How: Allow a manager to create identities just for their department

The default configuration allows for employees to be created without restricting the department, but by security reasons we need that the web portal allows each department manager to create new identities only for his department and not for other departments where he is not the manager.

I had request a support case but only receive the suggest to post this on this forum.

any help would be appreciated