Mind Automates the User Lifecycle with Okta Workflows

Mind Automates the User Lifecycle with Okta Workflows

Mind, the leading mental health charity in UK, partnered with Cloudworks to automate the user lifecycle for employees and volunteers across independent local Minds, each with its own IT environment. By optimizing the Okta setup and adding automated workflows, user creation, updates, and deactivation are now consistent across the organization, reducing manual work and strengthening stability and security.

A decentralized organization with centralized needs

Mind functions as a federated movement for mental health. Local Minds work directly within communities, running services and retail shops supported by dedicated staff and volunteers. While united under the Mind brand, each local Mind is an independently registered charity with full autonomy. 

This structure brings agility locally but creates complexity for identity and access management (IAM). Each local Mind has its own Microsoft Entra ID tenant, its own processes, and its own administrative model while relying on shared digital services provided by National Mind. 

This made the existing IAM setup increasingly difficult to manage. 

From manual updates to a consistent user lifecycle

Historically, user administration was not working for each local Mind. Changing roles, moving between local Minds, or leaving the organization often required manual updates that could be delayed missed entirely.

Mind already used Okta as a shared identity layer, but the full lifecycle wasn't yet automated. 

Partnering with Cloudworks, Mind extended its Okta platform with a fully automated, standardized lifecycle management process. Using Okta Workflows, user creation, modification, and deactivation now follow a consistent logic across local Minds. 

Cloudworks quickly understood the unique structure of our federation and the challenge of balancing local independence with the need for a central consistency. Their expertise and collaborative approach enabled us to design a solution that works seamlessly across every local Mind, without creating extra complexity for my team. It genuinely felt like a true partnership from start to finish. 

 

Jinder Chana, Head of Infrastructure & Support, Mind

The challenge of reliable access management in a decentralized charity

With many independent entities, IAM challenges became both technical and organizational: 

  • Identities were distributed across multiple local tenants 
  • Processes varied between locations 
  • Staff movement between local Minds was difficult to track
  • Integration credentials could expire unexpectedly 
  • Central teams relied on repeated coordination with local IT leads

Automation was the only scalable way to ensure consistency while respecting local autonomy. 

The goal was clear: create a centralized, automated lifecycle process that works across all Minds, without changing how local Minds operate day to day. Identity layer that brings identities together across multiple units and local environments

Okta as the shared identity layer

Okta formed the bridge between Mind's local Microsoft Entra ID tenants and the shared digital services used across the federation. This allowed centralized control without disrupting local setups. 

Cloudworks helped Mind expand Okta with: 

  • A Standardized lifecycle process
  • Automated creation, updates, and deactivation 
  • Clear exception handling and structured error reporting 
  • Centrally defined rules applied consistently organization-wide

All lifecycle logic was consolidated into a single end-to-end automated workflow.

Lifecycle automation across local Minds

The new solution now delivers several key benefits:

A consistent user lifecycle across every local Mind

Automatic removal of access when no longer required

Improved access control, with updated aligned to role changes

Lower licensing costs, with fewer inactive accounts lingering 

Scalability, enabling easy onboarding of new local Minds

Stronger operational reliability and faster issue resolution

Less coordination required between central and local Minds

Reliable IAM designed for day-to-day operations

Mind needed a solution that would remain stable long after go-live. To support ongoing operations: 

  • Centralized error reporting helps identity issues before they impact users
  • Automated credential renewal prevents integrations from failing due to expired credentials
  • Built-in cleanup routines deactivate long-inactive accounts, increasing security and optimizing license usage

These design choices ensure the solution remains robust as Mind continues to evolve. 

Automating the user lifecycle has fundamentally improved how we manage identity and access across Mind. We have confidence that users receive the right access at the right time and that it's removed as soon as it's no longer needed. This has strengthened our security, reduced manual workloads, and given us a far more future-proof foundation. 

 

Jinder Chana, Head of Infrastructure & Support, Mind

IAM for non-profit organizations

Non-profits often have complex structures, limited resources, and diverse user groups, including volunteers with irregular access patterns. This makes manual IAM both labour-intensive and error-prone.

Cloudworks support non-profit organizations by delivering IAM solutions that reduce the administrative overhead, increase security and compliance, improve the user experience, and scale in line with organizational change. 

Read how Cloudworks helps nonprofit organizations with digital identities →

A strong foundation for Mind's digital future

Mind's upgraded identity management solution demonstrates that decentralized organizations can achieve consistent, secure, and scalable IAM practices. Users sign in through an IAM solution for secure access to systems and apps

By combining Okta as a shared identity layer with automated lifecycle processes, Mind benefits from: 

  • Better security 
  • Lower administrative burden
  • Increased operational reliability
  • Clearer visibility of who has access and why

With Cloudworks' support, Mind has put in place a sustainable, modern identity foundation that supports its mission to improve mental health across England and Wales. 

Curious about what a more automated and uniform IAM setup could look like for you?

Book a meeting with us below