Automate User Lifecycle Management

Sync users and groups from your identity provider with SCIM 2.0. Automate onboarding, offboarding, and role changes.

The Problem

Manual onboarding and offboarding means stale accounts linger for weeks. Former employees retain access they should not have.

IT admins spend hours per week manually provisioning accounts across tools. Every new hire is a multi-step process.

Audit findings flag orphaned accounts and inconsistent group memberships. Compliance risk grows with every manual process.

How It Works

1

Connect Your IdP

Configure SCIM 2.0 with your identity provider — Okta, Azure AD, Google Workspace, or any SCIM-compatible system.

2

Generate SCIM Token

Create a secure SCIM bearer token in citk settings. Paste it into your IdP configuration.

3

Map Groups

Map IdP groups to citk directories and roles. Group membership changes sync automatically.

4

Automate Lifecycle

New users are provisioned instantly. Departing users are de-provisioned when removed from your IdP. Zero manual effort.

Built For

IT Admins

Zero-touch user provisioning. No more manual account creation or removal.

Security Teams

Instant de-provisioning when employees leave. No stale accounts.

Compliance Officers

Automated evidence that access follows your identity provider as the source of truth.

Back to all features

Ready to modernize your change management?

Get started for free or book a personalized demo.