12 September 2025

SailPoint: MCP (Model Context Protocol) Server update

SailPoint has just introduced the MCP (Model Context Protocol) Server, and this could be a game changer for how we handle access requests. In short, the MCP Server acts as a standardised bridge between AI applications and SailPoint’s Identity Security Cloud (ISC). Instead of needing heavy custom integration or multiple request centers, it gives you a ready-made interface to connect AI tools directly into SailPoint. That means access requests can finally become as simple as asking an assistant in plain language, without dropping enterprise security standards.

 

Key Benefits:

  • Quick Integration: quickly connect AI applications to SailPoint in 5-15 minutes without complex custom development.
  • Natural Language Processing: Enable conversational access request at scale.
  • Future-Proof Architecture: Built on MCP standard and regular updates to ensure compatibility with emerging AI platforms and security.
  • Enterprise-grade: Maintains SailPoint’s proven IAM expertise and enterprise-grade scalability and security.

Getting Started:

  • SailPoint Identity Security Cloud access is required.
  • Choose integration approach based on technical requirements.
  • Setup authentication following provided guides (coming soon).
  • Begin building AI-powered access management experiences

Important Dates:

  • General Availability: Sept 29, 2025
  • Integration Documentation: Sept 29, 2025
  • Expanded Toolkit: 6-12 months post-GA for expanded MCP tools

Dive Deeper



9 September 2025

SailPoint: A new capability in Identity Security Cloud

SailPoint has introduced a new capability in Identity Security Cloud: the option to automatically delete accounts when an identity is terminated

 

Why This Matters

  • Many customers need more than just disabling accounts
  • Until now, this required custom rules (BeforeProvisioning), which slowed projects and added overhead

 

What Has Changed

  • Admins can now configure Lifecycle States to delete accounts (not just enable/disable)
  • All deletes are audited, so you know who did what, when, and on which system
  • For disconnected systems, SailPoint creates a manual task and sends a notification

 

Timelines

  • Sandbox rollout: Sept 15, 2025
  • Production rollout: Week of Sept 22, 2025

 

Full details available here



22 August 2025

SailPoint Identity Security Cloud – New Updates

Key Highlights from this latest release:

 

  • BeyondTrust Password Safe On-Premise Integration: Identity Security Cloud now supports the BeyondTrust Password Safe (On-Premise) credential provider for Secrets Management. This enables credential cycling directly from BeyondTrust, providing stronger security and streamlined password management

 

  • Workflows – Execution Playback: 
    A new execution playback feature has been introduced for Workflows. Administrators can now “playback” workflow execution logs in the same format as Test Workflow, viewing input/output data step by step. Even if the workflow has been modified since execution, playback restores the original configuration for accurate review and troubleshooting

 

For the full release notes, visit: https://community.sailpoint.com/t5/SaaS-Release-Notes/tkb-p/saas-release-notes



25 July 2025

SailPoint: Identity Security Cloud Production release notes

Product and Feature enchacements:

 

Machine Identity Security:

  • Users can now opt out of the Machine Account Discovery feature by disabling it on the System Features page.

Connectivity – Jack Henry:

  • The Jack Henry connector now supports Symitar 2024.

Connectivity – Snowflake:

  • The Snowflake Connector can now aggregate database roles as entitlements. It can also assign and revoke database roles at the account level.

Identity Security Cloud – Core Access Model:

  • Standard criteria for role assignments have been enhanced as follows to provide an improved administrative experience and greater flexibility in assigning roles:
    • A Does Not Contain operator has been added for Identity and Account attribute expressions.
    • The ability to compare against a list of values in a single criteria statement has been added. For example, you could evaluate if a user’s department is EQUAL to Accounting, Finance, or Accounts Payable in a single statement.
    • The >, >=, <, and <= numeric operations have been added to account attribute expressions.
    • Issues with boolean comparisons evaluating null values as FALSE have been resolved.

 

Fixes:

 

Identity Security Cloud – Core Access Model (SAASTRIAGE-8724):

  • Fixed an issue where source attributes were not displaying on the Entitlement Details page.

Connectivity – Active Directory(CONETN-5109):

  • The Active Directory connector no longer throws an error when using a gMSA account if the same service account is being used for multi-domain or multi-forest configurations.

 

Further details available from the Compass Community site here: SaaS Release Notes – Compass