Overview

Product video
OneLogin by One Identity is a modern, cloud-based access management solution that seamlessly manages all digital identities for your workforce, customers and partners. OneLogin provides secure single sign-on (SSO), multi-factor authentication (MFA) with support for a wide array of passwordless authentication factors, adaptive authentication, desktop-level MFA, directory integration with AD, LDAP, G Suite and other external directories, identity lifecycle management and much more.
OneLogin uses powerful authentication and role-based user provisioning engine enabling you to implement least-privileged access controls and eliminate manual user management workflows. Moreover, OneLogin delivers multi-layer, context aware and risk-based protection, minimizing the most common attacks and resulting in increased security, frictionless user experiences, and compliance with regulatory requirements.
OneLogin has pre-built authentication connectors with thousands of third-party web applications with extensibility across your entire portfolio. With OneLogin, you can:
-Implement single sign-on (SSO) for users across mobile, web and desktop
-Enforce contextual multi-factor authentication (MFA) and access security policies, and automate user account provisioning
-Provision users with granular access permissions into the AWS Console/CLI or directly to AWS services
-Extend security controls across your cloud infrastructure by leveraging pre-built integrations with Amazon Control Tower, AWS IAM, AWS SSO, Amazon Cognito, and Amazon EventBridge
If interested in private offers, email us at partnercircle@oneidentity.com .
Highlights
- SSO: Automatically sync users across multiple directories in minutes to enable one-click access to all corporate applications, whether on-prem or in the cloud, and enforce strong security policies, plus self-service password reset.
- MULTI-FACTOR AUTHENTICATION (MFA): Supports many authentication methods, including passwordless, passkeys, one-time passcodes, push notifications, biometric data, security keys and more. With real-time reporting and monitoring capabilities, gain insights into authentication events, enabling proactive detection and response to potential security incidents.
- ADVANCED DIRECTORY: Acts as your secure directory in the cloud with an intuitive web-based interface that allows you to manage users, their manager relationship, authentication policies and access controls.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Buyer guide

Financing for AWS Marketplace purchases
Pricing
Free trial
Dimension | Description | Cost/12 months |
|---|---|---|
OneLogin 1-App Plan | Standard User License, OneLogin 1-App Plan for AWS | $12.00 |
OneLogin Advanced Plan | Standard User License, OneLogin Advanced Plan | $48.00 |
OneLogin Professional Plan | Standard User License, OneLogin Professional Plan | $96.00 |
Custom | Private offers available - email partners@onelogin.com | $96.00 |
Vendor refund policy
Please refer to OneLogin terms of service https://www.onelogin.com/terms
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
Software as a Service (SaaS)
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Support
Vendor support
To learn more about OneLogin Customer Support, visit
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

Standard contract
Customer reviews
Centralized access management has simplified secure logins and strengthened adaptive MFA
What is our primary use case?
OneLogin is primarily used for single sign-on, MFA enforcement, and centralized user access management across SaaS applications. We use OneLogin to give employees one secure login for applications like Microsoft 365, VPN access, and internal SaaS tools, while enforcing MFA policies based on user roles and access location.
OneLogin has improved user access management, simplified the login experience for employees, and strengthened MFA enforcement across cloud applications without adding too much administrative overhead. OneLogin serves as a cloud-based IAM platform integrated with both on-premises and cloud applications in a hybrid environment.
SmartFactor is used for adaptive authentication policies, and it does a good job balancing security and usability because low-risk logins stay simple while high-risk attempts automatically trigger stronger MFA requirements. This reduces unnecessary MFA fatigue for users while still improving overall account security.
Identity synchronization works well overall and helps keep user accounts, groups, and access permissions consistent across connected directories and cloud applications with minimal manual effort. The end-user experience has been very smooth overall since users can access most applications from a single portal with fewer password prompts and consistent authentication workflows.
Adaptive login features with Vigilance AI have been useful for identifying unusual login patterns and automatically applying stronger authentication when the risk level increases. HR-driven identity management makes onboarding and offboarding smoother by automatically provisioning and de-provisioning access based on employee status. This minimizes manual work and reduces the risk of orphaned accounts.
Enforcing MFA at the desktop level has strengthened endpoint security significantly because users still need strong authentication even when devices are offline, which helps reduce the risk of unauthorized local access.
What is most valuable?
OneLogin made a big difference during remote expansion because it centralized authentication and MFA policies across cloud apps without adding too much complexity for users. The best features are a seamless SSO experience, adaptive MFA, centralized access management, and a large number of pre-built integrations for SaaS applications.
SmartFactor adaptive authentication feature is especially useful because it adjusts security requirements based on login risk and user behavior. SmartFactor has worked well because it adds extra verifications only when login behavior looks risky, so users are not constantly dealing with MFA prompts during normal day-to-day access.
OneLogin's integration library is definitely one of the strongest parts of the platform. OneLogin's customer identity and access management features help provide a smoother and more secure login experience for external users while giving better control over authentication policies, access management, and scalability.
What needs improvement?
OneLogin's reporting and dashboard customization could be more flexible, and troubleshooting federation or integration issues can sometimes take more effort than expected. The UI is generally easy to use, but some admin sections feel a bit outdated, and more detailed troubleshooting documentation would help during complex integrations.
Better granular policy controls and more advanced analytics for authentication activity would be useful, especially for larger enterprise environments. More granular reporting and customization options would make administration even better.
For how long have I used the solution?
OneLogin has been used for approximately two years.
What do I think about the stability of the solution?
OneLogin is smooth and very stable.
What do I think about the scalability of the solution?
OneLogin scales well for enterprise environments, especially for organizations managing a large number of users and cloud applications, and the centralized SaaS integration model makes expansion fairly straightforward.
How are customer service and support?
Customer support is good.
Which solution did I use previously and why did I switch?
Before OneLogin, native application logins and some Microsoft AD Federation Services were mainly used, but the switch was made to get simpler cloud-based SSO , stronger MFA capabilities, and easier SaaS integration management.
How was the initial setup?
OneLogin's pricing is competitive compared to other enterprise IAM platforms, and the setup was relatively straightforward for standard SSO deployments, although more advanced integrations and policies required additional planning and configuration effort.
What was our ROI?
Good ROI has been seen mainly through reduced password-related support tickets, faster onboarding, and less time spent managing user access across multiple SaaS applications. OneLogin's centralized SSO and MFA management also reduced a lot of repetitive admin work for the IT team.
Which other solutions did I evaluate?
Okta, Microsoft Entra ID , and Ping Identity were evaluated before choosing OneLogin.
What other advice do I have?
Onboarding and application access provisioning are much faster now, and password-related support tickets have been reduced because users can access most applications through a single login portal. Planning application, integration, and MFA policies carefully from the beginning is advised for others looking into using OneLogin because OneLogin works best when access management and authentication workflows are standardized.
OneLogin has been a reliable and user-friendly IAM platform that helped simplify SSO and strengthen MFA adoption without creating too much complexity for users or administrators. This review is rated an eight out of ten.
Identity tools have strengthened compliance checks and real-time threat detection
What is our primary use case?
My main use case for OneLogin is to complete compliance checks, as I use it to detect if there are issues in ISO 27001, SOX, HIPAA, or GDPR.
A few months ago, I had a client that was a hospital for oncologies, and I had to use some AWS services to store data. I needed to check if it was compliant with GDPR.
I also use OneLogin to detect anomalous behaviors in real time.
What is most valuable?
OneLogin offers several best features that include helping me audit who accessed the system, when, and what they did. It helps me detect anomalous behavior, and it also has a single sign-on that allows me to control these features.
Additionally, OneLogin has Vigilance AI and threat detection, which provides real-time threat detection that protects against credential-based attacks.
OneLogin has positively impacted my organization because it gives me audit logs and compliance, both of which are very important for many of my clients, especially for this oncology hospital.
What needs improvement?
I think OneLogin is good, but it would be better if it could provide a mobile app that includes specific features, for example, to check logs or compliance.
For how long have I used the solution?
I have been using OneLogin for around two years.
What do I think about the stability of the solution?
OneLogin is stable.
What do I think about the scalability of the solution?
OneLogin's scalability is very easy. I only need to follow a few wizards, and then I can scale up or down at any time I want.
How was the initial setup?
I advise others looking into using OneLogin that it is very easy to use. I can deploy it in minutes, and playing with the functionalities can yield good results.
What was our ROI?
I believe there is time saved because I can generate reports in seconds or minutes, allowing me to detect all users and their devices. I don't have exact return on investment numbers since I don't manage that account directly, but I think my organization needs fewer employees and saves time.
What's my experience with pricing, setup cost, and licensing?
From what I've heard, pricing is interesting as it's cheaper than other solutions. The setup cost and licensing are also inexpensive because I don't have to spend a lot to access all these functionalities, which would be more expensive with other providers.
Which other solutions did I evaluate?
I haven't evaluated other options before choosing OneLogin because it was already in use by my client, who explained that they utilized this solution, and I needed to adapt my development around it.
What other advice do I have?
I think the user identity synchronization across directories functionality is very reliable and well-integrated. If I am running modern and cloud-first applications, it's very good, but if I am in a complex hybrid environment, I need to invest a bit more time to configure it.
The integration of phishing-resistant device trust has significantly reduced phishing attacks because I now have all devices registered from my users, requiring users to register new devices and unregister previous ones. I can't control everything, such as users clicking on suspicious emails, but this solution helps mitigate the problem.
I think the solution provides a very user-friendly experience for signing in and authenticating to needed applications. Nowadays, many users are accustomed to logging in with social networks, so they feel familiar with the process through this application.
I have used SmartFactor Authentication to adjust authentication flows in real time based on the risk score associated with the login attempt, and I find it very helpful. I first identify all the users entering the system, then I check all the devices, and then I start creating an entry system without rules, progressively adding more rules as I learn the user behavior.
I have not used the adaptive login flows with Vigilance AI, but I have seen a demo. The challenge I face is that I don't have access to a client that has implemented this. However, I heard it's spectacular because it shows real-time detection of spikes, regular behavior, and suspicious behavior, offering insights on how to control or mitigate risk.
HR-driven identity management plays a special role in streamlining employee identity handling in my organization because it helps identify all users and devices. Nowadays, users can have multiple devices such as smartwatches, iPods, iPads, and more.
My overall review rating for OneLogin is ten out of ten.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Secure access has protected sensitive employee data and simplifies multi-application logins
What is our primary use case?
One area where I have been using OneLogin is when I am working on an application that secures employee data, such as payroll. I usually access that data through OneLogin, which is the main secure database that I regularly use OneLogin to access.
Regarding my main use case with OneLogin, it is clear that when I am working on various applications from my screen, it saves me time by allowing me to log in to multiple applications at once from OneLogin as the main security entry. The other factor is that it is safe and provides a more secure user experience.
OneLogin positively impacts my organization as it serves as the main password management tool, preventing unauthorized access from malware attacks and cyber attacks. That is one of my main uses now.
What is most valuable?
What I appreciate most about the authentication feature is that it is easy to use and also secure. The most important aspect for me is the security it provides.
OneLogin has significantly impacted our organization, saving costs by reducing the number of employees needed to monitor application performance since you can access many applications from one entity. Working as a single user from anywhere is very beneficial for our enterprise as it promotes efficient growth through saved costs.
The integration of phishing-resistant device trust has made things easier and more secure for users, as it can detect malware attacks and prevent any unauthorized data attacks from fraudulent activities.
I have used Vigilance AI from the login flows, and it is very efficient when it comes to risk behavior detection. It is more secure than manual data connection entries and can detect threats easily compared to human capabilities.
What needs improvement?
I am open to the needed improvements. If they can work on the network part to ensure that it is more stable throughout, that would be sufficient for me.
For how long have I used the solution?
What do I think about the stability of the solution?
What do I think about the scalability of the solution?
How are customer service and support?
Which solution did I use previously and why did I switch?
What's my experience with pricing, setup cost, and licensing?
Which other solutions did I evaluate?
What other advice do I have?
I advise others looking into using OneLogin that it is a more secure entry point that can secure your data and password. It simplifies everything regarding security and can lead to cost savings while being very efficient.
I am satisfied at this time and can say that OneLogin is the best when it comes to enterprise security solutions, and I recommend it fully. I gave this review a rating of eight out of ten.
Centralized access has simplified daily operations and has strengthened identity security
What is our primary use case?
OneLogin serves as my primary platform for centralized identity and access management, particularly for managing user authentication and access to multiple enterprise applications. On a day-to-day basis, I use OneLogin to manage user access and authentication workflows. For example, when a new employee joins, I use the platform to provision their account, assign appropriate roles or groups, and grant access to required applications through single sign-on. This ensures that users can securely access all necessary systems with a single set of credentials.
Similarly, during offboarding, I use OneLogin to quickly revoke access across all connected applications, which helps maintain security and reduce the risk of unauthorized access. I also use it to enforce MFA policies, monitor login activity, and ensure that access controls are aligned with the organization's security requirements.
Beyond the core use cases, OneLogin plays an important role in improving user experience and operational efficiency. I rely on it for centralized visibility into user activity and authentication events, which helps in monitoring access patterns and identifying any unusual behavior. This adds an extra layer of oversight without requiring multiple tools. It also helps streamline application access management, as users can access multiple systems through a single interface, reducing the need for multiple credentials and minimizing password-related issues. Additionally, its integration capabilities allow it to fit seamlessly into the broader IT environment, supporting smoother and efficient workflows and reducing the administrative overhead. Overall, it not only strengthens security but also simplifies the access management process, making daily operations more efficient and manageable.
What is most valuable?
OneLogin offers a well-rounded set of features, but a few stand out as particularly valuable in day-to-day operations. One of the most important features is single sign-on. It allows users to access multiple applications with a single set of credentials, which significantly improves user experience while maintaining strong security controls. It also reduces password fatigue and lowers the number of access-related support requests.
Another key feature is multi-factor authentication, especially its adaptive or risk-based authentication capabilities. This adds an extra layer of security by requiring additional verification based on login context, helping to prevent unauthorized access without overly impacting usability.
The centralized cloud directory is another standout feature. It acts as a single source of truth for user identities, allowing seamless synchronization across multiple systems and simplifying identity management across both cloud and on-premise environments.
Additionally, OneLogin's extensive integration capabilities are highly beneficial, with a large catalog of pre-integrated applications and support for standards like SAML and OpenID Connect, making it easy to connect with a wide range of enterprise tools and platforms.
What needs improvement?
OneLogin already offers a strong and well-rounded feature set that effectively addresses the key identity and access management needs. If I were to add anything further, it would be an interest in seeing continued enhancements around advanced automation and intelligent insights, such as more context-aware access recommendations or deeper analytics into user behavior. These kinds of capabilities would further strengthen decision-making and streamline administrative tasks. Additionally, expanding pre-built integrations and templates for a wider range of applications could further simplify deployment and onboarding processes.
Overall, the platform features are comprehensive and continue to evolve, and any future enhancement would primarily serve to build on an already solid foundation, rather than address any major gap.
OneLogin already provides a stronger and comprehensive feature set that meets most identity and access management needs effectively. If I were to suggest any further enhancement, it would be around the continued expansion of intelligent automation and insights, such as more context-aware access recommendations and deeper analytics into user behavior. These additions would further streamline decision-making and enhance proactive security management. Additionally, further expansion in customization and reporting capabilities would allow organizations to tailor insights more closely to their specific operational or business requirements. There is also a potential to enhance the overall user experience by making certain configurations and workflows even more intuitive, especially for new users. That said, these are relatively incremental improvements. The platform is already mature and reliable, and these enhancements would primarily build on an already strong foundation rather than address any critical shortcomings.
OneLogin already delivers a very strong and comprehensive feature set, and most of the enhancements I would suggest are more about building on that solid foundation. One area that could add further value is the continued evolution of intelligent and adaptive capabilities, such as more advanced context-driven access insights and recommendations. Features in some other modern platforms can help organizations make faster, more informed decisions while maintaining strong security controls.
Additionally, further expansion in low-code or no-code configuration options for workflows and integration could make it even easier for teams to customize processes without requiring extensive technical effort. Another enhancement could be more dynamic and customizable user experience, allowing organizations to tailor dashboards and access portals more closely to their specific needs. Overall, these are incremental enhancements that would complement an already robust platform, helping make it even more flexible, intuitive, and aligned with evolving enterprise requirements.
For how long have I used the solution?
What do I think about the stability of the solution?
OneLogin is generally stable and reliable for day-to-day operations. The platform consistently handles authentication and single sign-on processes effectively, with most users reporting minimal downtime and steady performance. While there have been occasional service interruptions reported in the industry, these tend to be infrequent rather than a persistent issue. Overall, stability has improved over time with platform enhancements and architectural updates.
What do I think about the scalability of the solution?
OneLogin performs very well in terms of scalability and is designed to support growing and complex environments. The platform uses a modern horizontally scalable architecture, allowing it to handle increased workloads by distributing traffic across multiple systems. It has demonstrated the ability to process over 1 million authentication requests per minute per tenant, which highlights its capacity to support large-scale enterprise environments.
Additionally, its cloud-native design enables organizations to scale users, applications, and integrations without requiring major infrastructure changes. Overall, OneLogin offers strong scalability, making it suitable for organizations that are expanding or managing complex distributed environments easier.
How are customer service and support?
The customer support provided by OneLogin has generally been reliable and helpful, particularly for standard configuration queries and onboarding-related assistance. On the positive side, the support team is often described as responsive and knowledgeable, especially when dealing with common issues or guidance requests. Many users highlight that the support is quick to assist and acts as an extension of the internal team when needed.
Additionally, the availability of customer success programs, documentation, and 24/7 assistance helps ensure that organizations have multiple channels for support and guidance. That said, experiences can vary depending on the complexity and priority of the issue. In some cases, users have noted delays in response times or slower escalations for more complex problems, particularly outside standard support scenarios. Overall, OneLogin customer support is solid and dependable for most use cases.
Which solution did I use previously and why did I switch?
Prior to implementing OneLogin, we were using a more traditional fragmented identity management approach that relied on multiple tools and manual processes for access control. This created challenges around consistency, efficiency, and centralized visibility. We decided to switch to OneLogin to consolidate identity management into a single platform, improve automation, and enhance both security and user experience.
How was the initial setup?
My advice to organizations considering OneLogin would be to start with a clear understanding of their identity and access management requirements, including the number of users, applications, and level of security needed. It is important to plan the implementation carefully, especially around directory integration, access policies, and application onboarding. OneLogin is designed to be quick to implement and integrate with existing infrastructure, but proper planning ensures you get the maximum value from the start.
What was our ROI?
OneLogin has delivered clear return on investment after implementation, both in terms of cost savings and operational efficiency. From a measurable standpoint, one of the most noticeable improvements has been a reduction in IT support tickets, particularly those related to password resets. Industry data and real-world implementations show up to a 40 to 50 percent reduction in password-related help desk requests, which can directly lower support workload and costs.
In terms of time savings, automated provisioning and central access have led to significant efficiency gains. Organizations commonly report 80 to 90 percent time savings in user provisioning and de-provisioning tasks, which allows IT teams to focus on higher-value work instead of repetitive administrative activities. There are also tangible financial benefits. For example, reducing password resets alone can result in thousands of dollars saved annually, with some case studies showing savings of $100,000 per year due to the reduced help desk effort and improved productivity.
From a productivity perspective, single sign-on has minimized login friction, allowing employees to access applications faster and reducing downtime caused by login issues. Additionally, IT teams benefit from reduced manual workload, sometimes equivalent to saving the effort of a full-time support resource, while also improving response times on the more critical tasks. These combined improvements make the platform not only cost-effective but also a strong contributor to operational efficiency and security.
What's my experience with pricing, setup cost, and licensing?
Regarding pricing, setup cost, and licensing, my experience has been generally positive. The pricing structure is competitive and aligned with the enterprise-grade features, and it scales based on organizational needs. The initial setup cost and effort can vary depending on the complexity of the environment and integrations, but once implemented, the platform provides strong long-term value. Licensing is typically flexible and scalable, allowing organizations to expand usage as needed. Overall, while there is an upfront investment, the return in terms of efficiency, security, and ease of management makes it a worthwhile investment.
Which other solutions did I evaluate?
Before finalizing our decision, we did evaluate other identity and access management solutions, including Okta, Microsoft Azure Directory, and Ping Identity. Each of these platforms offers strong capabilities, but OneLogin stood out in its balance of ease of use, integration capabilities, and overall value. It aligned well with our requirements for centralized access management, scalability, and efficient deployment, which ultimately led to our decision.
What other advice do I have?
Organizations should take advantage of OneLogin's extensive integration ecosystem, which includes thousands of pre-integrated applications. This makes it easier to centralize access management and reduce complexity across systems. Providing proper training and internal documentation is also important. While the platform is intuitive, fully understanding its capabilities such as adaptive authentication and policy controls can help organizations make the most of OneLogin.
From a security perspective, OneLogin ensures that endpoint access is consistently protected, even when the devices are not connected to the network. This reduces the risk of unauthorized access in scenarios such as lost or stolen devices or offline login attempts, where traditional network-based controls may not apply. It also strengthens the overall authentication framework by extending protection beyond application-level access to the device level itself, ensuring that only verified users can access corporate systems from the outset. I rate this product a 9 out of 10.
Centralized access has reduced login issues and improves security with smooth single sign-on
What is our primary use case?
My main use case for OneLogin is to simplify and secure access management across multiple applications. We primarily use it for single sign-on so users can log in once and access all the tools they need without remembering multiple passwords.
How has it helped my organization?
Using OneLogin for single sign-on has definitely made a positive impact on both our users and our team. It has made daily work much easier since users no longer need to remember multiple passwords or log in to different systems separately. It has significantly reduced our login-related issues like password resets and account lockouts, which used to take a lot of our IT team's time. As a result, productivity has improved, and users can focus more on their work instead of dealing with access passwords.
One additional benefit I would like to highlight is the improved visibility and control for our IT team. With OneLogin, we can easily manage user access from a central place, which makes onboarding and offboarding much faster and more secure.
Overall, OneLogin has had a very positive impact on our organization. It has improved both efficiency and security across our systems. One of the key outcomes we have noticed is the significant reduction in login-related issues such as password resets or account lockouts, which has reduced the workload on our IT support team. At the same time, employees are able to access the tools they need much faster, which has improved overall productivity.
While we don't have exact numbers to share, we are definitely seeing noticeable improvement in several areas. For example, the number of password reset requests and login-related support tickets has gone down significantly since implementing OneLogin. Our IT team spends much less time handling access issues, which allows them to focus on more strategic tasks. We also observe faster onboarding and offboarding processes, which has improved overall operational efficiency.
What is most valuable?
The best features OneLogin offers are improved productivity and user experience. Multi-factor authentication adds an extra layer of security, helping protect sensitive data and reduce the risk of unauthorized access.
Our experience with multi-factor authentication in OneLogin has been very positive. Initially, there was a small learning curve for some users, but overall the adaptation was quite smooth. The setup process is straightforward, and once users understood the importance of the extra security step, they adapted quickly. From a security perspective, we have definitely seen improvements. It has significantly reduced the risk of unauthorized access and added an extra layer of protection for our sensitive systems and data. This has given both users and our IT teams more confidence in our overall security.
What needs improvement?
Overall, our experience with OneLogin has been very positive, but there are a few areas where it could be improved. One area is the user interface, which could be made more intuitive and modern, especially for new users who may need some time to get familiar with the platform.
One area of improvement would be to enhance the customization of features, especially when it comes to access policies and user workflows. This would allow an organization to tailor the platform more closely to their specific needs.