IGA should not be a project

Identity governance for Microsoft Entra ID and Active Directory

When someone joins, changes roles, or leaves your company, Adcyma creates their accounts, assigns the right access, and removes it when they go. With the audit trail to prove it.

No consultantsNo six-month implementationFree up to 25 users
Adcyma offboarding workflow: disable account, revoke sessions, convert mailbox, delete user
SOC 2 ReadyGDPR CompliantISO 27001 ReadyNIS2 ComplianceBuilt in Sweden & Hosted in Europe

We think IGA got too complicated.

Identity governance was supposed to answer four questions.

01

Who is this person?

AW
Alex Wilber
Marketing Assistant · Marketing
SourceHR system
02

What should they have access to?

Microsoft 365Marketing-SGSharePoint · MarketingFinance-SG
From roleMarketing Assistant
03

When should that access disappear?

MAR05
Employee leaving
Disable, revoke sessions, log
TriggerEnd date from HR
04

Can we prove it happened?

08:47:02account disabled
08:47:03sessions revoked
08:47:05groups removed (3)
Audit logExport

Somewhere along the way, that became a six-month project. It should be boring.

Read why
Our take

Workshops. A forty-page requirements document. Consultants who leave before the first leaver is automatically disabled.

We do not think that is necessary. IGA should be reliable, understandable, running in days. That is what we built.

What is identity governance?

Identity governance (IGA) means controlling who in your company has access to which systems, and being able to prove it. In practice: accounts are created when people start, access changes when they change jobs, everything is removed when they leave, and there is a log an auditor can read. Most companies handle this with tickets, PowerShell scripts and someone's memory. It works until that person is on holiday, or until the auditor asks. Adcyma does it automatically, across Active Directory and Microsoft Entra ID (formerly Azure AD).

Read the guide to identity governance for Entra ID

Automatic onboarding, role changes, and offboarding

Works across Active Directory and Microsoft Entra ID. Hybrid included, because hybrid is what most companies actually run.

Adcyma offboarding workflow with disable, revoke and delete steps

Access governance

Requests, approvals, access reviews, certifications, and the evidence for all of it.

Dynamic groups

Group membership in Entra ID, Active Directory and Exchange follows rules, not tickets.

Audit evidence

An auditor should not need screenshots from five systems. When the audit comes, you export instead of reconstruct.

Let your AI agent ask, not change.

AI agents increasingly need identity data. Giving an agent Graph admin permissions to find out is a bad trade.

Adcyma's MCP server gives agents governed, read-only answers instead. Agents can ask, not change.

About Adcyma MCP
$ Who still has access after leaving?
$ Which admins have not been reviewed?
$ Where is the evidence for this control?
$ _

Frequently asked questions

Adcyma automates the identity lifecycle in Microsoft Entra ID and Active Directory. Accounts and access are created when someone joins, updated when they change roles, and removed when they leave. It also runs access reviews and collects audit evidence.

Yes. Adcyma manages identities across on-premises Active Directory and Microsoft Entra ID, including hybrid setups where both are in use.

Days, not months. Adcyma is designed for self-service deployment by your own IT team. No consultants or implementation project required.

Those platforms were designed for a world of on-premises applications, implementation partners and year-long rollouts, and they are priced and staffed accordingly. Adcyma is built for companies running on Microsoft Entra ID and Active Directory. It covers what identity governance is actually for: onboarding, role changes, offboarding, and proving it with access reviews and audit evidence. Your own IT team deploys it in days, and you pay per user rather than per project.

From €1.50 per user per month. Free for up to 25 users. No setup fees or hidden costs.

Adcyma is built to support NIS2 access-control requirements and produces audit evidence usable for ISO 27001 controls. It does not make you compliant on its own; no tool does.

Yes, through Adcyma's read-only MCP server. Agents get governed answers about identity and access without being granted write permissions in your tenant.

From €1.50 per user per month

Free up to 25 users. No setup fee, no credit card, no consultant, no "contact sales".

Start Free Trial
  • Automatic onboarding, role changes and offboarding
  • Access reviews and audit evidence
  • Active Directory, Entra ID and hybrid
  • Live in days, not months