Monosign · Identity Intelligence (IVIP)

See who can access what.
Then fix it — same screen.

An Identity Visibility and Intelligence Platform (IVIP) inside your IdP: Monosign correlates every identity you connect — directory, SaaS, federated, human, and machine — into one graph that answers effective access and blast radius, surfaces posture findings, and remediates them with a dry run and an undo.

  • IVIP — Gartner’s newest identity category
  • Effective access + blast radius
  • Sees and fixes, not just reports
What you get

Most IVIP tools report. This one acts.

Identity visibility and intelligence platforms are usually read-only overlays that export findings to a ticket queue. Monosign is the IdP and the IGA — the same platform that sees the problem holds the lever that fixes it.

One graph for every identity

Directory users, SaaS entitlements from connected apps, federated sign-ins, service accounts, AI agents — correlated into one canonical identity, with confidence you can inspect.

  • Human, machine, and agent identities on one graph
  • Automatic correlation with per-link confidence scores
  • Manual link / unlink / re-assign when you know better
  • Interactive Identity Explorer: list and graph views

Effective access and blast radius

Not what someone was granted — what they can actually reach, resolved through every group, role, and permission chain. And the reverse: who can reach this resource.

  • Effective access with the exact “via” path shown
  • Blast-radius analysis for incident response
  • Change-impact preview before you touch a role
  • Scope-aware edges — an “Owner” of what, exactly

Findings that get fixed, not filed

Most visibility tools hand you a list and wish you luck. Monosign owns the control plane — so a finding is one click away from remediation, with a dry run first and an undo after.

  • Orphans, dormant-but-entitled, SoD violations, ownerless agents
  • One-click revoke — single edge, whole account, or bulk
  • Dry-run preview and what-if simulation before action
  • Undo restores what the remediation removed

Ask it in plain language

From “accounts not linked to any identity” to “most-entitled accounts in GitLab” — natural-language questions become deterministic graph queries you can save, schedule, and alert on.

  • Natural-language queries over the identity graph
  • Saved queries with threshold alerts
  • Hand any result set to Access Certification
  • CSV and scheduled report export for audit evidence
How it works

Correlate, explore, remediate.

01

Correlate

Sources flow into the graph and accounts snap to canonical identities — updates land in seconds, at 50k+ user scale.

02

Explore

Trace effective access and blast radius; watch posture KPIs — uncorrelated, dormant, MFA gaps, risky paths.

03

Remediate

Work the findings queue with dry-run, bulk actions, and undo — or let saved queries alert you when drift returns.

Ready to start managing
identities the right way?

Spin up a fully-loaded trial tenant in under five minutes. No credit card. No sales gate.