One Identity is a leading global provider in the field of Identity und Access Management (IAM) with headquarters in Aliso Viejo, California. The One Identity Manager was originally developed by Völker Informatik in Berlin and Dresden. As part of the Quest Software Group, One Identity offers a comprehensive portfolio of solutions for the management of user identities, access rights and privileged accounts. The aim is to support companies of all sizes in secure digitization and compliance with regulatory requirements. One Identity's platforms are characterized by high integration capability, strong automation and proven scalability - whether in the cloud, on-premises or hybrid.
One Identity
What is One Identity?
What IAM solutions are included in the One Identity portfolio?
-
One Identity Manager – the central platform
- Identity Lifecycle Management (Joiner, Mover, Leaver)
- Role modeling and management
- Approval workflows
- Access governance & recertification
- Compliance reporting and audit readiness
One Identity Manager automates user and permission assignment across all connected target systems—from Active Directory and SAP to cloud applications.
-
Active Roles – Microsoft Identity Automation
Active Roles is specifically designed for Microsoft environments and automates the management of:
- Active Directory (AD)
- Azure AD / Microsoft Entra ID
- Microsoft 365
Through role-based templates, delegation, and policy enforcement, Active Roles reduces manual administrative effort while enhancing security and quality.
-
Safeguard - Privileged Access Management (PAM)
One Identity Safeguard is a powerful Privileged Access Management (PAM) solution designed to secure privileged accounts:
- Management of administrator and root accounts
- Just-in-time access
- Session recording and monitoring
- Password vault
Safeguard protects critical systems from misuse, insider threats, and external attacks.
-
Cloud Infrastructure Entitlement Management (CIEM)
With CIEM, organizations gain visibility and control over cloud permissions in multi-cloud environments such as:
- AWS
- Microsoft Azure
- Google Cloud Platform (GCP)
Overprivileged accounts and misconfigurations are identified and mitigated—a critical component of modern cloud security.
-
OneLogin - Identity as a Service (IDaaS)
OneLogin is the cloud-based IAM solution for:
- Single Sign-On (SSO)
- Multi-Factor Authentication (MFA)
- Identity Federation
- Cloud Access Management
Ideal for companies that want to securely integrate SaaS applications and external users.
One Identity takes a modular approach with seamless integration between solutions and offers end-to-end IAM functionality from managing simple user accounts to securing privileged access to critical systems.
One Identity Manager and Safeguard can be purchased as on-prem software, but also offer a SaaS version:
- One Identity Manager On Demand
- Safeguard On Demand
When and in what scenarios is it appropriate to use One Identity?
One Identity covers all central use cases in IAM:
- Identity Governance & Administration (IGA): Automated processes for onboarding, role management, approval workflows and auditing.
- Privileged Access Management (PAM): Control over administrative and particularly critical accounts, with just-in-time access and session recording.
- Microsoft-centric automation: Management of Active Directory and Azure AD with role-based templates and policy enforcement.
- Multi-cloud governance: visibility and control over authorizations in cloud infrastructures.
- Cloud access management (OneLogin): Uniform control of user access to SaaS applications and internal systems via identity federation and adaptive MFA.
Thanks to open interfaces, connectors and standard protocols (e.g. SCIM, SAML, REST, LDAP), One Identity can be quickly integrated into existing enterprise environments.
Why is One Identity relevant for compliance and regulation?
One Identity helps companies with:
Transparent user permissions
Access logging
Recertification
Separation of duties (SoD)
The platform thus meets key requirements under:
How does One Identity differ from other providers?
One Identity stands out from many other providers thanks to its holistic platform approach: Instead of isolated standalone solutions for identity governance, access management, or privileged access management (PAM), One Identity combines these functions into a single, integrated identity security platform. This enables end-to-end control of access processes - from request and approval through to monitoring and auditing. Particularly noteworthy is the deep integration with Microsoft and hybrid environments, as well as the focus on a unified data foundation for identities and permissions. Compared to specialized best-of-breed providers, One Identity thus offers fewer tool silos, reduced integration effort, and a consistent security strategy across all identities.
How is One Identity's licensing model structured?
One Identity uses a modular licensing model based on usage and the features employed. Licensing is typically per user, account, or target system - depending on the specific product. Additionally, feature modules such as governance, analytics, or session management can be added as needed. Customers can choose between traditional on-premises licenses with maintenance and subscription-based SaaS models.
What deployment models does One Identity support?
One Identity supports various deployment models, including on-premises, SaaS, and hybrid scenarios. It also offers both single-tenant and multi-tenant architectures. This allows organizations to choose the deployment model that best fits their IT strategy, security requirements, and regulatory compliance needs.
IPG is a Managed Service Partner (MSP)
IPG also offers the on-prem version and the cloud version as a managed service. This means that all incidents, problems, service requests or changes are carried out by the local partner IPG and no direct communication with the manufacturer is necessary.
How does IPG support the implementation of One Identity?
As a long-standing and certified One Identity partner since 2009, IPG holds the highest partner status: Platinum+. We bring in-depth expertise in the implementation and operation of One Identity solutions. Our consultants are familiar with all modules - from complex role modeling and SAP integrations to the secure operation of PAM solutions with Safeguard. We guide companies from evaluation through to production deployment- agilely, sustainably, and with a clear focus on business value. In doing so, we support you in assessing your current IAM landscape, defining a suitable target architecture, and implementing and operating it on an ongoing basis.
Since 2016, IPG has been a member of One Identity’s EMEA Partner Advisory Board, actively contributing to the further development of the products. In addition, IPG offers its own training courses for One Identity to help embed expertise within companies for the long term.
We are delighted to continue working with IPG as our Platinum+ partner. Their outstanding expertise and commitment enrich our partnership and enable us to develop innovative solutions for our customers together. Here's to many more successful years of collaboration!
Successful customer projects
With One Identity, IPG has implemented numerous projects for SMEs and corporations - from regulated sectors such as financial services, chemicals and energy to industrial companies with a global presence. Our customers benefit from end-to-end automation, sustainable compliance and a noticeable reduction in the workload of their IT and security teams.
Learn More
Looking to simplify and unify identity management across your enterprise? One Identity helps you reduce complexity, increase security, and streamline compliance. Contact us to discuss your requirements or request a proof of concept.