Permanent Revocation of Application Access
Triggering Scenarios (The Why)
Definitive, end-of-lifecycle events where trust is fully terminated:
Employee Termination: When an employee or contractor is terminated, their access to all applications must be immediately and permanently revoked as part of the off-boarding process to eliminate insider threat risk.
End of Vendor/Partner Contract: A non-employee entity (e.g., a service account or vendor user) reaches the end of its authorized contract period.
Key Characteristics (The What)
Final & Irreversible (for that identity): Access is terminated across the entire AAM platform.
Driven by HR Events: Typically triggered by an official change in Human Resources status.
Granted Privilege Enforcement: Ensures that access is not retained long after the job function or contract requires it.

