KuppingerCole’s Leadership Compass reviews the Identity-as-a-Service (IDaaS) market with a focus on Access Management (IDaaS AM), a fast-growing segment driven by demand for quicker time-to-value than on-premises IAM and the need to secure expanding SaaS portfolios. IDaaS has matured from early web-centric SSO use cases into broader IAM delivery across diverse application models, though hybrid IT support—especially integration with legacy on-premises applications—remains a central challenge. The report groups common IDaaS capabilities into identity administration (provisioning, lifecycle, repositories, connectors, self-service), access management (authentication, authorization, SSO, federation, standards support, API security, social identities), and access governance (often least mature and frequently retained on-prem for control and auditing). Adoption is also constrained by data residency concerns, reliance on provider security controls, and customization needs.
Vendors originate from different histories (access management, IGA, or traditional SSO), leading to uneven strengths. The market is also blurred by offerings that resemble managed services; KuppingerCole prioritizes customer-relevant elasticity and pay-per-use licensing when deciding inclusion. Key trends include lightweight API security additions, overlap with EMM and CASB for mobility and SaaS access brokering, increasing CIAM-driven needs (social login, profiling, fraud/risk intelligence, privacy and consent management), and the strategic importance of open standards (e.g., SAML, OAuth, OpenID Connect, SCIM).
In Overall Leadership for IDaaS AM, Microsoft leads, followed closely by Okta; IBM and Ping Identity advance, with OneLogin, Idaptive, RSA Security, and Auth0 also in the leaders segment. Correlated matrices show weak alignment between product maturity and market power in this evolving segment, highlighting both large “overperformers” and smaller vendors with strong product/innovation but less market reach.
See All Locations
See All Locations