person leaves an organization.