Identity as a Service (IDaaS) is a rapidly growing segment of Identity and Access Management (IAM), delivering traditional IAM capabilities via the cloud to support hybrid environments across on-premises and SaaS applications. Early IDaaS adoption was driven by web-centric use cases, but offerings have expanded to provide broader IAM functionality regardless of application delivery model, largely because organizations seek faster time-to-value than on-premises IAM deployments. Vendors entered the market from different origins—access management, identity governance and administration (IGA), and traditional SSO—resulting in uneven strengths across key use cases. As a category, IDaaS commonly consolidates access management with limited identity administration and often minimal access governance, all delivered as a managed service in multitenant or dedicated hosting models.
Core IDaaS capabilities group into identity administration (lifecycle provisioning/deprovisioning, repositories, entitlement management, self-service, connectors, SCIM/SPML), access management (authentication, authorization, SSO, federation, standards like SAML/OAuth/OIDC, plus emerging differentiators like API security and web gateways), and access governance (typically least mature; sometimes kept on-premises for audit/control, though cloud adoption is increasing). Because access governance integration with legacy systems can be limited, organizations are urged to align governance needs with IAM vision before evaluating vendors.
Google Cloud Identity (launched early 2018) targets organizations already invested in G Suite/Google Cloud. Built on Google’s BeyondCorp zero-trust model, it provides SSO for thousands of apps, supports custom SAML, and offers Secure LDAP plus directory sync with Microsoft Active Directory/LDAP. It includes multiple MFA methods and, in premium editions, enhanced device management. Strengths include usability, strong reporting for its price point, and a generously featured free tier (limited to 50 users and no support). Challenges include weaker access governance/lifecycle depth and less fit for legacy-heavy environments, positioning it primarily for cloud-first small and newer businesses.
See All Locations
See All Locations