Released on
Aug 25, 2026
Introducing Identity Access: A cloud native access management solution
Features
- Platform-agnostic access security: Secures user and device access without any dependency on an on-premises Active Directory or Entra ID environment, so organizations can protect resources regardless of the directory infrastructure they run.
- Conditional access policy: Evaluates every access attempt against contextual conditions such as the user, device, department, role, IP address, geolocation, business hours, and device operating system, then dynamically governs access to sensitive organizational resources.
- Endpoint MFA: Enforces multi-factor authentication (MFA) at Windows, macOS, and Linux login, unlock, RDP, and SSH, and at privilege elevation through UAC and sudo.
- Unmanaged device protection: Enrolls devices directly into Identity Access without a separate directory or domain controller, and extends authentication and access policies to bring your own device (BYOD), workgroup, and non-domain-joined machines.
- MFA for cloud applications: Allows admins to apply a preferred combination of MFA factors and conditions to a set of SSO-enabled applications, so the same user can face different requirements for different apps.
- MFA for VPN, Wi-Fi, and remote access points: Applies MFA at VPN, RDWeb, RADIUS-based applications, and Wi-Fi, extending verification to the access points users rely on outside the corporate network.
- MFA for Outlook on the Web (OWA): Secures employees' OWA mailboxes, which house crucial internal data, with an additional MFA verification step instead of a password alone.
- MFA for sensitive portal actions: Prevents disruptive actions, such as deleting users, groups, and directories, or bulk-disenrolling users' enrolled data, by requiring MFA verification before allowing the action.
- Offline MFA: Secures devices with limited or no network connectivity through the IDSecurity Agent, with single-use Emergency Access Codes as a backup when a user's configured MFA method is unavailable.
- Passwordless authentication: Lets users sign in to workgroup machines without a password using secure methods like FIDO2 passkeys and smart cards including PIV and CAC cards, across product login, device login, cloud applications login, and VPN.
- Cloud SSO Provides seamless single sign-on to cloud applications with 500+ prebuilt app integrations, along with support for custom applications using SAML and OIDC, enabling centralized and secure access to a wide range of business apps.
- Phishing-resistant authenticators: Offers FIDO2 passkeys and smart cards that resist phishing and credential theft, in line with NIST and CISA guidance.
- Help desk-assisted emergency access: Enforces access policies on protected machines while letting users obtain a one-time emergency access, so an unavailable authenticator doesn't require an exception to policy.
- MFA frequency control: Specify how often users must complete MFA to periodically verify their identity and reduce the risk of unauthorized session access.
- Active Directory synchronization: Imports users directly from Active Directory and centralizes access management from the Identity Access portal.