What are the methods to handle reporting on accounts that get created
outside of IDM for audit/reconciliation purposes.

Say we, have integrated with Active Directory and associated all user
accounts with AD using employeeID as the matching policy; how do you do
ongoing monitoring and management and prevent / alert when a rogue admin
create a user account directly in AD by-passing the IDM.

Is Sentinel a solution for that? If yes, how?

