How to set up single sign-on (SSO) with CyberArk

Last updated: April 20, 2026

Single sign-on with CyberArk lets your team access Influ2 using their existing CyberArk credentials — no separate logins needed, and security stays high.

Before you start, you'll need:

  • Admin access to your CyberArk account

  • Permission to launch and automatically deploy SAML applications in CyberArk

  • Your Influ2 client ID (request from your Customer Success Manager)

Steps to configure

  1. Log in to your CyberArk account.

  2. Go to Apps & Widgets and click Add Web Apps.

The CyberArk Apps & Widgets section with the "Add Web Apps" button visible.
  1. Open the app you just created and go to the Trust section.

  2. Click Metadata and set the IdP Entity ID / Issuer field to Influ2-SAML.

The Trust section with the Metadata option and Entity ID field.
  1. Next to the XML field, click Copy XML.

Provide this copied XML value to your Influ2 Customer Success Manager or Implementation Manager — they'll need it to complete the setup.

  1. Click Manual Configuration.

  2. Set the SP Entity ID / Issuer / Audience field to Influ2-SAML.

  3. In the Assertion Consumer Service (ACS) URL field, enter:
    https://v2.influ2.com/v1/api/client/{{your_client_id}}/samlsso/saml/acs

    1. Replace {{your_client_id}} with the client ID from your Customer Success Manager.

  1. Set Recipient to Same as ACS URL.

  2. In the Sign Response or Assertion section, select Response.

  3. Set NameID Format to Unspecified.

  4. Set Authentication Context Class to Unspecified.

    The Manual Configuration section showing the ACS URL field filled in.
  5. Go to the SAML Response section and create these attributes with the exact values shown:

    • userEmailLoginUser.Username

    • lastNameLoginUser.LastName

    • firstNameLoginUser.FirstName

image (3).webp
  1. Go to Permissions and add a new user or user group with the required permissions.

image (4).webp
  1. Share the XML metadata with your Influ2 Customer Success Manager.

Once they complete the setup on the Influ2 side, your team can log in using CyberArk SSO.

What's next

Your team is now set up to access Influ2 using CyberArk credentials. New team members will automatically get access when added to the appropriate CyberArk group.