
mpnpc (mpnpc) asked a question.
For identity governance, it looks like the functionality only enables access certifications for users and what application they have access to (resource). It doesn't look like it allows for the access certification to include the access permission/role that the user has within the application. I don't see any fields for the role and role description. Can someone confirm?

@mpnpc (mpnpc)
"Entitlements" are available but it is currently limited to a small subset of applications. Take a look at:
https://help.okta.com/oie/en-us/Content/Topics/identity-governance/access-certification/iga-ac-review-campaign.htm?cshid=csh-review-bp-reviewers#bp_reviewers
For all other applications the tool is essentially for monitoring assignment/usage, and having the option to remove them from the app.
The Okta Identity Governance (OIG) product is still fairly new, there is loads of work being done on it to improve and expand its capabilities. I suggest leveraging the https://ideas.okta.com to post a feature request. Make sure that the request is extremely detailed and clear on the ask. Like: This is what it does now (example). Here is what we would like to see (example mockup). The Ideas forum is heavily leveraged by the OIG & Workflows PM/Dev teams (I cannot speak for other groups as I don't have direct exposure to them but I am assuming its true there also).