Enterprise-wide SSO and MFA for a mobile operator
A national mobile operator with dozens of enterprise applications, each with its own credentials. Employees managed many passwords; the helpdesk was overwhelmed with reset requests. We designed and implemented Okta-based IAM that federates every application under one SSO, with adaptive MFA and automated provisioning, through a phased migration with no operational disruption.
- Scope
- IAM architecture and policy model
- SAML and OIDC application federation
- Adaptive MFA
- SCIM provisioning
- Phased migration per business unit
- Technologies
- OktaSAML 2.0SCIMLDAPAzure AD