What it looks like today
- · Security receives the audit request on Monday.
- · Engineer writes a Python script against the IdP API.
- · A second script reads the SaaS admin APIs one at a time.
- · A third joins the results on email address in a spreadsheet.
- · Repeats for every system in scope. Two weeks pass.
- · Six months later, the same audit comes around and the scripts have bit-rotted.
- Two weeks. Three engineers. One audit. Then the cycle repeats.