Digital identity is a primary attack vector in major breaches, with attackers typically starting by compromising user accounts and then pivoting to administrative or service accounts to exploit elevated privileges. Because passwords remain widely used across user, shared, administrative, and service accounts, secure password management is positioned as critical. Regulatory and governance requirements further drive adoption of privileged access and identity governance capabilities, illustrated by Germany’s IT-Sicherheitsgesetz incident reporting expectations for critical infrastructure and US Sarbanes-Oxley separation-of-duties mandates.
Traditional IAM focuses on provisioning, authentication, authorization, and user data storage, commonly including directories, credentials and authenticators, SSO/WAM services, federation, and lifecycle/governance functions. While historically inward-facing, enterprises increasingly extend IAM to partners, suppliers, and customers via identity federation, and traditional IAM can scale to hundreds of thousands of users in well-defined environments.
Hitachi ID Systems (founded as M-Tech in 1992; acquired by Hitachi in 2008) offers an integrated IAM Suite deployable on-premises (Windows infrastructure) or hosted on AWS. The suite includes Identity Manager (identity lifecycle, access governance, workflows, analytics, federation via SAML/SCIM/SPML, and SaaS/AWS gateway functions), Password Manager (password synchronization, policy validation, self-service reset including boot-time PC scenarios, personal vaults, telephone-based resets with PBX/VOIP integration, token and SmartCard PIN management, reporting, and SAML federation), and Privileged Access Manager (AES-encrypted vault with salted encryption, 2FA enforcement, multiple privileged access modes, password rotation, a fingerprinting password-retrieval API for scripts/apps, session recording with enforcement, ticketing integration, auditing reports, and SIEM/syslog export). Strengths emphasize breadth, connectors, and built-in self-service cost reduction; challenges include lower market visibility, lack of out-of-box FIDO/OIDC, and a need for more risk-adaptive authentication granularity.
See All Locations
See All Locations