Implementing SSO and MFA for Greater Saas Platform Security

Implementing SSO and MFA for Greater Saas Platform Security

The Product Partnerships financial compliance platform underwent strategic modernisation to uplift enterprise access management and security controls. The project focused on implementing Federated Single Sign-On (SSO) and Multi-Factor Authentication (MFA) to seamlessly integrate with clients' identity providers, enabling corporate credential authentication strengthened by SAML 2.0 and OAuth 2.0 protocols. This transformation aimed to eliminate password management overhead, reduce support requirements, and accelerate client onboarding from days to hours. By introducing automated user provisioning and centralised access management, the initiative specifically targeted the needs of large enterprises requiring strict security standards. The modernisation was designed to maintain robust security while delivering streamlined access to compliance tools, fundamentally enhancing service delivery for financial institutions.

Home Case Studies Implementing SSO and MFA for Greater Saas Platform Security
Implementing SSO and MFA for Greater Saas Platform Security

Product Partnerships

Product Partnerships are leading experts in financial compliance for the retail sector. They provide outsourced compliance services to retail clients selling through B2C channels and using consumer credit products to sell their goods and services. They do this by leveraging in-house technology, extensive knowledge of the marketplace and current legislation. Their technology platforms must be resilient to fluctuating retail demand, frequently evolving legislation and able to constantly adapt to client needs. PPL are compliance specialists in every sense, supporting a diverse range of retail clients that offer consumer credit as part of their proposition, they have deep experience across all retail sectors.

Project Introduction

The Product Partnerships financial compliance platform underwent strategic modernisation to uplift enterprise access management and security controls. The project focused on implementing Federated Single Sign-On (SSO) and Multi-Factor Authentication (MFA) to seamlessly integrate with clients' identity providers, enabling corporate credential authentication strengthened by SAML 2.0 and OAuth 2.0 protocols. This transformation aimed to eliminate password management overhead, reduce support requirements, and accelerate client onboarding from days to hours. By introducing automated user provisioning and centralised access management, the initiative specifically targeted the needs of large enterprises requiring strict security standards. The modernisation was designed to maintain robust security while delivering streamlined access to compliance tools, fundamentally enhancing service delivery for financial institutions.
Implementing SSO and MFA for Greater Saas Platform Security
Project Challenge

The project encountered several key technical challenges that NewRedo successfully tackled. Firstly, migrating users from the legacy authentication solution to the new SSO and MFA setup required careful planning to ensure a seamless transition and minimal disruption. Secondly, providing effective training and communication to administrative staff and customer stakeholders was essential for successful adoption and understanding of the new authentication processes. Finally, integrating the new Saas platform security solution with legacy parts of PPL's compliance platform posed a challenge, requiring careful coordination and compatibility to ensure smooth operations.

Our Solution

NewRedo provided a comprehensive solution to meet PPL's requirements. Leveraging Amazon Cognito, microservices architecture, OAuth 2.0, and OpenID Connect (OIDC), the new Saas platform security solution enabled secure and seamless authentication. The applications ran on the reliable Amazon AWS cloud infrastructure, utilising its scalability and reliability. Node.js was chosen as the programming language to ensure fast and responsive performance. Employing an agile project approach, NewRedo followed mature DevOps practices with CI/CD, regular deployments, and automated testing. The user experience (UX) was carefully designed, incorporating user and stakeholder engagement and feedback, to create an intuitive and efficient interface.

Positive Customer Outcome

The implementation of SSO and MFA delivered significant value to Product Partnerships. Firstly, it enhanced platform security by reducing the risk of unauthorised access and protecting sensitive financial data. Secondly, it simplified the user experience by enabling seamless login through SSO and providing an additional layer of security with MFA. Thirdly, the solution increased operational efficiency by streamlining authentication processes and reducing support requests. Lastly, the robustness of the solution allowed for future scalability and integration with legacy systems, ensuring long-term adaptability and growth for Product Partnerships. Overall, NewRedo's solution delivered enhanced Saas platform security, improved user experience, streamlined processes, and provided a strong foundation for future compliance services.

Project Skills
SSO OAuth OpenID-Connect AWS Cognito Cyber Security API Agile Amazon AWS Business Analysis Change Management Cloud Data Migration Delivery Management DevOps Document databases JavaScript Node.js Kubernetes Jira RDBMS Product Management Project management Service Management Technical Leadership Terraform SAML Test Management Web Programming UX Design