Skip to content

SAML

What is SAML?

Security Assertion Markup Language, an XML-based standard for exchanging authentication and authorization data between identity providers and service providers.

Information Security

Each of these is named in at least one of the same controls as saml. The number is how many controls name both.

What the standards actually require on saml

Requirements naming saml across 6 standards, quoted from the control text.

Federate workforce access to AWS through a single corporate identity provider via IAM Identity Center or SAML so that user lifecycle, MFA and access reviews are centrally governed.

SEC02-BP04 · Rely on a centralized identity provider

HL7 FHIR Authentication. SMART APP LAUNCH IMPLEMENTATION GUIDE v2.2.0 - foundational FHIR-based OAuth 2.0 / OAuth 2.1 + OpenID Connect framework + standardised app authorization.

HL7-FHIR-Auth-SMART-OAuth-OIDC-Backend · HL7 FHIR Authentication - SMART App Launch + OAuth 2.0 + OpenID Connect + Backend Services + Token Lifetime

Kuwait NCF Protect function (Access). Access Control and Identity Management aligned with NIST SP 800-53 AC family + ISO 27001 A.9 + Zero Trust principles.

KNCF-Protect-Access-Control-IAM-Privileged-MFA-Zero-Trust-Identity-Lifecycle-IAG-PAM · Kuwait NCF Protect + Access Control + IAM + Privileged + MFA + Zero Trust + Identity Lifecycle

Questions people ask about saml

What is SAML?
Security Assertion Markup Language, an XML-based standard for exchanging authentication and authorization data between identity providers and service providers.
Why is SAML important for compliance?
SAML is a key concept in Information Security. Understanding saml helps organizations meet regulatory requirements, reduce risk, and demonstrate due diligence during audits. Our compliance platform maps 686 frameworks with 311K cross-framework control mappings.
Which compliance frameworks address SAML?
SAML appears in the requirement text of ITU-T X.805 - Security Architecture for End-to-End Communications, AWS Well-Architected Security Pillar, HL7 FHIR Security Framework, ISMAP (Japan), Japan FSA Cybersecurity Guidelines for Financial Institutions. Across these standards we have identified 8 controls that name it directly, each linked to the control text on the compliance platform.
Where can I learn more about SAML?
Explore our compliance framework pages to see how saml applies across different standards and regulations. Our implementation guides provide step-by-step guidance, and the compliance platform offers AI-powered analysis of how this concept maps across 686 frameworks.

See how SAML applies across compliance frameworks

Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.

Written and maintained by Gerard Blokdyk, The Art of Service.