Securing Identity at Scale For a Global Manufacturer With Saviynt
“SPG showed all round experience in the platform and in specific areas where we needed more focussed skills to support our delivery, they have worked to develop both their people and ours. I would definitely work with them again.”
— Transformation Programme Director
The Challenge
Our client is a global leader in sustainable metal and glass packaging, operating across multiple regions with a complex IT landscape and stringent compliance obligations. With rising pressure from internal audit, SOX regulators, and operational risk stakeholders, the client needed to transform its identity and access management (IAM) capabilities to ensure visibility, control, and governance across a fragmented estate.
Despite previous investments, key risks persisted:
Fragmented identity lifecycle and inconsistent provisioning across systems.
Inadequate role-based access controls, especially in SAP environments.
Limited visibility into privileged access, elevating operational and compliance risk.
Technical debt and platform instability inherited from earlier delivery phases.
Facing multiple audit windows and internal restructuring, the client sought a partner to stabilise, recover, and scale the Saviynt platform, and chose SPG.
Our Approach
SPG was engaged to deliver a full-spectrum turnaround of the Identity Governance (IGA) programme - stabilising delivery, establishing operational confidence, and preparing for scale.
We:
Conducted a full solution health check and led a comprehensive remediation programme across environments.
Supported complex role modelling, SoD policy configuration, and access automation.
Delivered application onboarding through our tried-and-trusted framework approach
Introduced a managed service layer to proactively monitor, triage and resolve platform and access-related incidents.
Partnered with the in-house BAU team through shadowing, back-shadowing and technical handover.
The Results
🟣 Successful onboarding of business-critical applications within a stabilised, SOX-auditable platform
🟣 Resilient managed service model with measurable SLAs and proactive incident management
🟣 Privileged Access Management design for key administrative accounts, improving privileged access governance
🟣 A repeatable, scalable onboarding framework enabling faster delivery of future applications
🟣 Transition plan in place to support the internal team with full platform ownership and roadmap continuity