# Single sign-on (SSO)

URL: https://www.getdynamiq.ai/glossary/single-sign-on

> Letting people log in to a platform using the identity and credentials their organization already manages, not a separate password.

Letting people log in to a platform using the identity and credentials their organization already manages, not a separate password.

Single sign-on connects a platform's login to the identity provider an organization already runs, so a person authenticates with the same corporate account they use everywhere else, rather than a password created specifically for this one system. The identity provider, not the platform, remains the place where access is actually decided.

Regulated organizations typically require every application to authenticate through the corporate identity provider, both for a consistent access policy across every system and so that disabling one employee's account in one place revokes their access everywhere at once, immediately.

A new analyst logs into the platform with the same corporate account they already use for email, and loses access to both the moment IT disables that one account, with nothing else to revoke separately.

**In Dynamiq**, SSO is part of the Enterprise plan and works over OIDC, shipped today with Okta and Microsoft Entra ID, so sign-in flows through the identity provider an organization already runs rather than a separate Dynamiq-specific password to manage and eventually forget to revoke.

## See it in Dynamiq

-   [Security and Trust Center](https://www.getdynamiq.ai/security)

## Related terms

-   [Role-based access control (RBAC)](https://www.getdynamiq.ai/glossary/role-based-access-control)
-   [SOC 2](https://www.getdynamiq.ai/glossary/soc-2)

## See an agent on your own workflow.

Bring a process and its documents. Our engineers will show you how Dynamiq runs it, in your environment or ours.

[Start free](https://app.getdynamiq.ai/signup) · [Talk to the team](https://www.getdynamiq.ai/book-a-demo)
