IT security teams can deliver tangible benefit to their organisations through identity management. The on-boarding of new users and the access rights and privileges that they receive through the time of their employment is a fundamental requirement for all organisations. How well this is managed directly impacts the control IT security teams have over their environment and how efficient IT staff are within an organisation. Immature identity management systems mean that skilled IT staff are performing repetitive functions and making decisions about user privilege that is best left of business owners. This live demo dominated session will give insight into the methodologies and tools used to optimise identity management. A large portion of the session will show mechanisms to allow new users to be provisioned into an Active Directory environment based on business rules and workflow and how these new users can be set up to self manage groups and distribution lists. There will also be a demonstration of tools to allow self service attribute changes and self service reset of passwords. A large portion of this session will deal with managing identities within an Active Directory world, but time will be spent on tools to allow integration of AD attributes to other major directory and database platforms.