Stitchflow
iManage logo

iManage SCIM guide

Connector Only

How to automate iManage user provisioning, and what it actually costs

Summary and recommendation

iManage, the leading legal document management platform, does not support native SCIM provisioning on any plan. While iManage offers SAML SSO integration with identity providers like Okta and Microsoft Entra ID, user provisioning relies entirely on Just-In-Time (JIT) provisioning and their Directory Sync Service. This means users must either be manually created in iManage before SSO authentication or rely on JIT creation during first login—neither approach provides the granular lifecycle management that IT teams need for compliance and security.

The gap this creates is particularly problematic for law firms and legal departments managing hundreds or thousands of users across multiple matters and client teams. Without true provisioning capabilities, IT administrators cannot programmatically assign users to specific libraries, set appropriate permissions, or ensure immediate deprovisioning when employees leave or change roles. Given the sensitive nature of legal documents and strict compliance requirements in the legal industry, this manual approach creates significant security and audit risks.

The strategic alternative

iManage has no native SCIM. Automate offboarding, user access reviews, and license workflows across every app, including the ones without APIs. We maintain the integration layer underneath. You focus on judgment, not plumbing.

Quick SCIM facts

SCIM available?No
SCIM tier requiredN/A
SSO required first?No
SSO available?Yes
SSO protocolSAML 2.0
DocumentationNot available

Supported identity providers

IdPSSOSCIMNotes
OktaiManage supports SAML SSO via Okta but no OIN listing with provisioning. Uses JIT provisioning and Directory Sync Service.
Microsoft Entra IDSupports SAML and OIDC SSO with Microsoft Entra ID. No SCIM provisioning - uses JIT provisioning instead.
Google WorkspaceVia third-partyNo native support
OneLoginVia third-partyNo native support

The cost of not automating

Without SCIM (or an alternative like Stitchflow), your IT team manages iManage accounts manually. Here's what that costs:

Source: Stitchflow research, normalized to 500 employees:
Orphaned accounts (ex-employees with access)5
Unused licenses12
IT hours spent on manual management/year85 hours
Unused license cost/year$3,500
IT labor cost/year$5,100
Cost of compliance misses/year$890
Total annual financial impact$9,490

The iManage pricing problem

iManage gates SCIM provisioning behind premium plans, forcing significant cost increases for basic user management.

Tier comparison

PlanPriceSSOSCIM
Pro$39/user/mo
Business$50-75/user/mo
EnterpriseCustom quote

Pricing structure

PlanPriceSSOSCIM
Pro$39/user/mo
Business$50-75/user/mo
EnterpriseCustom quote

What this means in practice

No automated user lifecycle management: Without SCIM, IT teams must manually create users in iManage before they can access the system, even with SSO enabled. When employees join, change roles, or leave, each change requires manual intervention in both your IdP and iManage.

JIT provisioning creates gaps: While iManage supports JIT provisioning, users still need to be pre-configured with appropriate permissions and workspace access. A new attorney can't simply click a link and automatically get access to the right client files and libraries.

Directory Sync Service limitations: iManage's Directory Sync Service requires additional configuration and doesn't provide real-time synchronization. Changes in your Active Directory may take hours or longer to reflect in iManage, creating security gaps and user frustration.

Additional constraints

Implementation costs
iManage deployments typically cost $5,000 to $50,000+ in implementation fees, separate from licensing
Infrastructure requirements
On-premise deployments require significant server infrastructure investment beyond software licensing
Complex permission models
Legal document access requires granular workspace and library permissions that can't be automated without SCIM
Compliance risks
Manual provisioning creates audit trail gaps - critical for legal environments where document access must be precisely tracked

Summary of challenges

  • iManage does not provide native SCIM at any price tier
  • Organizations must rely on third-party tools or manual provisioning
  • Our research shows teams manually provisioning this app spend significant hidden costs annually

What iManage actually offers for identity

SAML SSO (Standard on all plans)

iManage supports SAML 2.0 integration with enterprise identity providers:

SettingDetails
ProtocolSAML 2.0, OIDC
Supported IdPsOkta, Microsoft Entra ID, Google Workspace
ConfigurationStandard SAML metadata exchange
User creationJust-in-Time (JIT) provisioning only

Critical limitation: iManage has no native SCIM endpoint. User provisioning relies entirely on JIT provisioning, which only creates accounts when users first log in—no bulk provisioning, deprovisioning, or group management.

Microsoft Entra ID Integration

The official Microsoft Entra ID integration provides:

FeatureSupported?
SAML SSO✓ Yes
OIDC SSO✓ Yes
SCIM provisioning❌ No
Create users❌ No (JIT only)
Update users❌ No
Deactivate users❌ No
Group sync❌ No

Directory Sync Service (Enterprise add-on)

iManage offers a proprietary Directory Sync Service as an alternative to SCIM:

What it does
Syncs user data from Active Directory or LDAP
What it doesn't do
Real-time provisioning, works with cloud-only IdPs like Okta
Implementation cost
$5,000 to $50,000+ depending on complexity
Maintenance
Requires ongoing management of sync schedules and troubleshooting

The reality: Most organizations need cloud-based provisioning that works with modern IdPs like Okta or Google Workspace. iManage's Directory Sync Service is designed for traditional on-premise environments and doesn't deliver the automated lifecycle management that IT teams expect from SCIM.

What IT admins are saying

iManage's lack of native SCIM provisioning forces IT teams into manual workflows and expensive implementation projects:

  • Manual user creation required even with SSO - JIT provisioning doesn't eliminate the administrative burden
  • Directory Sync Service adds complexity without delivering true automated provisioning
  • Implementation costs ranging from $5,000 to $50,000+ put automated user management out of reach for many organizations
  • On-premise deployments require significant infrastructure investment on top of licensing costs

Users must be created in iManage before SSO or via JIT provisioning

iManage implementation documentation

Implementation costs can range from $5,000 to $50,000+

iManage partner pricing guidance

The recurring theme

Even Enterprise customers paying custom pricing don't get true SCIM provisioning - just expensive workarounds that still require manual intervention for user lifecycle management.

The decision

Your SituationRecommendation
Small law firm (<25 users) with stable staffManual user management is acceptable
Mid-size firm with occasional turnoverConsider Stitchflow for consistency and audit requirements
Large law firm (100+ users) with frequent staff changesUse Stitchflow: automation essential for compliance and efficiency
Multi-office legal organizationUse Stitchflow: centralized provisioning critical for security
Enterprise legal department with strict complianceUse Stitchflow: automated audit trail and SOC 2 certification required

The bottom line

iManage offers enterprise-grade document management for legal teams, but it lacks modern identity provisioning capabilities—no SCIM support means relying on JIT provisioning or manual user creation. For legal organizations that need automated user lifecycle management with proper audit trails, Stitchflow delivers SCIM-level provisioning without the complexity of custom integrations.

Make iManage workflows AI-native

iManage has no native SCIM. We build complete offboarding, user access reviews, and license workflows across every app, including the ones without APIs.

Covers apps without native SCIM, including the ones without APIs
Less than a week, start to finish (~2 hours of your time)
Built with your team; extend to anything else in the company
Book a Demo

Technical specifications

SCIM Version

Not specified

Supported Operations

Not specified

Supported Attributes

No native SCIM endpoint - uses JIT provisioning and Directory Sync Service insteadUsers must be created in iManage before SSO or via JIT provisioningImplementation costs can range from $5,000 to $50,000+On-premise deployment requires significant server infrastructure investment

Plan requirement

Not specified

Prerequisites

Not specified

Key limitations

  • No native SCIM endpoint - uses JIT provisioning and Directory Sync Service instead
  • Users must be created in iManage before SSO or via JIT provisioning
  • Implementation costs can range from $5,000 to $50,000+
  • On-premise deployment requires significant server infrastructure investment

Documentation not available.

Configuration for Entra ID

Integration type

Microsoft Entra Gallery app

Where to enable

Entra admin center → Enterprise applications → iManage → Single sign-on

Supports SAML and OIDC SSO with Microsoft Entra ID. No SCIM provisioning - uses JIT provisioning instead.

Use Stitchflow for automated provisioning.

Unlock SCIM for
iManage

iManage has no native SCIM. We still automate end-to-end workflows across every app, including the ones without APIs.

See how it works
Admin Console
Directory
Applications
iManage logo
iManage
via Stitchflow

Last updated: 2026-01-20

* Pricing and features sourced from public documentation.

Keep exploring

Related apps

Abnormal Security logo

Abnormal Security

No SCIM

Security / Email Security

ProvisioningNot Supported
Manual Cost$9,490/yr

Abnormal Security, the AI-powered email security platform protecting against BEC and phishing attacks, does not offer SCIM provisioning on any plan. While the platform supports SAML 2.0 SSO integration with identity providers like Okta and Entra ID, this only handles authentication—not automated user lifecycle management. Security teams must manually provision and deprovision analyst access through Abnormal's portal, creating operational overhead and potential security gaps in a platform specifically designed to protect against email-based threats. This manual provisioning model creates significant challenges for security operations. When new SOC analysts join or existing team members change roles, IT admins must coordinate manual account creation and permission updates in Abnormal Security. For a platform that's critical to threat detection and incident response, delays in provisioning can leave security gaps, while delayed deprovisioning creates compliance risks. The irony is stark: a security platform designed to prevent account takeover and credential abuse lacks the automated provisioning controls that prevent exactly these risks.

View full guide
Airwallex logo

Airwallex

No SCIM
ProvisioningNot Supported
Manual Cost$9,490/yr

Airwallex, the global payments and treasury platform, offers no SCIM provisioning support on any plan, including their custom Accelerate enterprise tier. Despite being positioned for enterprise use with features like multi-entity management and advanced treasury controls, Airwallex lacks any official identity provider integrations—no SSO, no provisioning, and no presence in major IdP galleries like Okta's OIN or Microsoft Entra. This creates a significant operational burden for IT teams managing financial access across growing organizations, where manual user provisioning and deprovisioning in a payments platform presents both efficiency and security risks. The absence of identity management capabilities means IT administrators must manually create, update, and remove user accounts in Airwallex—a particularly concerning gap given that this platform handles sensitive financial operations, cross-border payments, and treasury management. Without automated deprovisioning, former employees could retain access to financial systems, creating compliance risks and potential security vulnerabilities that most finance and IT teams cannot afford to overlook.

View full guide
Alkami logo

Alkami

No SCIM
ProvisioningNot Supported
Manual Cost$9,490/yr

Alkami, the digital banking platform used by banks and credit unions, does not offer SCIM provisioning or public SSO integrations. As an enterprise-only platform with custom pricing, Alkami appears to handle user management through direct account administration rather than standardized identity protocols. This creates significant challenges for financial institutions that need to integrate Alkami with their existing identity infrastructure—particularly problematic given the compliance requirements and security standards that banks must maintain. The lack of automated provisioning means IT teams at financial institutions must manually create, update, and deprovision user accounts in Alkami. For a platform handling sensitive financial data and customer information, this manual approach introduces compliance risks and operational overhead. Banks typically require seamless integration between their core identity systems and all applications accessing customer data.

View full guide