Identity and access management
Join, move, leave. Who you are, how you prove it, what you may do, and how that ends when the job does.
IAM is how an organisation grants or refuses authorisation to systems. Unique identities, authentication, roles, joiner-mover-leaver, privileged access, and logs of who proved what.
Most incidents still start with a stolen or over-privileged identity. Service accounts and OAuth grants are identities too. They outlive the project that created them unless someone owns the inventory.
Build the process before you buy another dashboard. A tool cannot join and leave people you have not listed.
Fact source: ASD's ACSC glossary. Wording is Cyberstack's.
