IGA BC — Aggregate Architecture
Bounded Context: Identity Governance & Administration (Ums.Domain.IGA)
Aggregate Roots: PromotionRequest, RoleMaturityStatus
Governs secure role-to-role promotion, maturity leveling, and automated toxic access risk analyses:
- PromotionRequest (Aggregate Root) — Handles draft creation, manager approvals, risk assessments, security checks, and verified role executions.
- PromotionImpactAnalysis (Owned Entity) — Logs dynamic toxic-permission risk scores and affected systems.
- RoleMaturityStatus (Aggregate Root) — Manages performance thresholds, compliance reviews, certification counters, and promotion-eligibility criteria per role maturity level (Junior $\rightarrow$ Principal).
Back to Domain Index