Enterprise Single Sign-On (SSO) enables secure, seamless access to the Maltego platform using your organization’s corporate identity. Enterprise customers can authenticate users through their existing Identity Provider (IdP), eliminating the need for separate Maltego credentials while aligning with enterprise security policies.
What’s Available
With Enterprise SSO, organizations can:
- Sign in to Maltego One (Graph Browser, Search, Admin) and Maltego Monitor using their corporate IdP.
- Sign in to Maltego Graph (Desktop) via a secure, browser-based SSO flow.
- Automatically route users to the correct IdP based on their company email domain.
Once enabled, authentication is handled by your organization’s IdP, while Maltego securely manages access to tools and entitlements.
How It Works
Maltego One (Browser-based)
- User selects Login with SSO on the Maltego login screen.
- User enters their corporate email address.
- Maltego identifies the configured IdP for that domain.
- User is redirected to their organization’s IdP.
- After successful authentication, the user is logged into Maltego.
No Maltego-specific password is required.
Note: The user must belong to an SSO-enabled organization or be invited by an organization administrator.
Maltego Graph (Desktop)
- User selects Maltego ID Login in the desktop client.
- A browser-based login page opens.
- User selects SSO Login.
- User authenticates via their corporate IdP.
- User is returned to the desktop client and signed in.
How to Set Up
As a first step, please consult the Maltego SSO OIDC Integration guide or Maltego SSO SAML Integration Guide attached at the end of this article for setup.
Once you have completed the SSO configuration steps on your side, please come back to us with the required configuration details so we can finalize the setup.
For security reasons, we do not recommend sharing SSO configuration details in plain text. Please use one of the secure methods below to share the information with us:
Option 1: Secure Vault (Preferred)
Create a secure vault using a trusted solution (for example, 1Password, Azure Key Vault, or a similar service), store the required SSO details there, and grant access to our team.
Option 2: Encrypted ZIP File
Alternatively, you may:
- Send the SSO details in an encrypted ZIP file via email, and
- Share the one‑time password with us separately (via a different secure communication channel).
If you have any questions while completing the steps or need clarification on what details to share, please let us know—we’re happy to help.
Security Model
- Authentication is performed by your enterprise Identity Provider.
- Maltego does not store or manage user passwords for SSO logins.
- Access is controlled through organization membership and entitlements.
- Login flows are based on industry-standard OpenID Connect (OIDC) and SAML.
Additional Resources
Configuration and administrative setup are covered in the Enterprise SSO OIDC Integration Guide and SAML Integration Guide attached below.