The challenge: manual identity management that couldn’t keep up
Managing user accounts was complicated and time-consuming
Everything was handled manually through spreadsheets and emails
Tracking access rights was unclear and inefficient
All changes had to be processed by the IT department, creating a bottleneck
Delays in granting or revoking access were common
Manual processes were prone to human error and posed security risks
The solution: secure, automated, and user-friendly Wren:IDM
Automated management of users and their access rights
Elimination of manual errors (e.g. duplicate or incorrect entries)
Clear and traceable workflows (HR, approval, and system-level)
A unified, intuitive self-service interface for end users
Direct approval of access requests by supervisors or role/application owners
Transparent reporting of identities and their permissions
Integration with all key systems used by the city: Active Directory, Exchange, E-spis, government systems and more – including manually managed systems and Intranet
Reliable system
“The deployed product met all the requirements and expectations of the Municipal Office. The system is clear and intuitive – users couldn’t ask for anything simpler!“
Excellent collaboration
“Over the past year, working with Orchitech has been the best experience of all our projects. We appreciated the excellent and responsive communication, the flexibility, and the expertise of their well-coordinated team.”
Tangible impact
“The key benefit is significantly faster onboarding of new users and easier assignment and management of access rights based on user roles. This reduces the burden on the IT department and improves user satisfaction.”
— Veronika Kašparová, Head of IT Department, Municipal Office of Zábřeh
Solving the tough problems
The role structure in the HR system didn’t match the legacy access tables, so real access data had to be extracted directly from production environments.
Several systems lacked test environments, so functionality was verified in read-only mode on production instances. Multiple dry-run testing rounds ensured the solution was 100% ready for live deployment.
Invalid HTTP responses from one system were successfully resolved in cooperation with its vendor.