Truth in IT
    • Sign In
    • Register
        • Videos
        • Channels
        • Pages
        • Galleries
        • News
        • Events
        • All
Truth in IT Truth in IT
  • Data Management ▼
    • Converged Infrastructure
    • DevOps
    • Networking
    • Storage
    • Virtualization
  • Cybersecurity ▼
    • Application Security
    • Backup & Recovery
    • Data Security
    • Identity & Access Management (IAM)
    • Zero Trust
    • Compliance & GRC
    • Endpoint Security
  • Cloud ▼
    • Hybrid Cloud
    • Private Cloud
    • Public Cloud
  • Webinar Library
  • TiPs
  • DRAW

Building CI/CD Pipelines for IdentityIQ and IdentityNow

Sailpoint
05/12/2026
0
0 (0%)
Share
  • Comments
  • Download
  • Transcript
Report Like Favorite
  • Share/Embed
  • Email
Link
Embed

Transcript


TL;DR

  • Service containers enable CI/CD pipelines for SailPoint IdentityIQ and IdentityNow without dedicated build servers by leveraging ambient computing resources from developer workstations
  • Three-phase pipeline approach covers pre-deployment testing (linting, syntax, unit tests), automated deployments with Configuration Hub API integration, and post-deployment QA including Selenium-based UI testing
  • GitLab CI/CD implementation demonstrates rule validation, transform testing, and automated deployment to IdentityNow tenants with environment-specific variables and JUnit test reporting
  • IdentityNow event triggers enable self-managing Git repositories where UI changes automatically export configuration back to source control, maintaining synchronization between environments
  • Visual Studio Code dev containers provide standardized development environments with pre-configured tools and secrets, reducing developer onboarding time to two minutes while supporting distributed pipeline execution

Service Container Architecture for IAM Deployments

This technical session demonstrates how to implement CI/CD pipelines for SailPoint IdentityIQ and IdentityNow using containerized service architectures. Zach Adams from Instrumental Identity presents a three-phase pipeline approach encompassing pre-deployment testing (linting, syntax checks, unit testing), automated deployments with reverse tokenization, and post-deployment QA including UI testing with Selenium. The architecture leverages ambient computing resources from developer workstations rather than dedicated build servers, addressing common organizational constraints around hardware availability and cost. The solution uses YAML-based pipeline definitions that work across GitLab, Jenkins, Azure DevOps, and GitHub, with container registries built into source control platforms for image management.

Practical Implementation with GitLab and Configuration Hub

The demonstration showcases a working GitLab CI/CD pipeline that validates rules, tests transforms, and deploys configuration objects to IdentityNow tenants using Configuration Hub APIs. Key features include environment-specific variable management, JUnit test reporting for validation results, automated badge generation for repository health visibility, and event trigger integration that enables IdentityNow to manage its own Git repository through UI-driven changes. The pipeline handles connectivity testing, rule validation against SailPoint's cloud rule requirements, transform unit testing with given/expected value pairs, and workflow validation. Deployment artifacts are tracked with timestamped backups in Configuration Hub, providing auditable deployment records without manual intervention.

Developer Experience with Visual Studio Code Dev Containers

Beyond pipeline automation, the service container approach extends to local development environments through Visual Studio Code's dev containers feature. Developers can reopen projects inside the service container image, gaining immediate access to pre-configured tools, embedded secrets, and standardized extensions like the IdentityNow VS Code extension with tenants already connected. This eliminates environment setup friction for new team members, reducing onboarding time to approximately two minutes. The containerized development environment ensures consistency across the team, prevents secret sharing via email, and enables developers to run pipeline tools ad hoc through a text user interface or direct Python script execution. This approach supports edge computing models where developer workstations serve as distributed pipeline runners, providing high availability without dedicated infrastructure.

Chapters

0:00 - Introduction and Speaker Background
0:38 - Client Experience and Common Challenges
4:51 - Three-Phase Pipeline Architecture
20:47 - IdentityNow Pipeline Requirements
21:59 - Live GitLab CI/CD Demo
43:34 - Configuration Hub Integration
46:41 - Event Triggers and Git Automation
48:46 - Visual Studio Code Dev Containers
53:14 - Closing and Q&A

Key Quotes

1:51 "... everybody wants a pipeline. Everybody has a dream state, either in their leadership's head or actually in their project management board ..."
3:00 "... with build servers and containerization, as you'll see here today, you don't need to have large data centers of IaaS hardware in order to run a build server. In fact, you can use ambient resources ..."
4:03 "The thing about pipelines and CICD pipelines in general is that they're all written in YAML. It doesn't matter if you're using Jenkins or GitLab or GitHub, it's all YAML underneath the hood ..."
45:02 "Since you can do all the testing from within the container itself, you don't have to worry about messing up with somebody else's code, whether that be in production whenever it's actually going live or even in dev ..."
47:18 "IdentityNow is managing its own project at this point. You're just making changes within the UI ..."
52:14 "... if you had a new developer onboarding, it's literally a two-minute setup time and they can get going ..."

Categories:
  • » Cybersecurity » Application Security
  • » Data Protection
Channels:
News:
Events:
Tags:
  • Identity & Access
  • DevSecOps
  • Technical Deep Dive
  • Demo
  • Best Practices
  • CI
  • CD Pipelines
  • Service Containers
  • IdentityNow Automation
  • IdentityIQ DevOps
  • Configuration Hub API
  • GitLab CI
  • CD
  • Visual Studio Code Dev Containers
  • IAM Deployment Automation
Show more Show less

Browse videos

  • Related
  • Featured
  • By date
  • Most viewed
  • Top rated
  •  

              Video's comments: Building CI/CD Pipelines for IdentityIQ and IdentityNow

              Upcoming Webinar Calendar

              • 05/12/2026
                11:30 PM
                05/12/2026
                Implementing Effective Strategies for Active Directory Security and Data Protection
                https://www.truthinit.com/index.php/channel/1888/implementing-effective-strategies-for-active-directory-security-and-data-protection/
              • 05/13/2026
                01:00 AM
                05/13/2026
                Transforming the Black Box: Reveal Hidden Threats and AI Risks through Data Lineage
                https://www.truthinit.com/index.php/channel/1890/transforming-the-black-box-reveal-hidden-threats-and-ai-risks-through-data-lineage/
              • 05/13/2026
                05:00 AM
                05/13/2026
                Transforming the Black Box: Revealing AI Risks and Hidden Threats through Data Lineage
                https://www.truthinit.com/index.php/channel/1894/transforming-the-black-box-revealing-ai-risks-and-hidden-threats-through-data-lineage/
              • 05/19/2026
                01:00 PM
                05/19/2026
                Establishing a Robust AI Governance Framework for GenAI Throughout Deployment Phases
                https://www.truthinit.com/index.php/channel/1936/establishing-a-robust-ai-governance-framework-for-genai-throughout-deployment-phases/
              • 05/20/2026
                08:00 AM
                05/20/2026
                Establishing a Robust AI Governance Framework for GenAI Throughout Its Lifecycle
                https://www.truthinit.com/index.php/channel/1937/establishing-a-robust-ai-governance-framework-for-genai-throughout-its-lifecycle/
              • 05/20/2026
                10:00 PM
                05/20/2026
                Establishing a Robust AI Governance Framework for GenAI Throughout Its Lifecycle
                https://www.truthinit.com/index.php/channel/1953/establishing-a-robust-ai-governance-framework-for-genai-throughout-its-lifecycle/
              • 05/21/2026
                11:00 AM
                05/21/2026
                The Autonomous Era: Orchestrating a Resilient Enterprise
                https://www.truthinit.com/index.php/channel/1372/the-autonomous-era-orchestrating-a-resilient-enterprise/
              • 05/27/2026
                04:00 AM
                05/27/2026
                Rivoluziona i rischi dell'AI in opportunità con Netskope AI Security
                https://www.truthinit.com/index.php/channel/1925/rivoluziona-i-rischi-dellai-in-opportunità-con-netskope-ai-security/
              • 05/27/2026
                10:00 AM
                05/27/2026
                Adopting AI: From Illusion to Intentional Control
                https://www.truthinit.com/index.php/channel/1924/harnessing-ai-transitioning-from-illusion-to-purposeful-mastery/
              • 05/28/2026
                01:00 PM
                05/28/2026
                Harnessing AI for Smaller Teams: Strategies for Secure Implementation
                https://www.truthinit.com/index.php/channel/1951/harnessing-ai-for-smaller-teams-strategies-for-secure-implementation/
              • 06/02/2026
                01:00 PM
                06/02/2026
                Spring of Satori: Delving into Recent Findings and the 2026 Threat Landscape
                https://www.truthinit.com/index.php/channel/1930/spring-of-satori-delving-into-recent-findings-and-the-2026-threat-landscape/
              • 06/04/2026
                02:00 AM
                06/04/2026
                Mastering the Unseen: Managing Shadow AI and Agentic MCP Traffic
                https://www.truthinit.com/index.php/channel/1948/mastering-the-unseen-managing-shadow-ai-and-agentic-mcp-traffic/
              • 06/16/2026
                07:00 AM
                06/16/2026
                Transforming Data Risk into Actionable Priorities: Essential Fixes First
                https://www.truthinit.com/index.php/channel/1952/transforming-data-risk-into-actionable-priorities-essential-fixes-first/

              Upcoming Events

              • May
                12

                Implementing Effective Strategies for Active Directory Security and Data Protection

                05/12/202611:30 PM ET
                • May
                  13

                  Transforming the Black Box: Reveal Hidden Threats and AI Risks through Data Lineage

                  05/13/202601:00 AM ET
                  • May
                    13

                    Transforming the Black Box: Revealing AI Risks and Hidden Threats through Data Lineage

                    05/13/202605:00 AM ET
                    • May
                      19

                      Establishing a Robust AI Governance Framework for GenAI Throughout Deployment Phases

                      05/19/202601:00 PM ET
                      • May
                        20

                        Establishing a Robust AI Governance Framework for GenAI Throughout Its Lifecycle

                        05/20/202608:00 AM ET
                        More events
                        Truth in IT
                        • Sponsor
                        • About Us
                        • Terms of Service
                        • Privacy Policy
                        • Contact Us
                        • Preference Management
                        Desktop version
                        Standard version