Closing the Completeness & Accuracy Gap
Fortune 500 Bank transformed its Completeness and Accuracy program with Twine’s AI Digital Employee, Alex.
The financial institution had invested in enterprise identity governance tools to manage access at scale, but when it came to Completeness and Accuracy (C&N), it wasn't enough.
Each quarter, the IAM team spent weeks chasing application owners, reconciling account data, and escalating to a leadership who had no idea. Evidence was thin, remediation lagged, and auditors kept finding the same gaps.
Why Their IGA Was Not Enough
Their IGA platform certified the accounts it could see. It did not chase the application owners who held the evidence. It did not communicate with end users. It did not explain entitlements to reviewers, or maintain hygiene between certification cycles. C&A is not a platform problem. It is an execution problem. That is the gap Alex was hired to close.
Why This Matters in Healthcare
- Coverage gaps the audit kept finding. In-scope accounts slipped through every cycle, especially in legacy and disconnected applications. Scope leakage became the recurring audit finding, the same gaps showed up quarter after quarter.
- Evidence collection that took weeks of chasing. Most of every cycle was spent following up with application owners to produce the evidence auditors required. Manual nudges, repeated escalations, and re-requests consumed analyst capacity and delayed remediation.
- End-user communication consuming analyst time. When an account needed clarification or end-user input (status, justification, missing context), the back-and-forth (escalations, explanations, status updates) pulled the IAM team off higher-value work for days at a time.
- Manual data reconciliation across the stack. Analysts compared evidence by hand across SailPoint, Entra ID, Active Directory, CyberArk, and ServiceNow, looking for inaccuracies and completeness gaps long after remediation should have closed.
The Solution
The bank deployed Alex, Twine's first AI Digital Employee, to take ownership of the tedious communication, evidence collection, quality review, and execution work that makes C&A actually hold up under audit. Alex does the work. Humans certify. Every action is logged, every recommendation is explainable, and the bank sets the level of autonomy per action through Twine's control membrane.
Four execution gaps, four matched solutions:
Coverage gaps → Certification Coverage.
Alex enforces scope on every cycle, ensuring every in-scope account, entitlement, and identity type is included, including the legacy and disconnected applications that historically slipped through.
Endless follow-up → Scheduled Process Kickoff.
Alex kicks off each cycle, runs the heavy lifting end-to-end (data preparation, evidence collection, scope checks, quality review), and brings a human in only to confirm and certify.
Rubber-stamp certifications → Agentic End User Communication.
Alex communicates with end users and application owners directly in Microsoft Teams, nudges, escalates, and explains entitlements with business context so reviewers approve because they understand, not because they are tired.
Manual reconciliation → Continuous Identity Hygiene.
Alex continuously detects and remediates orphaned accounts, stale access, and identities left behind by departures, terminations, and role changes, so the next certification cycle starts cleaner than the last one.
Why It Worked
Three things made the deployment defensible at audit:
- Alex did not replace the bank's IGA. Alex executed against it.
- Every action carried a reasoned, logged audit trail. Alex's outputs gave the IAM team better evidence than they could produce manually.
- Hygiene ran continuously, not quarterly. By the next audit cycle, the gaps that used to be findings were already closed.
Integrations
Alex connected to the bank's existing stack with no rip-and-replace: SailPoint (IGA), Entra ID, Active Directory, CyberArk (PAM), and ServiceNow (ITSM). End-user communication runs through Microsoft Teams.