In a healthcare facility, poorly managed access is never just an IT incident, it can put patient safety at risk. As cyberattacks targeting hospitals continue to rise, digital identity management has become an institutional priority, driven at the highest level of information systems departments.
IAM (Identity and Access Management) refers to the set of processes that control who can access what, when and why, across a healthcare facility's information system.
Watch this video to see how Memority supports the CIO of a regional hospital group (GHT) in managing the digital identity lifecycle, from onboarding to access revocation.

Digital identities in healthcare facilities: One of the most complex environments
Hospitals operate in a uniquely complex environment: temporary staff, external contractors, healthcare professionals in constant mobility and multiple identities across several sites and systems. Every new hire, every department change and every departure triggers a chain of actions on access to the Electronic Health Record (EHR), Active Directory and business applications. Managing these processes manually expose organizations to orphaned access rights and dormant accounts.
HospiConnect, the program led by the French eHealth Agency (ANS), sets out these requirements:
• automatic account provisioning integrated with RPPS (France's national directory of healthcare professionals)
• real-time rights updates with every staff move
• immediate revocation upon departure and periodic access reviews.
How Memority automates digital identity management in healthcare facilities
With MY-Identity, our IGA (Identity Governance and Administration) offer, Memority automates this entire lifecycle. As soon as an account is created in the HR information system (HRIS), the RPPS identifier is automatically provisioned in the EHR, with no manual intervention. When a healthcare professional changes department, their access rights are recalculated in real time based on the principle of least privilege. Upon departure, deactivation is immediate and fully traceable.
AI-assisted access reviews let Memority flag inconsistencies, identify dormant accounts through MY-Discovery and generate the reports required for audits. Segregation of duties between clinical staff, administrative personnel, contractors and emergency access is managed through a single repository, covering every entity within a GHT.
Book a Meeting with an Expert
Working on HospiConnect Compliance?
Our teams support healthcare facilities and regional hospital groups (GHTs) in managing the identity lifecycle, integrating RPPS and achieving HospiConnect compliance.





