Skip to main content
Single Sign-On (SSO) lets users access the Credit Benchmark Web App and Excel Add-in with their existing corporate credentials. Credit Benchmark supports SSO using SAML 2.0. In this setup, your identity provider authenticates the user and Credit Benchmark acts as the service provider that accepts the SAML response. SSO covers authentication only. Product access and data entitlements still depend on the users and permissions configured for your Credit Benchmark subscription.

How SSO Works

When a user signs in with SSO:
  1. Credit Benchmark redirects the user to your corporate identity provider.
  2. Your identity provider authenticates the user using your internal controls, such as MFA and password policy.
  3. Your identity provider sends a signed SAML assertion to Credit Benchmark.
  4. Credit Benchmark validates the assertion and grants access if the user is authorised.
Credit Benchmark uses Okta for identity and access management. Common client identity providers include Microsoft Entra ID, Okta, Ping Identity, and other SAML-compatible platforms.

Implementation Steps

1

Kick off configuration

Contact your Credit Benchmark relationship lead or support@creditbenchmark.com to start the SSO setup. Credit Benchmark will coordinate the configuration details with your identity or security team.
2

Exchange SAML metadata

Your team provides the identity provider values listed below. Credit Benchmark provides the corresponding service provider values for your configuration.
3

Test in sandbox

Credit Benchmark provides a sandbox environment for testing before production rollout. Use this to confirm sign-in flow, user matching, and access behaviour.
4

Enable production

After testing is approved, Credit Benchmark enables SSO for the production environment.

Configuration Values You Provide

Your identity team provides the identity provider values below.
Email address is the preferred user identifier. If your SAML assertion sends another identifier, confirm the mapping with Credit Benchmark before testing.

Configuration Values Credit Benchmark Provides

Credit Benchmark provides the service provider values below.

SAML Requirements

Use these settings unless Credit Benchmark provides different implementation-specific instructions:

Operational Control

With SSO enabled, authentication remains controlled by your organisation. Deactivating a user in your directory prevents that user from authenticating through SSO, and your internal MFA and password policies continue to apply. For onboarding, offboarding, or access changes, coordinate with your Credit Benchmark relationship lead or support@creditbenchmark.com.
Last modified on May 8, 2026