Blog
New in Identity Security Cloud: Data segmentation for human identities
Author
jerryaubel12
SailPoint
For organizations with complex structures, managing exactly who can see what is a critical security and privacy challenge. Today, we're excited to announce that SailPoint has expanded data segmentation to include human identities.
This new capability provides a programmatic method to restrict access to core identity security data. Now, administrators can ensure that users only see the specific identity records they are explicitly authorized to access in all suites in Identity Security Cloud, enforcing the principle of least privilege and significantly reducing privacy risks.
The challenge of global identity access
Historically, managing administrative visibility across the enterprise brought unique challenges:
- The "all or nothing" visibility gap: Customers often have privileged, need-to-know information within their environments. Previously, when a user was granted access in the Identity Security Cloud user interface, they were granted visibility into all identities globally across the platform.
- Delegated administration roadblocks: Consider a large conglomerate that wants to delegate identity administration to smaller teams managing distinct subsidiaries (e.g., Company 1 and Company 2). The central conglomerate team needs global access, but the administrators for Company 1 and 2 shouldn't be able to see each other's configurations.
The solution: Granular control for complex organizations
To solve these complex visibility issues, SailPoint's extended data segmentation now provides a targeted, programmatic method for restricting human identities to only the users who need to access them.
This segmentation ensures that users can only see authorized human identities, everything outside their designated segment is hidden from view. Organization admins now have multiple, flexible options for defining data segments that align with their organizational structure and business requirements.
Key Takeaways:
- Enforce least privilege: Granular access controls ensure users only access the data they need to do their jobs.
- Enhance data privacy: Protect sensitive identity information from unauthorized internal viewing.
- Empower distributed teams: Delegate administration to regional or subsidiary teams without compromising your global security boundaries.
Sandbox deployment begins Aug 11, 2026
Production deployment begins week of Aug 18, 2026