City University of Hong Kong is located at the heart of Hong Kong. It’s young, but it has built a strong reputation as a leading centre for research and innovation on the world stage, ranking #4 on a global list of the “Top 50 under 50” universities.
In its fast-growing and wide-ranging academic setting, technology solutions are often added in a piecemeal fashion to solve specific problems in different departments as and when required. But over time, these disparate systems can lead to poor integration and little flexibility across the institution as a whole.
This was a problem that Joe Lee, Assistant IT Manager (IAM) at City University of Hong Kong (CityU), wanted to solve. While the various computing environments were essential to different departments, the demands on 26,000 full-time students and 4,000 staff to manage multiple login credentials for different systems around the university had become too much.
“There are so many user roles at the university,” says Lee. “Researchers, faculties, students, alumni, and even external contractors. The challenge for us is that they could have different entitlements in different systems, which would result in different accounts to remember for access to these applications, which was not an ideal user experience.”
From multiple Active Directory tenancies to Shibboleth SAML and Central Authentication Systems, across over 200 legacy, on-prem and cloud applications and services, CityU struggled to find the best way to unify the governance of its user identity systems into something more effective for user and IT management.
So the mission began to unify identity and access. And CityU turned to Okta to deliver the solution.
With most of the work now completed on CityU’s identity unification project, Lee is exploring future plans for where identity and credential management can go in the university sector.
“We have been working with some other universities to build a blockchain-based credentials platform,” says Lee. “We plan to ensure the level of trust in identity can then become a trusted credential that can work across other institutions. In the long-run, credentials and identity is not just a challenge for institutions like us. It’s a challenge for every single organisation as well, and we hope to be able to solve that with Okta.”