All IAM glossary termsLifecycle & Governance · glossary
Joiner / Mover / Leaver (JML)
Also known as: Joiner Mover Leaver · JML lifecycle
Definition
Joiner / Mover / Leaver (JML) is the identity lifecycle model that automates account provisioning when a user joins, modifying access when they change roles, and revoking access when they leave.
In more depth
In a mature IAM program, JML is HRIS-driven: when a new hire is finalized in Workday (or SuccessFactors, BambooHR, etc.), automation fires to create accounts, assign roles, and grant baseline access. Role changes trigger reassignment + revocation. Terminations trigger immediate access removal across all integrated systems.
The quality bar: time-to-provision under 4 hours for joiners, time-to-deprovision under 2 hours for leavers. Manual ticket-driven JML cannot achieve these SLAs at scale.
Want the work, not just the definition?