About the Client
The client is a government entity in the UAE that offers business and trade services, supporting a Customer Identity and Access Management (CIAM) platform used by close to 80,000 registered users. Oracle Siebel CRM sits at the centre of its service delivery, serving both external customers and internal users.
Business Need
The client needed to move away from a legacy Identity and Access Management platform that could no longer keep pace with its security and governance requirements. The goal was to bring authentication for multiple business applications onto a single, centralized platform. Given the scale of the user base, the migration had to be handled carefully, with no disruption to daily operations and no loss of user data.
Business Challenges
Running identity management through the legacy setup meant handling authentication and user access separately across several applications. This added administrative overhead and made it difficult to maintain a consistent experience for end users.
The bigger challenge was trust. The client needed complete confidence that switching platforms would not put existing user accounts or sensitive data at risk. As more applications got added over time, enforcing consistent security policies through the old system had also become harder, and it was clear the platform would not hold up to future needs.
Business Solution
NuSummit implemented a centralized Identity and Access Management solution built on WSO2 Identity Server, consolidating authentication for multiple business applications onto one platform.
WSO2 acts as the SAML identity provider for Oracle Siebel CRM, connects to on-premises Active Directory and Azure AD for internal users, and offers UAE PASS to external customers, so every user population signs in through one platform.
The solution was tailored to the client’s specific requirements, including custom UI enhancements so the login experience felt familiar to existing users, along with outbound connectors to integrate with external systems. UAE PASS was also integrated, giving users the option to sign in securely using their national digital identity.
To keep the platform secure and dependable at scale, the team deployed it with supporting components such as NGINX and applied established practices around security and performance. All existing customizations, integrations, and user data were carefully preserved throughout, so the migration could go through with minimal disruption to business users.
Technology Used
The solution was built using:
- WSO2 Identity Server as the core identity and access management platform
- NGINX for secure, reliable, and scalable deployment
- OIDC and SAML for standard based application integration
Project Differentiator
The team took time upfront to understand the client’s existing environment, business processes, and integration needs before planning the migration. That groundwork meant changes to existing applications were kept to a minimum, which made the transition straightforward and low risk.
Existing accounts were bulk imported into WSO2, and passwords were captured transparently on each user’s first login, so all 80,000 users kept their credentials with no forced reset.
The flexibility of the WSO2 platform allowed the team to meet the client’s specific requirements without forcing major changes on the applications already in place, so users kept accessing their applications without interruption throughout the switch.
Business Impact
The client now runs on a single identity platform that simplifies authentication across all its business applications. Identity management is easier to manage day to day, security has improved, and the platform is simpler to support going forward.
Around 80,000 user identities were migrated successfully with no data loss.
UAE PASS integration gives users a secure and convenient way to authenticate using their national digital identity.
Single Sign-On is now available across integrated applications, cutting down repeated logins and giving users a smoother authentication experience.
The new platform also gives the client room to add more applications in the future, along with a foundation for adaptive authentication, multi-factor authentication, and identity federation down the line.
Outcomes
The client moved from a legacy, fragmented identity setup to a centralized platform built on modern, standards-based authentication. What used to require managing access separately across systems now runs through one consistent, secure platform.
The result is simpler application onboarding, stronger access control, better platform availability through a highly available and load balanced deployment, and a system ready to support the organization’s next phase of growth.