Shared Responsibility Model for Managed Identity: What SSOJet Handles vs What You Control
Blog post from SSOJet
Gartner predicted that through 2022, at least 95% of cloud security failures would be attributed to the customer's actions rather than the provider's, a principle also applicable to managed identity solutions like those offered by SSOJet. The shared responsibility model delineates security duties between the identity provider, which manages protocol processing and federation infrastructure, and the customer, who retains control over user data, session policies, and access decisions. SSOJet acts as a data processor, handling authentication protocols like SAML 2.0, OIDC, and SCIM 2.0, while the customer remains the data controller, responsible for how identity data is used within their applications. This model aligns with frameworks like GDPR, SOC 2, and ISO 27001, where the vendor secures the identity infrastructure, and the customer ensures its proper application. Misunderstandings of these boundaries can lead to security breaches, as most identity incidents arise from customer-side misconfigurations rather than protocol failures. Thus, a clear and well-documented division of responsibilities is crucial for effective security management.
| Trend | Post Mentions | Total Month Mentions | Posts | Companies | MoM |
|---|---|---|---|---|---|
| Platform Engineering | 9 | 1,257 | 305 | 77 | -22% |
Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.