Customer CaseHow HR player Liantis took control of user access in daysDownload →
Customer Case

Taking Control of User Access in Weeks, Not Months

How Liantis built identity visibility across its applications and 2,100 employees with Elimity Insights.

2,100
Employees
55
Offices across Belgium
246k
Entrepreneurs served
14 days
To first full visibility

About Liantis

HeadquartersBelgium
Employees+2,100 FTEs
IndustryHR Services
Key focusSecurity & Compliance
RegulationsNIS2, ISO 27001, GDPR

Key Results

First identity visibility within 2 days of kickoff
Orphaned accounts flagged within 24 hours of offboarding
Admin rights continuously visible and recertified quarterly
Continuous, owner-driven access reviews replacing ad-hoc process
Audit evidence available in a few clicks, not days of preparation

Belgium's Partner for Entrepreneurs and Employers

Liantis is an integrated HR services partner supporting individuals and organisations throughout their entire journey — from business start to retirement — across all people-related matters, including payroll, social insurance, and workplace safety.

With 2,100 employees across 55 offices, Liantis serves 246,000 entrepreneurs and supports 76,000 employers. This broad reach means the organisation manages a large, complex base of internal users, contractors, and partners — all requiring controlled access to sensitive systems and data.

As an essential entity under

NIS 2ISO 27001GDPRSOC ControlsInternal Audit

Liantis cannot treat access governance as a once-a-year exercise. Demonstrating continuous, defensible control over who can access what is a fundamental requirement.

A Complex Identity Landscape, Grown Over Decades

Like many organisations, Liantis had built up data islands and isolated systems around legacy payroll, safety, and pension platforms. With a hybrid AD + Entra ID + SaaS environment — internal employees, contractors, and partners all sharing access to critical systems — the questions that mattered most were the hardest to answer.

  • Who exactly has access to which systems, today? No single source of truth for a 360-degree identity view.
  • How many orphaned accounts are still active after leavers? No unified, centralised view to detect them proactively.
  • Who still holds admin rights they no longer need? Outliers and anomalies went undetected without systematic monitoring.
  • Are our access reviews defensible for an auditor? Ad-hoc reviews lacked structure, ownership, and audit trails.

Elimity gave us visibility first — actionable insights allowing us to talk about identity risk, internally and with our auditors. With that visibility, remediation follows.

Kurt Roggen
Kurt Roggen
Security Architect, Liantis

Visibility First. Without a Multi-Year Program.

When evaluating solutions, Liantis was clear: they didn't need another workflow engine or a two-year IAM rollout. They needed fast, actionable visibility — managed by their own team, not a squad of external consultants.

01
Connects to everything we run
Native connectors for Entra ID, Active Directory, Workday, and CSV for everything else. No long integration project required.
02
Centralised, actionable insights
Other IGA vendors sold workflow engines. Elimity sold visibility — exactly what Liantis needed first.
03
Lightweight, not a two-year program
A PoC ran in days, not quarters. The team promised value in weeks and held itself to it.
04
European, with compliance in its DNA
A Belgian vendor, data hosted in Europe, with NIS 2 and ISO 27001 language built into the platform from day one.

From Contract to First Insights in Under Two Weeks

Liantis connected their critical systems and went from zero visibility to continuous monitoring in 14 days. Not a proof of concept — a production deployment.

  1. 1
    Connect critical systems
    Active Directory, Entra ID, Workday, and key business applications, wired up in hours, not weeks.
    Day 1–2
  2. 2
    Visibility live
    First unified view of identities, accounts, and entitlements across the entire estate.
    Day 2
  3. 3
    Start cleaning up identity risks
    Orphaned accounts flagged. Stale admins flagged. Guests with never-expiring access flagged.
    Day 3–7
  4. 4
    Continuous monitoring & governance
    Risk dashboards live for the security team. First access review in flight with business owners.
    Day 7–14

Security Improvements, Time Saved, and a Posture Liantis Can Defend

Elimity Insights transformed how Liantis approaches identity risk — from reactive, ad-hoc processes to continuous, auditable control.

Before
  • Unstructured quarterly access reviews
  • Orphaned accounts discovered during audits
  • Admin rights reviewed ad hoc
  • NIS 2 evidence assembled by hand
  • Days spent preparing evidence each audit cycle
After Elimity Insights
  • Continuous access reviews, owner-driven
  • Orphans flagged within 24 hours of offboarding
  • Admin rights continuously visible and recertified quarterly
  • Audit evidence one export away
  • Answers for auditors in a few clicks

For ISO certification, audits require proof. You need to be able to clearly demonstrate who has access to which systems and why — and now we can.

Kurt Roggen
Kurt Roggen
Security Architect, Liantis

Five Practical Tips for Security Teams Starting This Journey

01
Pick the five systems that cover 80% of your risk and focus there first.
02
Create visibility into those systems and automate data collection from day one.
03
Focus on tangible security controls that lower your risk as easily as possible.
04
Remediate first, involve the broader security team and business owners once you have clarity.
05
Monitor progress and measure in weeks, not quarters. Celebrate early wins — they build momentum.

Ready to see who has access to what?

Get full identity visibility across your critical systems — in days, not months.