Connect Rippling to Cisco Duo to automate MFA user provisioning and keep two-factor authentication enrollment current with your actual workforce.
The Rippling–Cisco Duo integration automates user lifecycle management in Cisco Duo's multi-factor authentication platform. When employees are hired in Rippling, Duo accounts are provisioned and MFA enrollment is triggered automatically. When employees leave, Duo access is revoked as part of Rippling's offboarding workflow — preventing terminated employees from retaining MFA credentials that could be used to authenticate into company systems.
Cisco Duo (the rebranded and expanded version of Duo Security, now under Cisco's security portfolio) is widely deployed in mid-market organizations as their primary MFA and device trust solution. Connecting it to Rippling keeps the user directory feeding Duo's authentication policies current without manual IT management.
IT teams commonly deprovision an employee from Rippling and their primary apps but forget to revoke their Duo enrollment. Active Duo credentials can still be used to authenticate into any system that trusts Duo — creating a security gap that's invisible until audited. Including Duo deprovisioning in Rippling's offboarding checklist is the minimum; automating it via integration is the right fix.
thePeopleStack configures the Rippling–Cisco Duo integration with SCIM-based provisioning, automatic MFA enrollment triggers, and offboarding automation that revokes Duo credentials as part of the standard termination workflow.

Cisco Duo integrations for thePeopleStack's Rippling clients are built around US MFA and device trust security architectures.
Canadian and cross-border operations: for organizations with Canadian employees using Cisco Duo for MFA, Rippling provisions and deprovisions Duo credentials under the same lifecycle rules as US employees.
Yes. Cisco Duo supports SCIM-based user provisioning that connects to Rippling for automated MFA enrollment provisioning and deprovisioning.
Yes. Duo Security was acquired by Cisco and rebranded as Cisco Duo. The product's core MFA and device trust capabilities remain the same; Cisco has expanded the platform with additional zero trust and network security features under the Cisco Secure portfolio.
Rippling's offboarding workflow triggers Duo account deactivation, revoking the employee's MFA enrollment and preventing further authentication through Duo-protected applications.
Yes. When a new employee is onboarded in Rippling, the Duo provisioning integration creates their Duo account and can trigger an enrollment email, so MFA setup is part of the standard day-one onboarding experience.
Configuration takes 1–2 hours including SCIM setup, enrollment trigger configuration, and offboarding deprovisioning validation.