OneLogin Workforce Identity logo

    OneLogin Workforce Identity

    Elevate organizational security with strong and adaptive authentication, preventing unauthorized access to your most critical systems, applications and sensitive data.

    Ratings and reviews

    4.2
    102 ratings
    3 star
    1 star
    49%
    50%
    0%
    1%
    0%
    45 AWS reviews
    |
    57 external reviews
    External reviews are from G2  and PeerSpot .

    Filters

    Review type

    AWS Marketplace reviews
    External reviews
    Reviews (102)
    Kishan Chand

    Centralized sign-on has simplified secure employee access to all business applications

    Reviewed on Sep 24, 2026
    Review from a verified AWS customer

    What is our primary use case?

    My main use case for OneLogin by One Identity is managing all the employees with full security to access our business applications through single sign-on and centralized identity management.

    What is most valuable?

    OneLogin by One Identity offers many features, but for me, the best ones are single sign-on, multi-factor authentication, and centralized access management, because I especially appreciate being able to access multiple work applications from one place without managing a separate password for each tool.

    Multi-factor authentication by OneLogin has made our login process more secure without adding much extra effort, as users verify their identity with an additional step when signing into our tools or internal applications, which gives us more confidence that only authorized people are accessing our company applications.

    OneLogin by One Identity has positively impacted my organization by making access management more streamlined, as it reduces the need to manage multiple passwords, makes it easier for our employees to access applications when they need, and adds stronger security through SSO and MFA.

    What needs improvement?

    OneLogin by One Identity could be improved by making the MFA process even quicker and more seamless, especially when accessing applications frequently, along with a simpler admin interface and more customization options for the login policy, which would make it easier to manage.

    For how long have I used the solution?

    I have been using OneLogin by One Identity for the last two years.

    What do I think about the stability of the solution?

    OneLogin by One Identity is stable.

    What do I think about the scalability of the solution?

    The scalability of OneLogin by One Identity is very good, as it is a reliable product for all our applications while adding the extra layer of security.

    How are customer service and support?

    The customer support for OneLogin by One Identity is superb and always helpful for me.

    Which solution did I use previously and why did I switch?

    I did not previously use a different solution before OneLogin by One Identity.

    How was the initial setup?

    Pricing, setup cost, and licensing are very moderate—not very cheap or very costly.

    What was our ROI?

    We have seen a return on investment with OneLogin by One Identity, mainly through time savings and reduced administrative efforts, as centralized access and SSO have reduced password-related support work, while faster onboarding and user application management helped our IT team spend less time on routine access tasks.

    Which other solutions did I evaluate?

    Before choosing OneLogin by One Identity, I did not evaluate other options.

    What other advice do I have?

    Regarding OneLogin by One Identity's AI capabilities, I think they can add more value by helping organizations identify unusual access patterns and potential security risks. From a governance perspective, having clear controls, better visibility, and audit trails around AI-driven decisions is important. Overall, I see AI as a useful complement to existing identity and better security controls.

    My impression of OneLogin by One Identity's ability to provide a seamless end-user experience for signing in and authenticating to needed applications is that the SSO solution provides a smooth sign-in experience. SSO reduces the need to repeatedly enter passwords, while centralized authentication makes it easier for users to access all our internal applications without adding unnecessary steps.

    I would rate OneLogin by One Identity a 10 out of 10 because this solution makes accessing multiple work applications simple while maintaining strong security. The combination of SSO, MFA, and centralized access makes the overall login experience more reliable and convenient for our team as well as for me.

    Which deployment model are you using for this solution?

    Public Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Amazon Web Services (AWS)
    Yasiru Perera

    Centralized identity has streamlined onboarding and simplified secure access across applications

    Reviewed on Sep 24, 2026
    Review from a verified AWS customer

    What is our primary use case?

    OneLogin by One Identity is used to manage user identities and single sign-ons, as well as manage access to individual applications used in our organization.

    A specific example of how OneLogin by One Identity manages access and single sign-on is through integration with our existing applications so that users have easy and secure access without the need for multiple credentials to other applications in the organization.

    In terms of our main use case, there are many integrations available, and they are very seamless and easy to use.

    What is most valuable?

    One of the best features that OneLogin by One Identity offers is its very broad spectrum of integrations with multiple applications, which is one of the best advantages for us.

    I find the ease of setting up these integrations to be very straightforward, and there is extensive documentation and many guides available on the platform for us to use.

    OneLogin by One Identity has positively impacted our organization because previously we managed access to individual applications separately, which was very tedious. With the integration of this identity manager, we were able to streamline our workflows; when users are onboarding to the organization, we can easily assign a set of application access and remove that access with one click during offboarding.

    What needs improvement?

    Overall, the experience with OneLogin by One Identity has been very good, but I feel there are some improvements that can be made, particularly regarding how the integrations happen and providing more support to some of the niche applications.

    For how long have I used the solution?

    We have been using OneLogin by One Identity for about five years.

    What other advice do I have?

    Regarding OneLogin by One Identity's AI capabilities, I find its accuracy and reliability of output to be very good so far, but it definitely needs verification from a human.

    My advice for others looking into using OneLogin by One Identity is that the management of identity and identity security is a critical topic in the industry, and it is essential for an organization to have a product OneLogin by One Identity to streamline their identity management.

    Overall, OneLogin by One Identity is doing a very good job in helping customers manage their identities, which is one of the most critical attack surfaces nowadays with the growing threat landscapes.

    I found this interview to be very straightforward and easy. I would rate this product an 8 out of 10.

    Which deployment model are you using for this solution?

    Public Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Amazon Web Services (AWS)
    Uththara Kothalawala

    Secure access has simplified daily logins and has improved password management for our clients

    Reviewed on Sep 15, 2026
    Review from a verified AWS customer

    What is our primary use case?

    OneLogin by One Identity is implemented as a distributor solution, providing implementation and support as we are a partner of One Identity. We provide a solution for Identity and Access Management requirements for our customers using One Identity. One customer stands out where we have implemented OneLogin by One Identity with a bundle solution that includes UEM, requiring both a device management solution and an Identity and Access Management solution. We provided OneLogin by One Identity to fulfill their Identity and Access Management requirement.

    What is most valuable?

    The best features OneLogin by One Identity offers include providing single sign-on options, which are very helpful for customers using those pages. For user experience, we have received mixed feedback, as some users find it very user-friendly, while non-technical users find it somewhat difficult. However, most users say it is user-friendly. OneLogin by One Identity has positively impacted my organization and our customers by making their environment secure, as users do not need to save their passwords in insecure ways, thereby making their environment more secure. For my customers, it has become very useful, and their daily life gets easier because they do not need to type the password repeatedly, which is very effective for them.

    What needs improvement?

    OneLogin by One Identity is a good solution with minimal improvements needed. In our country, many small and medium businesses find it not very affordable, so a subscription plan for those companies would make it better.

    For how long have I used the solution?

    I have been using OneLogin by One Identity for approximately two years.

    What do I think about the stability of the solution?

    In my experience, OneLogin by One Identity is a very stable solution.

    What do I think about the scalability of the solution?

    OneLogin by One Identity has really good scalability.

    How are customer service and support?

    Customer support is generally really good, although I have experienced some delays at times, but overall it is good.

    Which solution did I use previously and why did I switch?

    I have only used One Identity and did not previously use a different solution.

    What was our ROI?

    OneLogin by One Identity is a very time-saving solution based on my experience.

    Which other solutions did I evaluate?

    I did not evaluate other options before choosing OneLogin by One Identity, as it is the only One Identity solution we considered.

    What other advice do I have?

    Regarding OneLogin by One Identity's AI capabilities, its governance and security is good, and I do not see any need for improvement in that area. I think its accuracy and reliability of output are around 75% to 80%.

    I did not deploy the Smart Factor Authentication feature for any of our customers, so I do not know how it would affect our environment. Regarding user identity synchronization across directories functionality in OneLogin by One Identity, I find it to be a good feature with no issues in my experience. The integration of phishing-resistant device trust has a good impact on my authentication processes. My impression of OneLogin by One Identity's ability to provide a seamless end-user experience for signing in and authenticating to needed applications is very good, and customers are using it without any issues. I did not use the adaptive login flows with Vigilance AI. HR-driven identity management plays a significant role in streamlining employee identity handling in our customer's environments, improving their business flow.

    My advice for others looking into using OneLogin by One Identity is to do a POC before purchasing to match their requirements with the solution, as it is overall a good solution. I rate this product a 10 overall.

    Which deployment model are you using for this solution?

    Private Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Amazon Web Services (AWS)
    Nikita B

    Centralized access has streamlined onboarding and strengthened authentication for all users

    Reviewed on Sep 07, 2026
    Review provided by PeerSpot

    What is our primary use case?

    OneLogin by One Identity is primarily used for identity and access management, with a focus on SSO and MFA. This allows users to access necessary applications through a centralized login rather than maintaining separate credentials for each application. Whether an employee needs access to Microsoft 365, Salesforce, or internal business applications, those apps are integrated with OneLogin by One Identity. Users log in once through the platform, complete MFA if necessary, and access applications they are authorized to use.

    OneLogin by One Identity is also leveraged during onboarding and offboarding processes. New hires gain access based on their roles, and when someone leaves, their access is disabled centrally rather than relying on individual application teams to remove accounts.

    What is most valuable?

    OneLogin by One Identity's standout features are SSO and MFA, making the login process simpler for users and more secure. Centralized user and access management allows the IT team to manage multiple application access from one place. The reporting and user activity visibility is beneficial for troubleshooting access issues or reviewing security. Automation for onboarding and offboarding is crucial in large organizations as manual access management across applications is difficult. Integration with existing environments adds value, yet challenges still arise with legacy applications and varied authentication requirements.

    What needs improvement?

    Improving the integration of legacy applications would reduce manual work during implementation. Enhanced automation around access reviews and role changes could aid management as user applications grow. Additionally, simplifying the authentication process, particularly when using multiple devices, would improve user experience. Better automation could enhance access review and role change processes. OneLogin by One Identity is strong for modern applications, but making legacy integration easier would enhance its utility in enterprise environments.

    For how long have I used the solution?

    I have been using OneLogin by One Identity for around two years.

    What do I think about the stability of the solution?

    OneLogin by One Identity has been stable overall. I have not experienced major downtime that significantly affected users. Occasionally, there are authentication issues or short service interruptions, but they have not impacted significantly. However, since authentication is centralized, maintaining availability is crucial as service disruptions can affect access to multiple applications.

    What do I think about the scalability of the solution?

    OneLogin by One Identity scales well due to its cloud-based nature, allowing the organization to onboard new users and integrate additional applications without expanding IAM infrastructure. The challenge is not the number of users, but the environment's complexity. Adding applications can complicate integration and access policies, particularly with legacy or custom applications.

    How are customer service and support?

    My experience with OneLogin by One Identity's customer support has been positive, rating it eight out of ten. During the implementation, the support was highly effective and deserving of a ten out of ten from my perspective.

    How was the initial setup?

    The setup for OneLogin by One Identity was straightforward, but understanding the license's scope was crucial for assessing total implementation. Integrating with existing applications and directories was essential, as was considering the total cost beyond just licensing. Professional services, customization, and legacy application integration come with extra effort.

    What was our ROI?

    OneLogin by One Identity brings ROI by reducing manual work involved in user access management, rather than direct cost savings. Streamlined onboarding and centralized provisioning based on user roles save time. Central access disabling during offboarding minimizes the chance of leaving access active in applications. I have not formally measured a specific percentage, but I have observed less repetitive admin work, fewer manual steps, and easier troubleshooting of authentication issues.

    What's my experience with pricing, setup cost, and licensing?

    The pricing and licensing for OneLogin by One Identity were straightforward. The cost depends on the number of users, features required, and level of functionality. While the initial setup cost was not a major concern, I ensured I understood the licensing scope and potential extra requirements. Integration with existing applications and directories was crucial to consider for total costs.

    Which other solutions did I evaluate?

    I considered alternatives such as Microsoft Entra ID, Okta, and Ping Identity, evaluating factors including SSO and MFA capability, application integration, user provisioning, security controls, ease of admin, and licensing. My focus was not on feature count, but on which product best fits within the existing environment.

    What other advice do I have?

    Before implementing, assess organizational requirements instead of choosing OneLogin by One Identity based solely on features. Conduct a thorough review of applications, directories, and authentication processes. Test with crucial applications first to refine the user experience, then expand gradually.

    Understand the licensing scope and integration effort needed, including with legacy systems, to have a complete view of the total cost of ownership.

    When relying on AI capabilities, ensure they are governed carefully due to the sensitive nature of identity data, emphasizing human review in security decisions. Utilize AI as a support tool to identify risky behaviors but maintain human oversight.

    Risk-based and adaptive authentication approaches enhance security without overwhelming users with unnecessary prompts. Strike the right balance in risk settings and review false positives for a smooth user experience.

    I give OneLogin by One Identity an overall rating of eight out of ten.

    Schakravarty Chakrabarti

    Single sign-on has simplified access to cloud apps and reduced password reset workload

    Reviewed on Sep 06, 2026
    Review from a verified AWS customer

    What is our primary use case?

    The main use case for OneLogin by One Identity when I was using it at IQ was having one single user ID and one single password that gave me access to applications that were assigned to my profile.

    Any cloud application is a use case for OneLogin by One Identity. Let me take the example of Salesforce. Salesforce uses your email as your user ID to log in, and sometimes your email has been used for another Salesforce instance, another Salesforce application, or another one you've used at a different company. Using OneLogin by One Identity, it had the SAML page that connected with Salesforce. OneLogin by One Identity had my user ID and password that was synced with Active Directory. If Salesforce was an assigned application, it would appear in my OneLogin by One Identity screen once I logged in, and I could just launch the application.

    What is most valuable?

    Based on my experience, some of the best features OneLogin by One Identity offers include built-in SAML pages that can be utilized by most cloud application providers. It also allows for a second login option directly to the SaaS application if you're using external contractors. OneLogin by One Identity didn't restrict that privilege, especially for support organizations, where you had an offshore support organization that needed one-time access to the application. You don't need to give them OneLogin by One Identity licenses or Active Directory accounts. You could have them use user ID and password to connect while your employees used OneLogin by One Identity. OneLogin by One Identity provided that additional security, which an application user ID and password could not provide. OneLogin by One Identity enforced multi-factor authentication, which wasn't enforced in many cloud applications.

    OneLogin by One Identity has positively impacted my organization in that one big benefit was onboarding and offboarding. From an onboarding perspective, it was easier to train the user to have just one application to log into, which was OneLogin by One Identity. Offboarding was amazing. When a person left, I didn't have to search which applications they had access to. Once their Active Directory account was disabled and OneLogin by One Identity was disabled, they had access to none of the company's confidential applications and data.

    What needs improvement?

    The multi-factor authentication did improve security. In terms of productivity, initially it was a challenge. People were not used to getting SMS messages on their phones, especially if it's not a company provided phone. Some people even complained that they didn't want to use their phone to get work-related SMS messages even if it's multi-factor authentication. It didn't provide smoothness or ease in operations to begin with. Eventually, it helped because users did not have to remember so many user IDs and passwords. It was only one user ID and password for OneLogin by One Identity. So we had fewer trouble tickets and service requests and challenges with password resets and other issues. Eventually, user satisfaction was improved.

    The only thing I find confusing, regardless of OneLogin by One Identity or other applications, is the reliance on Microsoft Authenticator and there are too many MFA applications. If OneLogin by One Identity could centralize and have one application such as Microsoft Authenticator or any other application, even if it was a biometric that supported OneLogin by One Identity multi-factor authentication, that would help because it's sometimes difficult having so many MFA authenticator applications to manage.

    For how long have I used the solution?

    I have been working in my current field for probably thirty years.

    What do I think about the stability of the solution?

    OneLogin by One Identity is stable.

    What do I think about the scalability of the solution?

    We scaled OneLogin by One Identity globally, so it is very scalable.

    How are customer service and support?

    There is room for improvement regarding customer support for OneLogin by One Identity.

    Which solution did I use previously and why did I switch?

    We didn't have an IAM solution before using OneLogin by One Identity.

    How was the initial setup?

    OneLogin by One Identity was initially deployed on-premises and then we moved it to a private cloud.

    What about the implementation team?

    We used AWS for our private cloud deployment of OneLogin by One Identity.

    What was our ROI?

    I can definitely mention that I don't have the metrics, but I can share that from a service desk perspective, the number of password reset calls reduced. As the calls reduced for password resets, which was the highest number of calls before OneLogin by One Identity, we could optimize our service desk employees and repurpose the ones that were needed for project work.

    What's my experience with pricing, setup cost, and licensing?

    I did not purchase OneLogin by One Identity through the AWS Marketplace. It was directly through a OneLogin by One Identity reseller or through the direct company, but not through the marketplace.

    Which other solutions did I evaluate?

    Before choosing OneLogin by One Identity, Okta was the only option we looked at.

    What other advice do I have?

    I would ask anyone looking into using OneLogin by One Identity to take a phased approach, either going by region in a multi-company organization or by company because sometimes you have small integration issues to resolve, especially with cloud applications and rules. Make sure that you resolve that with a smaller impacted population rather than implementing something globally in a large scale and then having bigger problems to deal with.

    I rate OneLogin by One Identity a nine on a scale of one to ten. I choose nine for my rating of OneLogin by One Identity because I believe even the best of us have an opportunity to improve. We can never be a ten, or we should not be a ten. We should always aspire to improve.

    Regarding OneLogin by One Identity's AI capabilities, my impression of its governance and security is excellent. My impression of its accuracy and reliability of output is also excellent.

    We reviewed SmartFactor Authentication for OneLogin by One Identity, but had not implemented it while I was at IQ.

    My impression of the User Identity Synchronization across directories functionality in OneLogin by One Identity is that it is very strong, actually in most single sign-on providers.

    The integration of phishing-resistant device trust on my authentication processes is that I don't want to mix the two together. OneLogin by One Identity is, to me, a case where phishing should be managed through other services rather than OneLogin by One Identity. OneLogin by One Identity is, in my mind, an identity and access management solution. It's not an email security management solution.

    From a user perspective, with the right amount of training and documentation, OneLogin by One Identity provides a very seamless end-user experience for signing in and authenticating to needed applications. They're simply logging into an application like Citrix in the good old days, and once you get into the MetaFrame, you launch your app. OneLogin by One Identity is the same. Once you log into OneLogin by One Identity, you have all your apps in a single form or single page.

    I wasn't involved in the decision-making for pricing, setup cost, and licensing for OneLogin by One Identity.

    Which deployment model are you using for this solution?

    Private Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Amazon Web Services (AWS)
    Alishan Haider

    Centralized access has transformed onboarding, cut manual work, and improves everyday security

    Reviewed on Aug 30, 2026
    Review from a verified AWS customer

    What is our primary use case?

    OneLogin by One Identity is used for centralized identity and access management for employees, allowing secure access to multiple work applications through a single identity instead of managing separate credentials. It utilizes automated provisioning and de-provisioning, enabling prompt access assignment based on roles when new employees join, and the removal of access when they leave. This goes beyond SSO and MFA, as access policies are enforced based on role and user context, with updates occurring automatically when someone changes departments. OneLogin by One Identity supports role and attribute-based provisioning for entitlement management, and integrates features like smart factor authentication for high-risk login attempts.

    How has it helped my organization?

    One of the biggest positive impacts of OneLogin by One Identity has been the reduction of administrative workload while improving security through automated provisioning for new employees and removing access during offboarding. It minimizes the manual work involved in accessing individual applications with automated lifecycle management, which handles central login itself. The onboarding and offboarding processes have transitioned from hours to minutes. We have seen a thirty to forty percent reduction in onboarding and provisioning times as application access is assigned automatically based on roles instead of being configured manually.

    Additionally, there has been a fifty percent reduction in password and access-related help desk tickets thanks to SSO and self-service password reset features. Positive results come mainly from automation in user provisioning and de-provisioning, paired with improved MFA and risk-based authentication collectively lowering the risk of unauthorized access.

    What is most valuable?

    OneLogin by One Identity offers valuable features such as single sign-on, multi-factor authentication, identity lifecycle management, and smart factor authentication, centralizing access to both cloud and on-premise applications. It supports role and attribute-based provisioning for entitlement management, offers real-time directory synchronization, and adaptive login flows with Vigilance AI. Additionally, its Smart Factor Authentication feature effectively balances security and usability, enhancing the authentication process by requiring stronger verification in case of unusual login behavior. The integration of phishing-resistant device trust significantly impacts authentication processes, adding another layer of security beyond verifying users' credentials.

    A specific area in the valuable features is the automated provisioning and de-provisioning processes that reduce the risk of someone retaining access they no longer need. The lifecycle management feature automates these processes, making day-to-day access much easier to manage. OneLogin by One Identity helps in maintaining the directory infrastructure while centralizing SSO, MFA, and identity lifecycle management for both on-premise and cloud infrastructures. Additionally, it provides a seamless end-user experience by granting access through a single login, thereby reducing password-related support requests.

    What needs improvement?

    Reporting and analytics in OneLogin by One Identity can be improved, as filtering and customization options for more complex requests are limited. It does not support document exportation or sufficiently modify standard reports to relate to specific applications and administration data. There is also a need for further expansion of native integrations and automation operations. Greater coverage in the API for programmatically managing configuration and broader flexibility in dashboards would significantly enhance administrative experiences.

    Enhancements in provisioning diagnostics, reporting flexibility, and simpler troubleshooting for complex integrations would greatly improve the administrative experience.

    For how long have I used the solution?

    I have been using OneLogin by One Identity for about two years.

    What do I think about the stability of the solution?

    OneLogin by One Identity is quite stable from my point of view, as I have been using it for a while and have found it to be very reliable in our overall day-to-day operations. The MFA and directory synchronization features remain dependable, and we have not experienced any major outages impacting significant user activity. I rate its stability at ten out of ten.

    What do I think about the scalability of the solution?

    OneLogin by One Identity demonstrates excellent scalability. We have been able to add more users, applications, and access policies without needing to revise our identity architecture significantly. My experience with scalability has been favorable; I rate it as really good, at nine out of ten, given its effectiveness in managing resources, authentication, and related processes like MFA, SSO, onboarding, and offboarding.

    How are customer service and support?

    Customer support for OneLogin by One Identity has been exceptional. We reached out to OneLogin by One Identity support several times, primarily for directory synchronization, provisioning, and application integration issues, and our overall experience has been very positive. The engineers we interacted with demonstrated technical expertise and aimed to identify root causes rather than merely providing generic troubleshooting steps. Their support portals and knowledge base are valuable resources, allowing many common configuration issues to be addressed without opening a ticket. One Identity provides multiple support tiers, including critical twenty-four seven coverage for issues, depending on the chosen support plan.

    I rate customer support at a solid nine out of ten, as they have been responsive and highly knowledgeable, especially when I needed help with specific synchronization, provisioning, and application integration concerns. Their availability for twenty-four seven support is also something I appreciate, contributing to my high rating.

    Which solution did I use previously and why did I switch?

    We previously used Microsoft Entra ID, formerly Azure Active Directory, for many of our identity and authentication needs, alongside various manual processes for application access. We evaluated OneLogin by One Identity because we wanted a more flexible, natural identity platform featuring straightforward SSO, MFA, directory integration, and automated provisioning for onboarding.

    How was the initial setup?

    The initial deployment was relatively straightforward, particularly for basic SSO and MFA functionalities, though integrating and configuring more advanced provisioning policies required some additional planning.

    What was our ROI?

    We have seen a return on investment. The onboarding and offboarding processes have reduced costs by around ten to twenty percent. Time savings are notable as onboarding and offboarding durations have decreased by up to forty percent. Positive results come mainly from automation in user provisioning and de-provisioning, paired with a roughly fifty percent reduction in password-related help desk requests.

    Additionally, while security ROI is harder to quantify, faster onboarding processes, effective MFA, and risk-based authentication collectively lower the risk of unauthorized access. In summary, the combining time savings, reduced support loads, and enhanced security truly validate the licensing cost.

    What's my experience with pricing, setup cost, and licensing?

    Our experience regarding pricing, setup cost, and licensing for OneLogin by One Identity has been generally positive, though it is not the cheapest identity management solution, especially as the number of users increases. However, the cost is justified by the significant reduction in manual administrative tasks, fewer password-related support requests, faster onboarding and offboarding times, and improved access security.

    Which other solutions did I evaluate?

    Before choosing OneLogin by One Identity, we also evaluated Okta, Microsoft Entra ID, and Ping Identity. These were our primary alternatives as they offer comparably robust capabilities surrounding SSO, MFA, and identity management. Ultimately, we chose OneLogin by One Identity because it provided the right balance of functionality, ease of administration, integration with hybrid directories, and cost aligned with our requirements without adding unnecessary complexities.

    What other advice do I have?

    My advice for others considering OneLogin by One Identity is to plan the implementation carefully before rolling it out company-wide. Identify critical applications and define roles and access policies, and determine how your directories will serve as the source of truth. It is also wise to execute the rollout in phases, starting with a small group of users. Investing time in the initial configuration will allow OneLogin by One Identity to significantly simplify identity management while providing a smoother and more secure authentication experience for users.

    Regarding user identity synchronization functionality, my impression is very positive. It has been extremely beneficial in our hybrid environment. OneLogin by One Identity directly synchronizes identity information, providing a consistent way to manage it between our on-premise Active Directory and cloud applications. The main advantage is that when users are added, updated, disabled, or moved to different groups in the directory, those changes can automatically flow through OneLogin by One Identity to connected applications without requiring IT teams to update each system manually. It has made onboarding and offboarding processes more straightforward and effective, ensuring user access remains aligned across both on-premise and cloud environments.

    I give this review an overall rating of ten out of ten.

    reviewer2878287

    Modern identity access has streamlined onboarding and strengthened secure workforce authentication

    Reviewed on Aug 16, 2026
    Review from a verified AWS customer

    What is our primary use case?

    My main use case for OneLogin by One Identity involves single sign-on and multi-factor authentication.

    A specific example of how I use single sign-on and multi-factor authentication with OneLogin by One Identity includes during user onboarding, user offboarding, role-based access control, and identity lifecycle management.

    What is most valuable?

    The best features OneLogin by One Identity offers include advanced directory integration, single sign-on integration, integration with LDAP and Active Directory, as well as Workday.

    Out of those features, the LDAP integration and Active Directory stand out the most for me because they really made a difference.

    OneLogin by One Identity has positively impacted my organization by cutting implementation time by fifty to eighty percent and decreasing the workforce required to implement it by fifty percent.

    What needs improvement?

    OneLogin by One Identity can be improved by addressing the responsiveness time for requests, which is a bit slow, as well as the limited API limitation.

    For how long have I used the solution?

    I have been working in my current field for over five years.

    What do I think about the stability of the solution?

    OneLogin by One Identity is stable, and I find it to be a pretty stable solution.

    What do I think about the scalability of the solution?

    OneLogin by One Identity has very good scalability and is a very scalable solution.

    How are customer service and support?

    The customer support is very quick and overall pretty good.

    I would rate the customer support on a scale of one to ten as a nine.

    Which solution did I use previously and why did I switch?

    I have not previously used a different solution.

    Before choosing OneLogin by One Identity, I evaluated other options such as Okta.

    What was our ROI?

    I have seen a return on investment, with a fifty percent cost save and fifty to eighty percent fewer people required in terms of implementation.

    What's my experience with pricing, setup cost, and licensing?

    I find that in terms of pricing, setup cost, and licensing, it is very suitable for medium to large organizations, making it very cost-effective.

    What other advice do I have?

    Regarding OneLogin by One Identity's AI capabilities, I think its governance and security make it a pretty secure solution with a lot of integration, so it is a very good solution overall.

    Regarding OneLogin by One Identity's AI capabilities, I find it to be pretty accurate in terms of the features available.

    I do not use the solution's Smart Factor Authentication to adjust authentication flows in real-time depending on the risk score associated with the login attempt.

    My impression of the user identity synchronization across directories functionality is that it is secure, has secure access to resources such as data and applications, as well as fast access with easy authentication.

    The integration of phishing-resistant device trust has positively impacted my authentication processes by reducing risk and helping users effectively in terms of awareness about who has access to the system and how it is maintained.

    I have not used the adaptive login flows with Vigilance AI.

    My advice to others looking into using OneLogin by One Identity is to consider this solution because it is quite scalable and has a lot of integration, as well as good monitoring capabilities and session recording, making it well-designed and a good product overall.

    I would rate this review an eight out of ten.

    Which deployment model are you using for this solution?

    Public Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Amazon Web Services (AWS)
    Adil-Khan

    Privileged access has been centralized and automation reduces audit and onboarding effort

    Reviewed on Aug 07, 2026
    Review provided by PeerSpot

    What is our primary use case?

    OneLogin by One Identity is being used as a PAM solution managing approximately 20,000 machines, with 60% being VMs and 40% being cloud-based access management. OneLogin by One Identity is also used for monitoring purposes with two devices deployed: one for session management and another for security management. Both devices provide strong privileged access management capability, including password vaulting, session monitoring, session recording, and session access for all users accessing the system. Reports can be generated whenever required.

    An extra server takes backups from the sessions, and sessions that are not stored in OneLogin by One Identity are stored locally as history when long-term retention is needed. The integration of phishing-resistant device trust through OneLogin by One Identity has positively impacted authentication processes by helping identify phishing users effectively since awareness of who will access the system is maintained.

    What is most valuable?

    The standout features of OneLogin by One Identity include session monitoring, which provides access for the last year to see who accessed the system, what happened, and what commands they ran. If something happens with a Linux machine, potential attacks or issues can be investigated. For network-wide issues, monitoring and session recording can be reviewed and compared. A comprehensive audit trail can be generated and the kind of compliance desired on security investigations can be applied. Automated password rotation and role-based access are supported. For cloud monitoring, SCIM provisioning is used, and the system is authenticated through Azure, now Entra, by role-based access.

    What needs improvement?

    For large enterprise organizations that are also vendors for clients with differing requirements, all built-in features are considered, but sometimes new features based on client requirements need to be inbuilt. Customizing OneLogin by One Identity could be improved with processes to implement new features quickly without having to wait for months. For example, token-based access was needed, and implementing token-based or SCIM provisioning features took time. Reducing the time window for implementing custom solutions would enhance the product.

    Documentation-wise, OneLogin by One Identity is one of the best found for any product, so there are no concerns there. Support-wise, OneLogin by One Identity is doing a great job. Support and management, including contacting OneLogin by One Identity for issues, are always straightforward.

    For how long have I used the solution?

    OneLogin by One Identity has been in use for the last four years with no concerns.

    What do I think about the stability of the solution?

    OneLogin by One Identity is very stable. Whenever problems are encountered, quick responses are received from OneLogin by One Identity's support team.

    What do I think about the scalability of the solution?

    Regarding scalability, if more resources are needed to manage clients and machines, resources can be easily scaled. The black box machine can be attached as required; currently, five are used for session management and five for password rotation. As many as needed can be added depending on the resources required to support the cluster. Scaling is very easy and can be done at any time.

    How are customer service and support?

    OneLogin by One Identity's support team is doing a great job, which is why the product has been used for the last four and a half years. Support and management, including contacting OneLogin by One Identity for issues, are always straightforward. Whenever problems are encountered, quick responses are received from OneLogin by One Identity's support team.

    Which solution did I use previously and why did I switch?

    CyberArk was previously used before switching to OneLogin by One Identity. After conversations with both sales teams, the sales pitch of OneLogin by One Identity stood out compared to CyberArk. OneLogin by One Identity was found to be a better solution in cost and resource management, which is why the switch was made.

    How was the initial setup?

    OneLogin by One Identity was deployed four years ago and is continuously being used with no issues. Currently, over 20,000 VMs and cloud environments are managed by OneLogin by One Identity. A cluster-based deployment is used, geo-redundant across three sites. It took one and a half months to build the lab environment. Once all problems and requirements for the environment setup were identified, the production deployment took around one month.

    Since OneLogin by One Identity was implemented, a transition occurred from the old version, which was the TPAM solution. OneLogin by One Identity acquired that particular solution, and the transition was made to OneLogin by One Identity access management. This transition gave the capability to monitor, conduct comprehensive audits, and manage all resources easily whenever needed. Access control for admin personnel is very easy, and access can be managed. Whenever a system is required to be removed from the sync or out of the cluster, it is straightforward to remove from OneLogin by One Identity's Safeguard. The earlier PAM solution was quite difficult to set up, and this one has API Swagger development, making it easy to communicate. Whenever audits are needed, the REST API can be called, which is the biggest advantage.

    What about the implementation team?

    Once all problems and requirements for the environment setup were identified, the production deployment took around one month. In terms of return on investment, significant savings are being made. After implementation, fewer engineers in the team were needed to manage OneLogin by One Identity. Onboarding is automated, so there is no need to worry about the onboarding process, and using REST API calls for access management simplifies automation.

    What was our ROI?

    Significant savings are being made in terms of return on investment. After implementation, fewer engineers in the team were needed to manage OneLogin by One Identity. Onboarding is automated, so there is no need to worry about the onboarding process, and using REST API calls for access management simplifies automation. OneLogin by One Identity's Safeguard detailed Swagger build is quite helpful. Implementation time has been cut by 60 to 70%, and the number of people required for management has decreased by at least 60 to 70%. Once architecture is defined and deployed in the cluster, scaling becomes easy, and integration is straightforward for adding new systems.

    What's my experience with pricing, setup cost, and licensing?

    Regarding pricing, setup costs, and licensing, the virtual licensing option is suitable for small or midsize organizations. The black box developed by OneLogin by One Identity is not costly concerning the security features being provided.

    Which other solutions did I evaluate?

    Multiple options were evaluated before choosing OneLogin by One Identity, with CyberArk being one of them.

    What other advice do I have?

    My advice for others considering OneLogin by One Identity is that if a solution is needed that can scale easily in the future and currently does not manage many users and machines, OneLogin by One Identity can be chosen. If monitoring capabilities and session recording are needed, OneLogin by One Identity is one of the best solutions to recommend based on experience.

    OneLogin by One Identity is a well-designed and impressive product. Even with the new AI features, it will change how security is implemented with policies, offering admins options to implement changes. If new features are needed, OneLogin by One Identity's Safeguard is always ready to help with implementation and provide those solutions. As a user, the user identity synchronization across directories functionality is really valuable to have.

    The AI features in OneLogin by One Identity are new, so many components have not been implemented yet. Just started looking into the agent and its available AI functionality, so it cannot be fully assessed at this time. However, given the way the product is built and its architecture, it should be 100% useful for users.

    The overall review rating for OneLogin by One Identity is ten out of ten.

    Csf Shahmeet

    Centralized identity has simplified secure access while reporting and admin controls still need improvement

    Reviewed on Jul 29, 2026
    Review from a verified AWS customer

    What is our primary use case?

    My main use case for OneLogin by One Identity is securing the digital identities of employees for organizations, enabling better access management, better authentication, active directory management, and SSO purposes.

    A quick, specific example of how I use OneLogin by One Identity in my daily work is that we use it for access management. For example, if an employee is in the sales department, only the applications needed for that employee are assigned to them. No other extra applications are assigned to that employee. This is how we use it for access management.

    How has it helped my organization?

    Single sign-on has reduced password-related support requests, while automated provisioning and de-provisioning have significantly reduced the time required to onboard and offboard users. Adaptive MFA has strengthened our security posture without creating unnecessary friction for end users. Since implementing OneLogin by One Identity, we have seen faster user onboarding, fewer access-related support tickets, and improved consistency in enforcing access policies. The centralized management of identities has also simplified administration and helped us maintain compliance more effectively.

    Since implementing OneLogin by One Identity, we have reduced user onboarding time by approximately 60 to 70 percent through automated provisioning. Password-related support tickets have decreased by around 40 to 50 percent due to single sign-on, and automated de-provisioning has helped us ensure users lose access immediately upon leaving the organization, improving both security and compliance.

    What is most valuable?

    OneLogin by One Identity offers excellent features including single sign-on, the smart factor, automated user provisioning and de-provisioning, and directory integration. It has a very large application catalog that can be integrated for passwordless login. Role-based access control is really helpful for compliance and reporting. Three features that most customers talk about OneLogin by One Identity are its single sign-on capabilities. For example, after logging in once, employees can access Salesforce, Microsoft 365, Slack, Jira, Zoom, and Workday. The benefits are faster access, fewer passwords, and fewer password reset tickets. The second feature is adaptive MFA. OneLogin by One Identity differentiates itself from basic MFA by not asking for MFA every time. When employees log in from the office on a trusted laptop, there is no MFA challenge. However, when the same employee logs in from another country on an unknown device, MFA is required. This really improves both security and user experience. The third is identity lifecycle management. OneLogin by One Identity automates the entire employee lifecycle. For example, when HR hires a new employee and creates the employee in Workday, OneLogin by One Identity automatically creates the AD account, provisions Microsoft 365, assigns Salesforce, grants Slack access, assigns the correct groups, and significantly reduces security risks.

    Out of those features, the large app catalog, adaptive authentication, and identity lifecycle management, the biggest strength is combining single sign-on, adaptive MFA, and automated lifecycle management into a single platform that makes access both secure and simple. These three capabilities are generally considered core differentiators and are the features most organizations adopt first before expanding into broader identity governance.

    OneLogin by One Identity provides a strong combination of SSO, adaptive MFA, and automated user provisioning, making identity management much simpler.

    What needs improvement?

    One area for improvement would be providing more granular reporting and analytics along with an even more intuitive administration interface for managing large-scale deployments.

    I would like to see OneLogin by One Identity have more AI-driven capabilities such as risk-based access recommendations, anomaly detection, and predictive insights for identity threats. More granular dashboards and real-time compliance reporting would also add significant value for security teams.

    One area for improvement would be in enhancing the admin experience for large-scale environments. Features such as more customizable dashboards, richer reporting with easier export options, and more granular audit logs would help administrators gain better visibility into user activity. Additionally, SaaS applications would make day-to-day administration even more efficient.

    For how long have I used the solution?

    I have been working in this field for the last one and a half years, and it is truly very interesting.

    I have been using OneLogin by One Identity for the last one and a half years.

    What other advice do I have?

    I would rate OneLogin by One Identity at around a seven or eight because of its ease of use and its very good access management and SSO capabilities. I chose that number, seven or eight, because of its ease of use. It is very user-friendly and very easy to use. It has very good capabilities for managing SSO due to its application catalog. Directory integration is also very easy, and the security features are very good.

    Regarding OneLogin by One Identity's AI capabilities, it currently leverages AI through its Vigilance AI engine. It drives features including smart MFA, and instead of relying on static, rigid access rules, it uses machine learning to analyze user behavior, location, and device context to assign risk scores in real time.

    When evaluating OneLogin by One Identity's Vigilance AI from an operational perspective, accuracy and reliability come down to how machine learning evaluates risk scores in real time without causing friction or creating security blind spots. The accuracy of the risk scoring is achieved through Vigilance AI continuously calculating risk by comparing real-time login parameters such as IP reputation data, device fingerprint, and geographic velocity against a baseline of historical user behavior. It has a low false positive rate. In practice, the scoring engine is conservative enough to avoid nuisance MFA prompts for legitimate users operating within standard patterns. Edge case limitations exist where accuracy can dip slightly during sudden infrastructure shifts such as an organization rolling out a new corporate VPN or when users travel across regions with aggressive IP dynamic changes. In these cases, the AI initially flags normal traffic as high risk until the baseline recalibrates.

    I purchased OneLogin by One Identity through the AWS Marketplace, and SmartFactor Authentication is immensely effective at this balancing act. When a user establishes a normal behavior pattern, the risk score remains low. The system can suppress multifactor authentication requirements to provide a frictionless login experience. It only introduces friction such as prompting for a password or denying access entirely when the risk score spikes due to anomalous behavior. This adaptive approach drastically reduces MFA fatigue for end users, which aligns with the goal of creating simplified, humanized cybersecurity experiences for non-technical audiences.

    My overall rating for OneLogin by One Identity is seven out of ten.

    Which deployment model are you using for this solution?

    Public Cloud

    If public cloud, private cloud, or hybrid cloud, which cloud provider do you use?

    Amazon Web Services (AWS)
    Harjoth Sudan

    Centralized logins have improved security and support quick compliance-ready authentication

    Reviewed on Jul 27, 2026
    Review provided by PeerSpot

    What is our primary use case?

    I use OneLogin by One Identity for all logins, centralizing login access and adding more security to the system.

    What is most valuable?

    What I appreciate most about OneLogin by One Identity is that both single sign-on and multi-factor authentication help bring more security, which assists with compliance requirements.

    The Smart Factor Authentication of OneLogin by One Identity stands out to me because it supports adjusting authentication flows in real time depending on the risk score associated with the login attempt. We check the servers and login attempts, then use Smart Factor Authentication to prevent unauthorized access when we detect potential risks.

    OneLogin by One Identity provides a seamless end-user experience for signing in and authenticating to needed applications that is very quick and brings usability while maintaining security at the same time.

    The single sign-on feature of OneLogin by One Identity is amazing. We compared this feature specifically while we were piloting, and comparatively, this is better than other players in the market. I know about Ping Identity and Okta, but we chose OneLogin by One Identity.

    What needs improvement?

    What I dislike about OneLogin by One Identity is that there have been some instances where the team experienced server issues while trying to log in. Users were unable to log in and had to redo the process. The server issues caused the system to keep loading, forcing users to go back and try again.

    For how long have I used the solution?

    I have been using OneLogin by One Identity for approximately 11 months to one year.

    What do I think about the stability of the solution?

    OneLogin by One Identity experiences certain downtimes, but the server issues I mentioned are the only stability concerns. Other than that, it is stable.

    What do I think about the scalability of the solution?

    OneLogin by One Identity is highly scalable and can be scaled multifold at any time.

    How are customer service and support?

    I have not contacted the technical support or customer support for OneLogin by One Identity directly, nor have I interacted with them. However, I have seen some emails from their support team, and they appear to be good. We discuss support internally, and we are satisfied with it.

    Which solution did I use previously and why did I switch?

    I have worked with Ping Identity as an alternative to OneLogin by One Identity in my previous organization. In my current organization, we were trying Okta.

    How was the initial setup?

    The initial deployment of OneLogin by One Identity was acceptable. It was neither easy nor difficult, but it was doable. It took approximately four weeks to fully set up OneLogin by One Identity, completing all training for the team.

    What about the implementation team?

    For the deployment of OneLogin by One Identity, we had a dedicated team that divided KRAs accordingly. The initial pilot and training team consisted of four members.

    What was our ROI?

    After the deployment of OneLogin by One Identity, it does require maintenance on our end. Two staff members maintain the system because employees do face issues and need to flag them. Although this reduced the login issues and tickets that came in initially, the IT support team, specifically two people, work on this alongside other software to solve issues related to logins.

    What's my experience with pricing, setup cost, and licensing?

    OneLogin by One Identity is way cheaper than Okta, which is all I know to compare. Cost was one of the reasons we went ahead with this solution. We initially ran a free trial pilot, which worked out for our team, and then we purchased licenses.

    Which other solutions did I evaluate?

    If I compare OneLogin by One Identity with Okta, OneLogin by One Identity is way better. The server issues we faced with Okta are not present with OneLogin by One Identity. Licensing-wise, OneLogin by One Identity is cheaper, which helps significantly.

    What other advice do I have?

    I am aware of the adaptive login flows with Vigilance AI in OneLogin by One Identity, but I do not have any feedback or thoughts on that at this time. My overall review rating for OneLogin by One Identity is 8 out of 10.