
Unified Identity and Access Management for Manufacturing
A leading automotive manufacturing solutions provider with 70+ years of experience streamlining paint shops and final assembly lines through automation, digital technologies, and machine learning algorithms, holding a 50% market share in the automotive industry.
Industry
- Manufacturing
Service
- Custom Product Development
- Cybersecurity
Company Size
18.000+ employees
Duration
2019 - present
The organisation had authentication and access management issues throughout their product line. Maintaining and optimising legacy technologies proved difficult, and products either lacked identity management or relied on diverse, dedicated security solutions. In addition, fulfilling the rigorous IEC 62443 cybersecurity demands for industrial automation systems was a necessity for them. End users struggled with complex security across multiple file systems, resulting in lost time and reduced efficiency.
Our team built a thorough Unified Identity and Access Management (UIAM) system to centralise authentication and authorisation across all product lines. The solution featured single sign-on with support for multiple protocols (CAS, SAML, OAuth, OpenID Connect), authentication through various sources (LDAP, RDBMS, MongoDB), central user management with role-based permissions, and self-service password management. Built with Spring, Java, and NodeJS, the system is deployed with high availability clustering and Docker on both AWS and on-premises.
The new implementation significantly improved operations, including a 30%+ decrease in manual effort due to automation, a 60% decrease in time and effort for releases, and a 90% decrease in configuration files. By implementing IEC 62443 requirements, the solution improved cybersecurity resilience and increased compliance with ISO 27001, TISAX, and VDA 6.4 standards. These accomplishments helped the client win several industry awards, such as the “Industry 4.0 Innovation Award” 2021 and “The Automotive News PACE Award” 2022.
Project Overview
The project started with a proof-of-concept phase to confirm compatibility with existing systems and to identify any necessary adjustments. Throughout all stages of the SDLC, from POC definition to production deployment, our team of backend developers, frontend engineers, QA specialists, architects, and technical leaders worked closely with the client.
Our method was consultative, with an active engagement in both requirements analysis and the crafting of user stories. Several workshops were held to determine the best way to integrate with current product teams. The project used a hybrid approach, combining Kanban and Scrum events, to manage frequent priority shifts and support platform solutions for seven global teams.
We delivered essential technical components, including a single sign-on solution based on CAS architecture, support for multiple authentication protocols, delegated authentication, a central user management GUI, electronic key authentication, highly available clustered deployments, and a developer library for easy service integration with security API protection.
Results
The UIAM solution achieved unified identity management for the client’s whole product range, getting rid of silos and making user experiences seamless. Single sign-on allowed frontend users to access multiple applications with a single login, greatly improving user experience and administrative efficiency.
The system was flexible enough to integrate with third-party applications, all while maintaining robust security standards. Administration was simplified by role sharing across products, and self-service features lowered support costs. Also, the solution complied with IEC 62443.
As collaboration continues, the UIAM platform will be central to meeting the security and access management needs of the future manufacturing ecosystem.
GET IN TOUCH
0WHAT HAPPENS NEXT?
After you submit a contact form on accesa.eu, one of our representatives will review the information and get back to you in 1-2 business days.
We will then assign a Technical Presales expert to have a deep dive and assess your requirements and objectives.
The Presales expert will work with a bid team and a Software Architect to prepare a high level project estimation and the Sales expert will provide you with a commercial offer.
We will get back to you within 1 to 2 business days. We will also provide a proposed project allocation and start date after a minimum of 15 days from the deep dive session.
Address: Constanta 12, Cluj-Napoca, Romania
Phone number: +4989215485115
