<iframe src="https://www.googletagmanager.com/ns.html?id=GTM-M74D8PB" height="0" width="0" style="display:none;visibility:hidden">
Loading
Skip to NavigationSkip to Main Content
0D51Y00005wD4N3SAKOkta Classic EngineAdministrationAnswered2024-04-15T09:44:01.000Z2019-02-04T21:53:17.000Z2019-03-27T22:17:08.000Z

9zfrk (9zfrk) asked a question.

What is the best industry practice to do with a user's account who has left the organisation?

Hi, what is the best industry practice to do with a user's account who has left the organisation. We disabled his account in AD but his account is still shown in the Okta "People" with Password status - "No Password".

Is deactivating and deleting the expired accounts is the preferred practice or just deactivating 'em is?

TIA


  • GabrielL.85945 (Customer)

    There's no specific answer to this question. There's best practices for data retention and preserving records, as well as for security. An assessment would need to be made for your particular environment and business needs.

     

    However, for security purposes, I suspect at least deactivating the account would be a good idea, even without knowing all the details of your environment and objectives.

    Expand Post
    Selected as Best
  • GabrielL.85945 (Customer)

    There's no specific answer to this question. There's best practices for data retention and preserving records, as well as for security. An assessment would need to be made for your particular environment and business needs.

     

    However, for security purposes, I suspect at least deactivating the account would be a good idea, even without knowing all the details of your environment and objectives.

    Expand Post
    Selected as Best
This question is closed.
Loading
What is the best industry practice to do with a user's account who has left the organisation?