Skip to main content

← Back to glossary

Term · 13. Additional Terms

Role Assignment RA

IDM/IGA Domain

Definition

Specific instance of assigning a role to an identity — captures who, when, why, with what expiration. Direct (manually requested) or derived (HR policy → role mapping). Modern best practice: derived assignments via policies for scale, direct assignments tracked as exceptions requiring justification.

Application
Audit-tracked in IGA platforms: every assignment captures requester, approver, justification, timestamp, expiration. Foundation for SOX, SOC 2, HIPAA audit evidence.