Skip to main content
Google Workspace SSO Setup

This article describes how to create a Customer SAML app for Security Journey.

Rachel Yonan avatar
Written by Rachel Yonan
Updated over a week ago

Google Workspace SSO Setup

Please follow the steps below to configure SAML for Security Journey.

  1. Sign in using an account with super administrator privileges.

  2. In the Admin console, go to Menu > Apps > Web and mobile apps.

  3. Click Add App > Add custom SAML app.
    Enter the app name (Security Journey) and, optionally, upload an icon for your app. The app icon appears on the Web and mobile apps list, on the app settings page, and in the app launcher. If you don't upload an icon, an icon is created using the first two letters of the app name.

  4. Click Continue.

  5. On the Google Identity Provider details page, get the setup information needed by the service provider using one of these options:

    1. Download the IDP metadata.

    2. Copy the SSO URL

  6. Click Continue.

  7. In the Service Provider Details window, enter:

    1. Entity ID— urn:amazon:cognito:sp:us-east-1_CHi5tsM8X

    2. Start URL—(Optional) https://my.securityjourney.com/?domain=yourdomain.com [*You will need to add your company domain to the end of the Start URL]

  8. Set Name ID format and Name ID value for your custom SAML app. The default Name ID is the primary email.

  9. Click Continue.

  10. If needed, click Add mapping to map user attributes based on the service provider’s requirements. Security Journey only requires Name ID but additional attributes can be added to enrich your learner's profile, Platform reports or to create targeted training assignments. To learn more, check out Learner Attributes

  11. (Optional) To enter group names that are relevant for this app:

    1. For Group membership (optional), click Search for a group, enter one or more letters of the group name, and select the group name.

    2. Add additional groups as needed (maximum of 75 groups).

    3. For App attribute, enter the service provider’s corresponding groups attribute name.

  12. Click Finish

Once app is created, you will need to upload the applications metadata to Security Journey's SSO Settings.

Did this answer your question?