Consumer Identity and Access Management (CIAM) has evolved from enterprise IAM into a distinct market focused on organizations serving consumers and citizens. It supports provisioning, authentication, authorization, and the collection and storage of consumer identity data that often comes from multiple, unauthoritative sources. This data is used not only for access decisions but also for analytics that support marketing and compliance initiatives such as AML. CIAM platforms must scale to millions of identities and potentially billions of daily transactions, with SaaS delivery increasingly becoming the default. Common CIAM capabilities include social login, multi-factor authentication (MFA), risk-adaptive authentication, account recovery, fraud/compromised credential intelligence, identity analytics, marketing-oriented business intelligence, privacy and consent management driven by GDPR/PIPEDA/CCPA, and association of IoT device identities with human identities. CIAM also creates a strategic bridge between IT and Marketing because identity data can directly impact revenue and loyalty.
Synacor, founded in 1998 in Buffalo, provides Cloud ID, a multi-tenant SaaS CIAM platform delivered across its own data centers plus AWS and Oracle Cloud in North America. Cloud ID emphasizes consumer identity integration with IoT devices such as set-top boxes, smart TVs, and home security systems, serving broadband, media/entertainment, consumer electronics, fitness, and home automation markets. It supports white-labeling, bulk provisioning (LDAP/APIs), self-registration with social providers, progressive profiling, MFA options (biometrics and OTPs), and federation (JWT, OAuth, OpenID Connect, SAML). Fraud controls include integration with NuData and Google reCAPTCHA, brute-force prevention, lockout policies, and contextual authorization controls. Cloud ID provides consent and privacy tooling, opaque IDs to reduce customer handling of personal data, and configurable family management for parental controls and differentiated views. Device association supports OAuth2 Device Flow and complex one-to-many/many-to-many household relationships, enabling identity brokering across ecosystems. Challenges include no FIDO support, no direct SIEM integration, and limited data-center geography, while containerization is on the near-term roadmap.
See All Locations
See All Locations