IT

Access request and provisioning

System access requests depend on manager and system-owner approval, but provisioning and verification are not consistently audited.

Business problem

System access requests depend on manager and system-owner approval, but provisioning and verification are not consistently audited.

What teams see

  • Work waits between submit access request and validate employment status.
  • Owners reconstruct status from Web forms and Identity provider.

Why it happens

  • No shared state spans Web forms, Identity provider, Jira.
  • Decision and exception rules are applied inconsistently.

Why it becomes expensive

  • Capacity is consumed by coordination and rework.
  • Late exceptions weaken visibility and service quality.

Business outcomes

  • Shorter record audit cycle
  • Fewer handoff and missing-information exceptions
  • Clear ownership from submit access request to record audit
  • Inspectable decisions and recovery

Measurable KPIs

  • Turnaround time: Elapsed time from submit access request to record audit.
  • Manual intervention rate: Share of items needing a person outside defined review conditions.
  • Exception age: Time unresolved exceptions remain without a completed action.
  • Successful completion rate: Share of valid workflow items completing without terminal failure.

How the workflow works

  1. Submit access request — Accept and identify the access request and provisioning trigger. Web forms
  2. Validate employment status — Execute validate employment status with validated sample data and an auditable result. Web forms
  3. Check requested role — Execute check requested role with validated sample data and an auditable result. Identity provider
  4. Manager approval — Execute manager approval with validated sample data and an auditable result. SEIDO Review Queue
  5. System owner approval — Execute system owner approval with validated sample data and an auditable result. SEIDO Review Queue
  6. Provision access — Execute provision access with validated sample data and an auditable result. Identity provider
  7. Verify entitlement — Execute verify entitlement with validated sample data and an auditable result. Jira
  8. Record audit — Execute record audit with validated sample data and an auditable result. Web forms
  9. Audit and KPI update — Persist the execution outcome, audit facts and workflow measurement events. SEIDO execution store

Integrations and ownership

  • Web forms: Provide workflow input
  • Identity provider: Lookup and update context
  • Jira: Receive controlled outcome

Human responsibility: IT service owner

Failure and recovery

Web forms is temporarily unavailable.

Retry with capped exponential backoff; preserve the run and move it to the inspectable failure queue after the limit.

Required data for validate employment status is malformed or missing.

Stop downstream actions and show the missing fields, source evidence and correction action to the named reviewer.

The trigger or provider event is delivered more than once.

Return the existing execution identified by the idempotency key and do not repeat downstream business actions.

The human decision expires before completion.

Escalate to the configured substitute, retain the original request and record both expiry and reassignment.

When not to build this

  • Monthly volume is too low to justify integrating Web forms, Identity provider, Jira.
  • An existing configured platform already handles access request and provisioning with adequate ownership and reporting.
  • Reliable source data or supported API access is unavailable.
  • No business owner has authority to define the decision and exception rules.

Related workflows