Identity & Access Management (IAM) has evolved from a primarily preventive discipline into a broader set of capabilities that prevent, detect, and now also respond to security threats. Early IAM focused on access administration and controlling entry to secured resources, expanding core technologies to include identity provisioning plus the foundational functions to authenticate, authorize, and audit. A later generation added detection through Access Governance—introducing business participation in administration—and through integration with Security Information and Event Management (SIEM) tools. The newest IAM iteration adds response capabilities through Access Analytics and Intelligence: analytics examines historical data to uncover trends and patterns, while intelligence uses those findings to drive access decisions that can be actioned, improving governance, compliance, and administration. Modern IAM also requires integrations across adaptive authentication and authorization, real-time security intelligence, software-defined environments, and privilege management as threats continue to change.
TrustBuilder Corporation (founded as SecurIT in 1999 and rebranded in December 2017) targets B2B, B2C, and B2E IAM use cases, with a strong enterprise focus in Banking and Insurance and offices across several European countries plus the United States. Its primary platform, TrustBuilder Identity Hub, is delivered on-premises or cloud-hosted and provides centralized administration and policy enforcement via an open, standards-based, pluggable architecture. It includes authentication, authorization, and Single Sign-On (SSO) supporting OAuth, OIDC, SAML, and WS-Security, and enables adaptive, risk-based authentication using contextual signals such as device IP, fingerprinting, and geolocation. The platform integrates with third-party MFA, offers a no-additional-cost mobile authenticator supporting soft-OTP and push, supports attribute-based access control, avoids identity-store duplication via synchronization, provides self-service and onboarding via GUI and APIs, and includes logging, auditing, and flexible reporting. Recent enhancements add Docker/Kubernetes/OpenShift support, GDPR consent management prompts at login, improved activity grouping for audit workflows, transaction signing to support PSD2 strong authentication, and UI/workflow designer improvements. Key challenges include limited IDaaS/multi-tenancy, relatively absent access governance, and constrained brand and partner ecosystem.
See All Locations
See All Locations