Identity & access

Unified identity across four SaaS products

Area
SaaS platforms
Customer
Quadient

Users gained a single sign-in and could move between products without re-entering their password.

Scope25,000customer organisations
Scope≈ 150,000migrated users
Scope5 zonesregional operation

Starting point

What needed to change

Four SaaS products ran on different platforms and in several data zones. User identity, profiles and data storage rules had to be unified without losing regional control.

Our responsibility

How we approached the solution

We developed an identity provider supporting OIDC, OAuth, WS-Federation, BankID, Apple ID and other methods. We prepared the account migration and kept profile management in the original applications.

Part of the delivery

A complete scope

  • Identity provider
  • Single Sign-On
  • Account and profile migration
  • Regional data storage rules

Impact

What the customer gained

  • After two months of development, users could move between products through a single sign-in.
  • The solution respected the differing rules for the USA, the EU, the United Kingdom, Canada and Australia.
  • Passwordless sign-in could be used for access to confidential documents.

Technologies and approaches

  • OpenID Connect
  • OAuth
  • WS-Federation
  • BankID
  • Apple ID
Discuss your product