Overview

Product video
OneLogin by One Identity is a modern, cloud-based access management solution that seamlessly manages all digital identities for your workforce, customers and partners. OneLogin provides secure single sign-on (SSO), multi-factor authentication (MFA) with support for a wide array of passwordless authentication factors, adaptive authentication, desktop-level MFA, directory integration with AD, LDAP, G Suite and other external directories, identity lifecycle management and much more.
OneLogin uses powerful authentication and role-based user provisioning engine enabling you to implement least-privileged access controls and eliminate manual user management workflows. Moreover, OneLogin delivers multi-layer, context aware and risk-based protection, minimizing the most common attacks and resulting in increased security, frictionless user experiences, and compliance with regulatory requirements.
OneLogin has pre-built authentication connectors with thousands of third-party web applications with extensibility across your entire portfolio. With OneLogin, you can:
-Implement single sign-on (SSO) for users across mobile, web and desktop
-Enforce contextual multi-factor authentication (MFA) and access security policies, and automate user account provisioning
-Provision users with granular access permissions into the AWS Console/CLI or directly to AWS services
-Extend security controls across your cloud infrastructure by leveraging pre-built integrations with Amazon Control Tower, AWS IAM, AWS SSO, Amazon Cognito, and Amazon EventBridge
If interested in private offers, email us at partnercircle@oneidentity.com .
Highlights
- SSO: Automatically sync users across multiple directories in minutes to enable one-click access to all corporate applications, whether on-prem or in the cloud, and enforce strong security policies, plus self-service password reset.
- MULTI-FACTOR AUTHENTICATION (MFA): Supports many authentication methods, including passwordless, passkeys, one-time passcodes, push notifications, biometric data, security keys and more. With real-time reporting and monitoring capabilities, gain insights into authentication events, enabling proactive detection and response to potential security incidents.
- ADVANCED DIRECTORY: Acts as your secure directory in the cloud with an intuitive web-based interface that allows you to manage users, their manager relationship, authentication policies and access controls.
Details
Introducing multi-product solutions
You can now purchase comprehensive solutions tailored to use cases and industries.
Features and programs
Buyer guide

Financing for AWS Marketplace purchases
Pricing
Free trial
Dimension | Description | Cost/12 months |
|---|---|---|
OneLogin 1-App Plan | Standard User License, OneLogin 1-App Plan for AWS | $12.00 |
OneLogin Advanced Plan | Standard User License, OneLogin Advanced Plan | $48.00 |
OneLogin Professional Plan | Standard User License, OneLogin Professional Plan | $96.00 |
Custom | Private offers available - email partners@onelogin.com | $96.00 |
Vendor refund policy
Please refer to OneLogin terms of service https://www.onelogin.com/terms
How can we make this page better?
Legal
Vendor terms and conditions
Content disclaimer
Delivery details
Software as a Service (SaaS)
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
Support
Vendor support
To learn more about OneLogin Customer Support, visit
AWS infrastructure support
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.

Standard contract
Customer reviews
Centralized sign-on has simplified secure employee access to all business applications
What is our primary use case?
My main use case for OneLogin by One Identity is managing all the employees with full security to access our business applications through single sign-on and centralized identity management.
What is most valuable?
OneLogin by One Identity offers many features, but for me, the best ones are single sign-on, multi-factor authentication, and centralized access management, because I especially appreciate being able to access multiple work applications from one place without managing a separate password for each tool.
Multi-factor authentication by OneLogin has made our login process more secure without adding much extra effort, as users verify their identity with an additional step when signing into our tools or internal applications, which gives us more confidence that only authorized people are accessing our company applications.
OneLogin by One Identity has positively impacted my organization by making access management more streamlined, as it reduces the need to manage multiple passwords, makes it easier for our employees to access applications when they need, and adds stronger security through SSO and MFA.
What needs improvement?
OneLogin by One Identity could be improved by making the MFA process even quicker and more seamless, especially when accessing applications frequently, along with a simpler admin interface and more customization options for the login policy, which would make it easier to manage.
For how long have I used the solution?
I have been using OneLogin by One Identity for the last two years.
What do I think about the stability of the solution?
OneLogin by One Identity is stable.
What do I think about the scalability of the solution?
The scalability of OneLogin by One Identity is very good, as it is a reliable product for all our applications while adding the extra layer of security.
How are customer service and support?
The customer support for OneLogin by One Identity is superb and always helpful for me.
Which solution did I use previously and why did I switch?
I did not previously use a different solution before OneLogin by One Identity.
How was the initial setup?
Pricing, setup cost, and licensing are very moderate—not very cheap or very costly.
What was our ROI?
We have seen a return on investment with OneLogin by One Identity, mainly through time savings and reduced administrative efforts, as centralized access and SSO have reduced password-related support work, while faster onboarding and user application management helped our IT team spend less time on routine access tasks.
Which other solutions did I evaluate?
Before choosing OneLogin by One Identity, I did not evaluate other options.
What other advice do I have?
Regarding OneLogin by One Identity's AI capabilities, I think they can add more value by helping organizations identify unusual access patterns and potential security risks. From a governance perspective, having clear controls, better visibility, and audit trails around AI-driven decisions is important. Overall, I see AI as a useful complement to existing identity and better security controls.
My impression of OneLogin by One Identity's ability to provide a seamless end-user experience for signing in and authenticating to needed applications is that the SSO solution provides a smooth sign-in experience. SSO reduces the need to repeatedly enter passwords, while centralized authentication makes it easier for users to access all our internal applications without adding unnecessary steps.
I would rate OneLogin by One Identity a 10 out of 10 because this solution makes accessing multiple work applications simple while maintaining strong security. The combination of SSO, MFA, and centralized access makes the overall login experience more reliable and convenient for our team as well as for me.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Centralized identity has streamlined onboarding and simplified secure access across applications
What is our primary use case?
OneLogin by One Identity is used to manage user identities and single sign-ons, as well as manage access to individual applications used in our organization.
A specific example of how OneLogin by One Identity manages access and single sign-on is through integration with our existing applications so that users have easy and secure access without the need for multiple credentials to other applications in the organization.
In terms of our main use case, there are many integrations available, and they are very seamless and easy to use.
What is most valuable?
One of the best features that OneLogin by One Identity offers is its very broad spectrum of integrations with multiple applications, which is one of the best advantages for us.
I find the ease of setting up these integrations to be very straightforward, and there is extensive documentation and many guides available on the platform for us to use.
OneLogin by One Identity has positively impacted our organization because previously we managed access to individual applications separately, which was very tedious. With the integration of this identity manager, we were able to streamline our workflows; when users are onboarding to the organization, we can easily assign a set of application access and remove that access with one click during offboarding.
What needs improvement?
Overall, the experience with OneLogin by One Identity has been very good, but I feel there are some improvements that can be made, particularly regarding how the integrations happen and providing more support to some of the niche applications.
For how long have I used the solution?
We have been using OneLogin by One Identity for about five years.
What other advice do I have?
Regarding OneLogin by One Identity's AI capabilities, I find its accuracy and reliability of output to be very good so far, but it definitely needs verification from a human.
My advice for others looking into using OneLogin by One Identity is that the management of identity and identity security is a critical topic in the industry, and it is essential for an organization to have a product OneLogin by One Identity to streamline their identity management.
Overall, OneLogin by One Identity is doing a very good job in helping customers manage their identities, which is one of the most critical attack surfaces nowadays with the growing threat landscapes.
I found this interview to be very straightforward and easy. I would rate this product an 8 out of 10.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Secure access has simplified daily logins and has improved password management for our clients
What is our primary use case?
OneLogin by One Identity is implemented as a distributor solution, providing implementation and support as we are a partner of One Identity. We provide a solution for Identity and Access Management requirements for our customers using One Identity. One customer stands out where we have implemented OneLogin by One Identity with a bundle solution that includes UEM, requiring both a device management solution and an Identity and Access Management solution. We provided OneLogin by One Identity to fulfill their Identity and Access Management requirement.
What is most valuable?
The best features OneLogin by One Identity offers include providing single sign-on options, which are very helpful for customers using those pages. For user experience, we have received mixed feedback, as some users find it very user-friendly, while non-technical users find it somewhat difficult. However, most users say it is user-friendly. OneLogin by One Identity has positively impacted my organization and our customers by making their environment secure, as users do not need to save their passwords in insecure ways, thereby making their environment more secure. For my customers, it has become very useful, and their daily life gets easier because they do not need to type the password repeatedly, which is very effective for them.
What needs improvement?
OneLogin by One Identity is a good solution with minimal improvements needed. In our country, many small and medium businesses find it not very affordable, so a subscription plan for those companies would make it better.
For how long have I used the solution?
I have been using OneLogin by One Identity for approximately two years.
What do I think about the stability of the solution?
In my experience, OneLogin by One Identity is a very stable solution.
What do I think about the scalability of the solution?
OneLogin by One Identity has really good scalability.
How are customer service and support?
Customer support is generally really good, although I have experienced some delays at times, but overall it is good.
Which solution did I use previously and why did I switch?
I have only used One Identity and did not previously use a different solution.
What was our ROI?
OneLogin by One Identity is a very time-saving solution based on my experience.
Which other solutions did I evaluate?
I did not evaluate other options before choosing OneLogin by One Identity, as it is the only One Identity solution we considered.
What other advice do I have?
Regarding OneLogin by One Identity's AI capabilities, its governance and security is good, and I do not see any need for improvement in that area. I think its accuracy and reliability of output are around 75% to 80%.
I did not deploy the Smart Factor Authentication feature for any of our customers, so I do not know how it would affect our environment. Regarding user identity synchronization across directories functionality in OneLogin by One Identity, I find it to be a good feature with no issues in my experience. The integration of phishing-resistant device trust has a good impact on my authentication processes. My impression of OneLogin by One Identity's ability to provide a seamless end-user experience for signing in and authenticating to needed applications is very good, and customers are using it without any issues. I did not use the adaptive login flows with Vigilance AI. HR-driven identity management plays a significant role in streamlining employee identity handling in our customer's environments, improving their business flow.
My advice for others looking into using OneLogin by One Identity is to do a POC before purchasing to match their requirements with the solution, as it is overall a good solution. I rate this product a 10 overall.
Which deployment model are you using for this solution?
If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?
Centralized access has streamlined onboarding and strengthened authentication for all users
What is our primary use case?
OneLogin by One Identity is primarily used for identity and access management, with a focus on SSO and MFA. This allows users to access necessary applications through a centralized login rather than maintaining separate credentials for each application. Whether an employee needs access to Microsoft 365, Salesforce, or internal business applications, those apps are integrated with OneLogin by One Identity. Users log in once through the platform, complete MFA if necessary, and access applications they are authorized to use.
OneLogin by One Identity is also leveraged during onboarding and offboarding processes. New hires gain access based on their roles, and when someone leaves, their access is disabled centrally rather than relying on individual application teams to remove accounts.
What is most valuable?
OneLogin by One Identity's standout features are SSO and MFA, making the login process simpler for users and more secure. Centralized user and access management allows the IT team to manage multiple application access from one place. The reporting and user activity visibility is beneficial for troubleshooting access issues or reviewing security. Automation for onboarding and offboarding is crucial in large organizations as manual access management across applications is difficult. Integration with existing environments adds value, yet challenges still arise with legacy applications and varied authentication requirements.
What needs improvement?
Improving the integration of legacy applications would reduce manual work during implementation. Enhanced automation around access reviews and role changes could aid management as user applications grow. Additionally, simplifying the authentication process, particularly when using multiple devices, would improve user experience. Better automation could enhance access review and role change processes. OneLogin by One Identity is strong for modern applications, but making legacy integration easier would enhance its utility in enterprise environments.
For how long have I used the solution?
I have been using OneLogin by One Identity for around two years.
What do I think about the stability of the solution?
OneLogin by One Identity has been stable overall. I have not experienced major downtime that significantly affected users. Occasionally, there are authentication issues or short service interruptions, but they have not impacted significantly. However, since authentication is centralized, maintaining availability is crucial as service disruptions can affect access to multiple applications.
What do I think about the scalability of the solution?
OneLogin by One Identity scales well due to its cloud-based nature, allowing the organization to onboard new users and integrate additional applications without expanding IAM infrastructure. The challenge is not the number of users, but the environment's complexity. Adding applications can complicate integration and access policies, particularly with legacy or custom applications.
How are customer service and support?
My experience with OneLogin by One Identity's customer support has been positive, rating it eight out of ten. During the implementation, the support was highly effective and deserving of a ten out of ten from my perspective.
How was the initial setup?
The setup for OneLogin by One Identity was straightforward, but understanding the license's scope was crucial for assessing total implementation. Integrating with existing applications and directories was essential, as was considering the total cost beyond just licensing. Professional services, customization, and legacy application integration come with extra effort.
What was our ROI?
OneLogin by One Identity brings ROI by reducing manual work involved in user access management, rather than direct cost savings. Streamlined onboarding and centralized provisioning based on user roles save time. Central access disabling during offboarding minimizes the chance of leaving access active in applications. I have not formally measured a specific percentage, but I have observed less repetitive admin work, fewer manual steps, and easier troubleshooting of authentication issues.
What's my experience with pricing, setup cost, and licensing?
The pricing and licensing for OneLogin by One Identity were straightforward. The cost depends on the number of users, features required, and level of functionality. While the initial setup cost was not a major concern, I ensured I understood the licensing scope and potential extra requirements. Integration with existing applications and directories was crucial to consider for total costs.
Which other solutions did I evaluate?
I considered alternatives such as Microsoft Entra ID, Okta, and Ping Identity, evaluating factors including SSO and MFA capability, application integration, user provisioning, security controls, ease of admin, and licensing. My focus was not on feature count, but on which product best fits within the existing environment.
What other advice do I have?
Before implementing, assess organizational requirements instead of choosing OneLogin by One Identity based solely on features. Conduct a thorough review of applications, directories, and authentication processes. Test with crucial applications first to refine the user experience, then expand gradually.
Understand the licensing scope and integration effort needed, including with legacy systems, to have a complete view of the total cost of ownership.
When relying on AI capabilities, ensure they are governed carefully due to the sensitive nature of identity data, emphasizing human review in security decisions. Utilize AI as a support tool to identify risky behaviors but maintain human oversight.
Risk-based and adaptive authentication approaches enhance security without overwhelming users with unnecessary prompts. Strike the right balance in risk settings and review false positives for a smooth user experience.
I give OneLogin by One Identity an overall rating of eight out of ten.
Single sign-on has simplified access to cloud apps and reduced password reset workload
What is our primary use case?
The main use case for OneLogin by One Identity when I was using it at IQ was having one single user ID and one single password that gave me access to applications that were assigned to my profile.
Any cloud application is a use case for OneLogin by One Identity. Let me take the example of Salesforce. Salesforce uses your email as your user ID to log in, and sometimes your email has been used for another Salesforce instance, another Salesforce application, or another one you've used at a different company. Using OneLogin by One Identity, it had the SAML page that connected with Salesforce. OneLogin by One Identity had my user ID and password that was synced with Active Directory. If Salesforce was an assigned application, it would appear in my OneLogin by One Identity screen once I logged in, and I could just launch the application.
What is most valuable?
Based on my experience, some of the best features OneLogin by One Identity offers include built-in SAML pages that can be utilized by most cloud application providers. It also allows for a second login option directly to the SaaS application if you're using external contractors. OneLogin by One Identity didn't restrict that privilege, especially for support organizations, where you had an offshore support organization that needed one-time access to the application. You don't need to give them OneLogin by One Identity licenses or Active Directory accounts. You could have them use user ID and password to connect while your employees used OneLogin by One Identity. OneLogin by One Identity provided that additional security, which an application user ID and password could not provide. OneLogin by One Identity enforced multi-factor authentication, which wasn't enforced in many cloud applications.
OneLogin by One Identity has positively impacted my organization in that one big benefit was onboarding and offboarding. From an onboarding perspective, it was easier to train the user to have just one application to log into, which was OneLogin by One Identity. Offboarding was amazing. When a person left, I didn't have to search which applications they had access to. Once their Active Directory account was disabled and OneLogin by One Identity was disabled, they had access to none of the company's confidential applications and data.
What needs improvement?
The multi-factor authentication did improve security. In terms of productivity, initially it was a challenge. People were not used to getting SMS messages on their phones, especially if it's not a company provided phone. Some people even complained that they didn't want to use their phone to get work-related SMS messages even if it's multi-factor authentication. It didn't provide smoothness or ease in operations to begin with. Eventually, it helped because users did not have to remember so many user IDs and passwords. It was only one user ID and password for OneLogin by One Identity. So we had fewer trouble tickets and service requests and challenges with password resets and other issues. Eventually, user satisfaction was improved.
The only thing I find confusing, regardless of OneLogin by One Identity or other applications, is the reliance on Microsoft Authenticator and there are too many MFA applications. If OneLogin by One Identity could centralize and have one application such as Microsoft Authenticator or any other application, even if it was a biometric that supported OneLogin by One Identity multi-factor authentication, that would help because it's sometimes difficult having so many MFA authenticator applications to manage.
For how long have I used the solution?
I have been working in my current field for probably thirty years.
What do I think about the stability of the solution?
OneLogin by One Identity is stable.
What do I think about the scalability of the solution?
We scaled OneLogin by One Identity globally, so it is very scalable.
How are customer service and support?
There is room for improvement regarding customer support for OneLogin by One Identity.
Which solution did I use previously and why did I switch?
We didn't have an IAM solution before using OneLogin by One Identity.
How was the initial setup?
OneLogin by One Identity was initially deployed on-premises and then we moved it to a private cloud.
What about the implementation team?
We used AWS for our private cloud deployment of OneLogin by One Identity.
What was our ROI?
I can definitely mention that I don't have the metrics, but I can share that from a service desk perspective, the number of password reset calls reduced. As the calls reduced for password resets, which was the highest number of calls before OneLogin by One Identity, we could optimize our service desk employees and repurpose the ones that were needed for project work.
What's my experience with pricing, setup cost, and licensing?
I did not purchase OneLogin by One Identity through the AWS Marketplace. It was directly through a OneLogin by One Identity reseller or through the direct company, but not through the marketplace.
Which other solutions did I evaluate?
Before choosing OneLogin by One Identity, Okta was the only option we looked at.
What other advice do I have?
I would ask anyone looking into using OneLogin by One Identity to take a phased approach, either going by region in a multi-company organization or by company because sometimes you have small integration issues to resolve, especially with cloud applications and rules. Make sure that you resolve that with a smaller impacted population rather than implementing something globally in a large scale and then having bigger problems to deal with.
I rate OneLogin by One Identity a nine on a scale of one to ten. I choose nine for my rating of OneLogin by One Identity because I believe even the best of us have an opportunity to improve. We can never be a ten, or we should not be a ten. We should always aspire to improve.
Regarding OneLogin by One Identity's AI capabilities, my impression of its governance and security is excellent. My impression of its accuracy and reliability of output is also excellent.
We reviewed SmartFactor Authentication for OneLogin by One Identity, but had not implemented it while I was at IQ.
My impression of the User Identity Synchronization across directories functionality in OneLogin by One Identity is that it is very strong, actually in most single sign-on providers.
The integration of phishing-resistant device trust on my authentication processes is that I don't want to mix the two together. OneLogin by One Identity is, to me, a case where phishing should be managed through other services rather than OneLogin by One Identity. OneLogin by One Identity is, in my mind, an identity and access management solution. It's not an email security management solution.
From a user perspective, with the right amount of training and documentation, OneLogin by One Identity provides a very seamless end-user experience for signing in and authenticating to needed applications. They're simply logging into an application like Citrix in the good old days, and once you get into the MetaFrame, you launch your app. OneLogin by One Identity is the same. Once you log into OneLogin by One Identity, you have all your apps in a single form or single page.
I wasn't involved in the decision-making for pricing, setup cost, and licensing for OneLogin by One Identity.