Platform
July 28, 2026

RIVET Now Supports Duo Single Sign-On

Written by
Matt Moline

One login. Every user. Zero password headaches.

RIVET now supports single sign-on with Cisco Duo. If your organization runs Duo for identity and access management, your team can log into the RIVET workforce management platform with the same credentials they use everywhere else — no separate passwords to create, forget, or reset.

Why This Matters

Construction back offices don't have time for login friction. The people planning labor, dispatching crews, and managing projects need to get into RIVET and get to work — not dig through password managers or wait on IT to reset an account.

SSO with Duo fixes that, and it strengthens your security posture at the same time:

  • Fewer passwords, fewer risks. Every standalone password is an attack surface. Duo SSO eliminates a separate RIVET credential entirely — access is governed by your existing identity policies, including Duo's multi-factor authentication.
  • Instant onboarding and offboarding. When someone joins your team, they get RIVET access through Duo. When someone leaves, deactivating them in Duo cuts their RIVET access with it. No orphaned accounts.
  • One place to enforce policy. Your MFA requirements, device trust rules, and access policies in Duo now apply to RIVET automatically.

For IT and security leads, this checks a box that's increasingly non-negotiable: centralized identity management across every tool your workforce touches — including the platform that runs your labor operations, from scheduling and dispatch to workforce forecasting.

How It Works

Duo SSO for RIVET uses SAML, the industry standard for enterprise single sign-on. RIVET connects to Duo as a Generic SAML Service Provider, and setup takes about 15 minutes for a Duo admin:

  1. Add your users in Duo. Each user's email in Duo must match their RIVET login email.
  2. Create the RIVET application in Duo. Set it up as a Generic SAML Service Provider in your Duo Admin Panel and grab the Metadata URL.
  3. Configure RIVET. In Manage Organization → Security, select Duo as your identity provider, paste in the Metadata URL, and add your authorized domain.
  4. Complete the handshake. Copy RIVET's Entity ID and Reply URL back into the Duo application settings, save, and you're live.

From then on, your team logs into app.rivet.work through Duo — with all your MFA and access policies enforced automatically.

The full step-by-step guide with screenshots is in our Help Center: RIVET SSO: Duo. You'll find it alongside the rest of our setup documentation under Configuring RIVET and Technical Setup.

Get Started

Duo joins RIVET's growing list of supported identity providers. If you're ready to enable SSO for your organization, your Duo admin can follow the setup guide today — or reach out to our team and we'll walk through it with you.

Not on RIVET yet? Schedule a demo and see why over 150 MEP contractors trust RIVET to run their labor operations. For everything else, our Help Center has you covered.

Because your ops team should be focused on planning the work and putting the right people on it — not managing another set of passwords.

Ready to ditch the chaos?

Join specialty contractors just like you who stopped accepting "that's just construction" as an excuse for losing money.