Salesforce integration
Sync users, roles, and groups from Salesforce to build a complete organizational identity map for access governance and entitlement tracking.
What it connects
- Salesforce users, role hierarchies, and permission profiles that define organizational structure and user authority.
- Public groups and group memberships to understand team assignments and access relationships.
- User metadata including manager relationships, department affiliations, and system access timestamps.
- Complete role hierarchy with parent-child relationships to model reporting structures and escalation paths.
What it automates
- Deactivate users and revoke access when they leave, protecting sensitive accounts from orphaned permissions.
- Assign and remove permission sets to enforce least-privilege access and compliance requirements.
- Add or remove users from groups to dynamically provision and deprovision access as roles change.
- Update user details and reset passwords to maintain accurate identity records and respond to security incidents.
In practice
STLabs syncs your Salesforce user hierarchy and groups, then automatically revokes access when offboarding workflows trigger, preventing former employees from retaining system access.
When a security incident affects a specific user, STLabs updates their status, resets credentials, and removes them from sensitive groups in a coordinated workflow without manual intervention.
Identity governance audits are streamlined by correlating Salesforce roles and permissions with actual access levels, automatically flagging orphaned accounts and excessive privilege assignments.
Team reorganizations are enforced in real time by mirroring Salesforce group changes to access systems, ensuring new team assignments grant the right permissions automatically.