Identity & Access
One identity for every person your business deals with — and precise control over what each one can do.
Identity & Access is how ABS knows who someone is and decides what they're allowed to do. Every contact — customer, employee, partner, or guest — authenticates through one identity model, and every action is authorized and auditable. It's the capability the whole platform leans on, so isolation between tenants and least-privilege access are foundational, not add-ons.
This is about access, not proof. Proving that a document or action is authentic and tamper-evident is a separate capability — see Trust & Compliance.
What you can do
- Sign people in with passwords, multi-factor authentication, and federated or social identity providers.
- Authorize precisely with roles, groups, and fine-grained permissions — grant least privilege and share access safely.
- Federate with your directory through OAuth/OIDC and SAML, so existing corporate identities work out of the box.
- Scope everything to a tenant, so one identity model cleanly serves many organizations.
- Audit access — keep a trail of who signed in and what they changed.
Modules that deliver it
| Module | What it does |
|---|---|
| IAM | Users, roles, groups, and central access management |
| Security | Tenant access, permissions, and security & audit logs |
Built on the Alliance Passport Service (APS) foundation. To build on it, see Web API development.