Digital identity is a dominant attack vector in major breaches, with adversaries typically starting by compromising user accounts, then pivoting to administrative or service accounts to exploit elevated privileges for theft of financial data, health records, or intellectual property. Because passwords still underpin access to many user, shared, administrative, and service accounts, secure password and privileged access management remain critical. Regulatory requirements also accelerate adoption, including Germany’s IT-Sicherheitsgesetz incident-reporting and security expectations for critical infrastructure operators, and U.S. Sarbanes-Oxley segregation-of-duties mandates.
Traditional IAM systems provision and govern identities, credentials, authentication/authorization (SSO/WAM), federation, and lifecycle governance, historically for single enterprises but increasingly extended to partners and customers. Modern demands—hybrid and multi-cloud environments, B2E/B2B/B2C use cases, and automation—drive API exposure for orchestration and DevOps enablement.
Hitachi ID (founded 1992 as M-Tech; acquired by Hitachi in 2008) offers the Bravura Security Fabric: an integrated suite comprising Bravura Identity, Pass, Discover, Group, and Privilege, sharing common components (connectors, discovery, MFA, UI, high availability) and a consistent API. Bravura Identity manages identities and entitlements at massive scale, supports extensive connectors and standards (SCIM/SPML), enforces workflow-driven changes with auditability, supports segregation of duties (including nested entitlements), time-bound access, analytics-driven role optimization, and mobile access via a proxy that avoids public exposure.
Bravura Pass provides password synchronization, self-service resets (including pre-boot), a telephone reset module with optional voice biometrics, vaulting, and SAML federation with MFA. Bravura Privilege secures and rotates privileged credentials in an AES-encrypted vault with salted encryption, supports multiple privileged access methods (proxying, elevation, command execution), records sessions with anti-tamper controls, integrates with ticketing and SIEM, and reduces usability friction via multi-account workflows and browser-based session control.
See All Locations
See All Locations