Overview

Product video
OneLogin by One Identity is a modern, cloud-based access management solution that seamlessly manages all digital identities for your workforce, customers and partners. OneLogin provides secure single sign-on (SSO), multi-factor authentication (MFA) with support for a wide array of passwordless authentication factors, adaptive authentication, desktop-level MFA, directory integration with AD, LDAP, G Suite and other external directories, identity lifecycle management and much more.
OneLogin uses powerful authentication and role-based user provisioning engine enabling you to implement least-privileged access controls and eliminate manual user management workflows. Moreover, OneLogin delivers multi-layer, context aware and risk-based protection, minimizing the most common attacks and resulting in increased security, frictionless user experiences, and compliance with regulatory requirements.
OneLogin has pre-built authentication connectors with thousands of third-party web applications with extensibility across your entire portfolio. With OneLogin, you can:
-Implement single sign-on (SSO) for users across mobile, web and desktop
-Enforce contextual multi-factor authentication (MFA) and access security policies, and automate user account provisioning
-Provision users with granular access permissions into the AWS Console/CLI or directly to AWS services
-Extend security controls across your cloud infrastructure by leveraging pre-built integrations with Amazon Control Tower, AWS IAM, AWS SSO, Amazon Cognito, and Amazon EventBridge
If interested in private offers, email us at partnercircle@oneidentity.com .
Highlights
- SSO: Automatically sync users across multiple directories in minutes to enable one-click access to all corporate applications, whether on-prem or in the cloud, and enforce strong security policies, plus self-service password reset.
- MULTI-FACTOR AUTHENTICATION (MFA): Supports many authentication methods, including passwordless, passkeys, one-time passcodes, push notifications, biometric data, security keys and more. With real-time reporting and monitoring capabilities, gain insights into authentication events, enabling proactive detection and response to potential security incidents.
- ADVANCED DIRECTORY: Acts as your secure directory in the cloud with an intuitive web-based interface that allows you to manage users, their manager relationship, authentication policies and access controls.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Buyer guide

Financing for AWS Marketplace purchases
Pricing
Free trial
Dimension | Description | Cost/12 months |
|---|---|---|
OneLogin 1-App Plan | Standard User License, OneLogin 1-App Plan for AWS | $12.00 |
OneLogin Advanced Plan | Standard User License, OneLogin Advanced Plan | $48.00 |
OneLogin Professional Plan | Standard User License, OneLogin Professional Plan | $96.00 |
Custom | Private offers available - email partners@onelogin.com | $96.00 |
Vendor refund policy
Please refer to OneLogin terms of service https://www.onelogin.com/terms
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
Software as a Service (SaaS)
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Support
Vendor support
To learn more about OneLogin Customer Support, visit
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

Standard contract
Customer reviews
Automated access management has reduced onboarding delays and simplified daily user operations
What is our primary use case?
OneLogin provides secure and simple access to business applications while maintaining centralized control over user identity and authentication policies.
When employees join our company, their application access is provided through OneLogin based on their roles and responsibilities, which depends on the department. This allows new joiners to start working immediately without waiting for manual access requests.
How has it helped my organization?
OneLogin has provided strong access security for our organization, and day-to-day operations are more efficient for both users and administrators.
We have observed approximately 45 to 50% fewer password-related support tickets, faster user onboarding by nearly 60%, and reduced errors.
What is most valuable?
The most valuable features of OneLogin are unified application access, multifactor authentication, and automated user provisioning.
Automated user provisioning has had the most significant impact for my team. Before OneLogin, creating and removing access across multiple systems required several manual steps. Today, most processes happen automatically, which reduces delays and the risk of human errors.
What needs improvement?
The initial setup could be more simplified; apart from this, everything is perfect and a very smooth solution.
For how long have I used the solution?
I have been working in my current field for more than two years.
What do I think about the stability of the solution?
OneLogin is a stable solution.
What do I think about the scalability of the solution?
OneLogin has excellent scalability, making it a scalable solution.
How are customer service and support?
Our experience with the customer support team for OneLogin has been positive, as cases are generally handled professionally and the technical resources are knowledgeable.
I would rate the customer support for OneLogin eight out of 10.
Which solution did I use previously and why did I switch?
We have not switched from a different solution; we have been using OneLogin from day one.
How was the initial setup?
The initial setup could be more simplified; apart from this, everything is perfect and a very smooth solution.
What was our ROI?
We are receiving a positive return on investment with OneLogin since we have seen a reduced amount of time spent managing user accounts by 50% and shortened onboarding cycles, allowing us to save time and money.
What's my experience with pricing, setup cost, and licensing?
The pricing, setup cost, and licensing for OneLogin are handled by a different team.
Which other solutions did I evaluate?
We have not evaluated other options before choosing OneLogin.
What other advice do I have?
My advice for others looking into using OneLogin would be to spend time planning the identity and identity architecture before jumping into deployment and to define proper user roles. Using multifactor authentication from the beginning and automating provisioning will be helpful. I would rate this review nine out of 10.
Centralized identity has reduced manual onboarding and strengthened adaptive authentication
What is our primary use case?
We use OneLogin to connect users to cloud applications through federated authentication, which allows access based on the corporate identity and the policies that we have set.
Identity Federation and Centralized Authentication are outstanding features of OneLogin, along with its multi-authentication, user lifecycle automation, and directory synchronization.
OneLogin's adaptive authentication and policy-based control are helpful and useful for governance and security.
We use OneLogin's SmartFactor Authentication to adjust authentication flows in real-time, depending on the risk score associated with the login attempts, as it maintains a balance between strong security, control, and smooth user experience.
User identity synchronization across directories functionality in OneLogin provides a very positive experience, as the synchronization process is smooth.
Integrating phishing-resistant device trust has had a really positive impact on our authentication processes because the synchronization capability helps maintain consistent user information across the Active Directory and its connected applications from a centralized location.
OneLogin's ability to provide a seamless end-user experience for signing in and authenticating to needed applications is really positive, as we receive very positive responses from end-users on the usability of the authentication.
We use Vigilance AI with OneLogin to analyze and detect risky behavior of users, and the feature improves our ability to identify potential risky authentication attempts by analyzing many factors such as device characteristics, IP reputation, and login location. When suspicious activity is detected, it enforces and triggers MFA or additional verification steps.
HR-driven identity management plays a very important role in automating employee onboarding because whenever any employee information is updated in the HR system, it automatically triggers account creation in OneLogin and all related tasks like role changes and access assignments are automated based on predefined policies, which reduces manual work significantly.
What is most valuable?
Since we have adopted OneLogin, we have seen account-related support requests reduced by 40 to 50%, and the onboarding process is faster than before, reducing administrative effort by 60 to 70%.
OneLogin meets our expectations because it provides reliable and accurate output in terms of its AI capabilities.
We have seen a return on investment with OneLogin as we are happy with the solution, experiencing significant time savings and cost benefits due to its automation of manual tasks.
We have seen tickets related to password or account issues reduced by 70 to 80% since adopting OneLogin, and the user onboarding now only requires 10 to 15 minutes, which is a significant improvement in productivity from day one.
What needs improvement?
For how long have I used the solution?
What do I think about the stability of the solution?
What do I think about the scalability of the solution?
How are customer service and support?
How was the initial setup?
What was our ROI?
What other advice do I have?
Identity workflows have transformed onboarding speed and now support secure passwordless access
What is our primary use case?
My main use case for OneLogin is to enforce workforce identity, and we implemented this in Malaysia's biggest retail client, so all of their employees' applications can be securely accessed through single sign-on using OneLogin .
We also created an employee onboarding workflow using OneLogin, so when a user's account gets created in OneLogin, their account is SCIM provisioned into different applications. The account is synchronized using Saviyant into OneLogin as well, so this is my day-to-day activity with OneLogin.
OneLogin was used across the entire organization, and there were both power users and regular users. The power users managed the platform and used the APIs to create custom requirements, while the regular users used it for their SSO , MFA, and other identity management.
What is most valuable?
In my experience, one of the best features of OneLogin is its passwordless login, which I saw as ahead of its time, as it allowed creating logins with MFA without passwords, which is now a significant trend in the market.
The most important feature of OneLogin that we ended up using is definitely SSO and its APIs to manage users and groups programmatically using custom scripts and Saviyant workflows.
OneLogin has impacted the organization I implemented it for by allowing swift onboardings, as onboarding definitely helped in bringing new employees on board very quickly. It has many built-in application connectors to onboard new apps quickly, and it helped in connecting with our organization, which is very large, as we migrated many applications and onboarded new applications because of the ease that OneLogin provides.
What needs improvement?
During implementation, there were not many features that I remember not using in practice. Mostly, there were certain APIs that we were experimenting with earlier but did not use, so we created custom scripts for them, especially around auto-implementing MFA for new joiners, although we later shifted that process.
For how long have I used the solution?
I have been working with OneLogin for almost five years now.
Which solution did I use previously and why did I switch?
Before we landed on OneLogin for this environment, the client was part of a larger group that was already using OneLogin, and we segregated the tenant from the group tenant to an individual tenant for this company, which is now a Malaysian-owned company in the retail sector.
How was the initial setup?
When I first implemented OneLogin for that client, it took close to six months for everything to get up and running. The initial tenant onboarding was quick, but since it was mostly a migration, the company was separating from a larger group, which involved a multi-month migration and over 160 applications.
What about the implementation team?
The scope of that work is definitely part of a larger team managing identity and access for the client, as we were a team of 10 members managing different tools, with OneLogin being one of them.
We also had Saviyant for user provisioning and UAR and certification campaigns, alongside several of our own Node.js written programs to do the identity provisioning, so we were at least a team of 10 members at that time.
Which other solutions did I evaluate?
We evaluated other IAM tools including PingOne , but we decided to stick with OneLogin as it was a known experience for the end users as well as for the application administrators, and since we were already using a larger part of the group, we tried to keep the same experience and went with OneLogin.
What other advice do I have?
When I am working in OneLogin on a normal day or week, the first thing I typically do in the platform is handling SSO configurations, so I add applications and interact with application stakeholders, learn about the applications, and then finally decide who gets to access them and how the access would be granted.
My team did need formal training when working with OneLogin, and while it was mostly intuitive, we still had training through OneLogin given as part of the compliance.
Now that OneLogin is in place with Saviyant, we are able to onboard users very quickly by connecting with the HRMS, reducing the process to a few minutes compared to the lot of manual work we used to do earlier creating accounts in AD and synchronizing them. I would rate this solution highly for its effectiveness and integration capabilities.
Centralized identity has streamlined secure access and improved collaboration and compliance
What is our primary use case?
OneLogin is an excellent solution for security and compliance. My main use case is that it is used for ensured security and privacy on a HIPAA and PCI compliant platform with the ease of storing my employees' passwords so that my tech team is not constantly bombarded by password reset requests from employees.
I can give a specific example of how I use OneLogin for security and compliance in my organization, where it solved both my privacy concerns as well as provided a more efficient flow of priority tickets for my technology team and allowed me to show my investors additional privacy and security measures, which built their trust in my organization.
What is most valuable?
OneLogin offers the best features by ensuring internal users have a seamless experience when accessing business applications so that they do not have to remember multiple passwords, and it also provides centralized control over the identity of the business apps.
For the seamless experience and centralized control I mentioned, I would say the productivity has increased since my team does not have to waste a lot of time logging into multiple business applications, as they just have to use one password to log in to all my business applications, which has allowed them to focus more on their daily tasks, thereby saving considerable time.
OneLogin's application integration is easy to deploy, and the dashboard is good and user-friendly. It also provides a secure solution with certificate management that can restrict access from unauthorized users.
OneLogin has positively impacted my organization by saving time, as I have seen an increase in time-saving because my team just has to use one password to log in to all my business applications, which allows me to strategically allocate that time to more strategic projects and tasks, thereby increasing productivity in my organization. It has also enhanced user experience with centralized control over identity, restricting access from unauthorized apps and providing complete visibility of access.
I can share that there has been a huge collaboration improvement, with internal and external collaboration improving from 40 to 55 percent, and remote collaboration has also improved since OneLogin is very secure and allows only authorized personnel to log into the apps, which has significantly increased my time-saving.
What needs improvement?
I have not experienced a lot of challenges regarding OneLogin's functionality, but I believe the audit trail could be improved.
Customizing landing pages would be a nice addition to OneLogin, even though I have not faced major challenges.
For how long have I used the solution?
I have been using OneLogin for about three years.
How are customer service and support?
According to my experience with the support, they have been responsive, so I do not have any issues with the support. However, OneLogin does not have the ability to set a custom timeout on rotating security codes.
What other advice do I have?
I would advise others looking into using OneLogin to know that it is a very helpful tool that secures all business applications in a cost-effective way. It is very easy to use for new users with its intuitive and user-friendly interface, making it accessible even for non-technical individuals, and I highly recommend it because of its security and compliance capabilities.
Regarding OneLogin's AI capabilities, I consider the security and governance aspects carefully. In discussing OneLogin's AI features, I find that risk-based authentication and anomaly detection operate within OneLogin's existing security framework, ensuring that data stays encrypted and access controls are enforced.
Concerning OneLogin's AI capabilities, I find that the accuracy and reliability of risk detection have been solid for me, as the AI reliably flags unusual logins and access patterns, such as logins from new locations or devices, with an accuracy rate of 85 to 90 percent, as most alerts are legitimate risks and not noise.
I rate this review a 9 out of 10.
Centralized identity has reduced manual access work and now automates secure user lifecycle management
What is our primary use case?
My main use case for OneLogin is that we use this solution as our centralized identity provider to maintain and manage authentication, authorization, and secure access to both cloud and on-premises applications.
What is most valuable?
OneLogin offers several best features such as federated single sign-on, risk-based authentication, automated user provisioning, and the most important, centralized access governance.
I mostly rely on automated user lifecycle management within OneLogin, as it automatically provisions and de-provisions users' accounts, helping our nation improve security and reduce the manual work of the administrator.
OneLogin has positively impacted my organization in several ways, as it has really improved both security and user productivity, allowing employees to securely access multiple applications with the help of single sign-on, which has significantly reduced password-related issues.
The outcomes since adopting OneLogin are very positive, saving our time with a reduced workload by 30 to 40 percent, and user provisioning, including onboarding or off-boarding, has become very fast by 60 to 80 percent.
What needs improvement?
Based on my experience, the only improvement needed for OneLogin is customization of the dashboard; apart from this, all the features are very useful and scalable.
For how long have I used the solution?
I have been working in my current field for almost two years.
What do I think about the stability of the solution?
OneLogin is a very stable solution.
What do I think about the scalability of the solution?
I believe OneLogin is a scalable solution.
How are customer service and support?
The customer support for OneLogin has been very good and responsive; they are knowledgeable and able to troubleshoot effectively.
Which solution did I use previously and why did I switch?
We have not switched from a different solution; we have been using OneLogin since the beginning.
How was the initial setup?
My advice for organizations considering OneLogin is to start with a clear identity and access management strategy before deployment. They should take time to understand their applications, user groups, and access policies, enabling all necessary features including MFA or single sign-on and leveraging automated provisioning and de-provisioning to reduce administrative workload.
What about the implementation team?
We have a partnership with the vendor, and it goes beyond being just a customer.
What was our ROI?
I must say we have seen a great return on investment, with saved time and money, as the automation features have significantly improved our user provisioning and de-provisioning processes.
What's my experience with pricing, setup cost, and licensing?
The pricing, setup cost, and licensing for OneLogin are managed by our management team, not by us.
Which other solutions did I evaluate?
We have not evaluated other options apart from OneLogin.
What other advice do I have?
Regarding OneLogin's AI capabilities, I think its governance and security are supported by strong AI-driven and adaptive security capabilities, centralized identity management, role-based access control, and MFA with detailed auto audit logging. OneLogin provides accurate and reliable AI output, particularly when assessing login risk based on user behavior and device information, effectively identifying potential suspicious authentication attempts.
We do use OneLogin's SmartFactor Authentication for balancing security and usability, and when a user logs in from a trusted device and known location, they are granted seamless access; however, if the login is from an unfamiliar device or location, it is flagged as a potential threat and requires additional authentication.
My impression of the user identity synchronization across directories functionality in OneLogin is very smooth, as users are synchronized from the directory and group across our directory services and connected applications seamlessly.
The impact of integrating phishing-resistant device trust on our authentication processes is that it has strengthened our applications and authentication by ensuring only trusted devices can access them, significantly reducing the risk of credential theft.
My impression of OneLogin's ability to provide a seamless end-user experience for signing in and authenticating to needed applications is very positive, as it offers a smooth, user-friendly authentication experience.
We do use adaptive login flows with Vigilance AI, which have proven very effective in improving our ability to detect and respond to risky authentication attempts. I would rate this review a 9 out of 10.