Soffid Identity Governance Administration (IGA) manages identities from account creation through changes and removal. It automates those lifecycle tasks for internal and external users, as well as non-human identities such as applications, APIs, and services. Governance tools cover access requests, approvals, access policies, role-based controls, least privilege, and segregation of duties. Certification and recertification workflows, campaigns, and audit trails support periodic review and record identity-related actions. Soffid describes pre-built connectors for directories such as AD and Azure AD/Entra, cloud apps, and HR systems, alongside a framework for custom integrations; its JSON REST connector examples include Jira, Office 365, AWS, Google Cloud, and Oracle Field Service Cloud. Customers can deploy IGA on their own servers or use a cloud-based solution. Soffid names government, banking and financial services, and healthcare among the industries served, and cites GDPR and SOX among the regulations addressed. Pricing is on request. Binary components are free with registration, while source code downloads do not require registration. Ongoing governance ownership is needed after go-live for campaigns, exception reviews, and role maintenance.
Who it is for
Soffid IGA suits organizations managing employee, external, and service identities that need access reviews and lifecycle automation. It is aimed at sectors including government, financial services, and healthcare.
What is good
- Automates identity account creation, modification, and deletion.
- Supports access requests, approvals, and certification campaigns.
- Manages human and non-human identities.
- Offers self-hosted or cloud deployment.
- Free binary components; source downloads need no registration.
What to know first
- Pricing is available on request.
- Governance campaigns and role maintenance need ongoing ownership.
- Binary downloads require registration.
Freedom251 review
Soffid Identity Governance Administration: the full review
Soffid IGA brings provisioning and access governance into one product, with support for multiple identity types and deployment approaches. Organizations should plan for continuing governance work after launch and request pricing directly.
Overview
Soffid Identity Governance Administration (IGA) combines account lifecycle automation with controls for requesting, approving, and reviewing access. It is best suited to organizations managing employees, external users, and service identities that can dedicate people to ongoing governance. Its breadth is useful, but certification campaigns and role upkeep remain continuing responsibilities after launch.
Government, banking and financial services, and healthcare are among the industries Soffid serves. It names GDPR and SOX among the regulations its identity-management capabilities address and states that it holds ENS High and Common Criteria EAL2 + ALC CCL certifications for identity management.
Compare other options in Identity Governance Software.
Key features
IGA automates account creation, modification, and deletion, then adds access requests, approval workflows, certification campaigns, and audit trails. This joins the operational work of changing accounts with processes for deciding and checking who should retain access.
- Access controls: Role-based access control, least privilege, IAM policies, and segregation of duties help organizations define permitted access and address conflicting permissions.
- Certifications and audit: Access certification and recertification workflows support periodic reviews; records of identity-related actions give auditors a trail to examine.
- Multiple identity types: The system covers internal and external users, as well as non-human identities such as applications, APIs, and services. That wider scope suits organizations whose access risks extend beyond employee accounts.
- Connectors: Soffid describes pre-built connectors for directories such as AD and Azure AD/Entra, cloud apps, and HR systems, plus a framework for custom integrations. Its JSON REST connector documentation gives Jira, Office 365, AWS, Google Cloud, and Oracle Field Service Cloud as examples.
- Deployment choice: Organizations can deploy IGA on their own servers or as a cloud-based solution, allowing a choice between customer-hosted and cloud deployment.
Governance is not a set-and-forget feature: Soffid says certification campaigns, exception reviews, and role maintenance need ongoing ownership after go-live. Organizations without capacity for that work may not realize the intended value of the controls.
Pricing
Soffid’s pricing model is paid, with custom pricing for the IGA product. The free plan is called Open-source binary components and costs 0.00 USD per free. Binary downloads are free with registration; source code downloads require no registration. These downloads provide a way to obtain components, but the plan price alone does not establish that the full IGA service is included at no cost.
A free trial is offered for Soffid’s IDaaS converged IAM platform, but no trial duration is stated. Organizations evaluating IGA should request pricing directly and clarify the commercial scope that matches their deployment and governance needs.
Platforms
Soffid supports API, Linux, self-hosted, web, and Windows. Its Enterprise Single Sign-On download description says desktop access control is available for Linux and Windows. That desktop detail is specifically about Enterprise Single Sign-On, rather than a claim about every IGA function.
Who it's for
Soffid is a strong fit for organizations that need lifecycle automation and formal access governance across people and non-human identities, particularly in government, financial services, or healthcare. The deployment choice, connector options, and stated certifications may matter to teams with varied environments and compliance responsibilities.
It is a weaker fit for organizations seeking a low-touch governance deployment. Access reviews, exception handling, and role maintenance require an ongoing owner, so teams should account for that operational commitment alongside implementation.
Pros and cons
- Pro: Governance and provisioning are combined. Automated account changes sit alongside requests, approvals, certifications, and audit trails, connecting access decisions with lifecycle work.
- Pro: Broad identity coverage. Support for external and non-human identities extends governance beyond internal employee accounts.
- Pro: Flexible integration and deployment options. Pre-built and custom integration routes plus customer-hosted or cloud deployment can accommodate different environments.
- Con: Governance needs ongoing staffing. Campaigns, exceptions, and role maintenance continue after launch and cannot be treated as one-time setup tasks.
- Con: IGA pricing requires a direct request. Organizations cannot compare a published IGA price against their budget without discussing requirements with Soffid.
Alternatives
- Corma is worth considering for teams seeking a freemium option with a free plan covering identity-provider connection, a browser extension, SSO connection, and 10 apps; its Essential plan is 3.00 EUR per month billed annually.
- Oracle Cloud Infrastructure Secret Management is a free alternative focused on secret management, with 5,000 secrets per tenancy and 30 active secret versions per secret.
- Evolveum midPoint is another free identity-governance option.
- SailPoint IdentityIQ is a paid alternative available across Android, iOS, API, self-hosted, and web platforms, with a term subscription typically contracted for three years and billed annually upfront.
- Saviynt Enterprise Identity Cloud offers paid Essentials and Pro plans; Pro adds identity security posture management to Essentials.
- ConductorOne offers paid flex pricing based on C1 Tokens consumed by billable events, as well as a platform pricing option.
- EmpowerID Identity Governance offers paid modular licensing for on-premises or SaaS, with most modules licensed per non-deleted managed human person.
- Omada Identity Cloud is a paid option that includes unlimited connected systems, data storage, and traffic, plus 99.9% availability and 24/7/365 support.
Verdict
Choose Soffid IGA if your organization wants lifecycle automation and access governance across users and service identities, and can sustain the reviews and role maintenance those controls require. Its combination of identity coverage, integrations, and deployment choice is compelling; look elsewhere if you need a low-maintenance governance program or a published IGA price before engaging a vendor.
Soffid Identity Governance Administration plans and pricing
All plansCompared on identity governance software
- Free plan
- No
- Access requests
- Yes
- Access certifications
- Yes
- Lifecycle automation
- Yes
- SoD controls
- Yes
- Deployment
- hybrid




