New integration provides instant, comprehensive access termination
across all devices and applications
Alameda, CA – October 15, 2024 – Cerby, the comprehensive identity platform for disconnected applications, today announced it’s collaborating with Okta, the leading independent Identity partner, to improve threat detection and response when user accounts are compromised.
Cerby is introducing a new integration that enhances coverage of Universal Logout, part of Identity Threat Protection with Okta AI, to any application by leveraging Cerby's capability to support application logout without requiring public APIs. This capability is particularly useful when security threats are detected, and immediate response is critical. Cerby’s technology enables Okta to build reliable and scalable integrations without requiring application changes. It also allows Okta customers to protect a broader set of applications, including those out of scope for traditional identity providers.
“As cyber-attacks increase in frequency and sophistication, coupled with the proliferation of devices and access points that have expanded the attack surface, compromised accounts remain a real and growing threat to any organization,” said Belsasar Lepe, Co-founder and CEO, Cerby. “Our integration with Okta Workforce Identity Cloud gives organizations the ability to immediately respond to suspected account compromises, working to eliminate any remaining lingering access points that bad actors can exploit. Together, we are helping organizations mitigate cyber risks, strengthen their security posture, and streamline incident response operations.”
Universal Logout enables organizations to terminate user sessions and their tokens for supported applications when Identity Threat Protection detects a change in risk, enabling faster threat response and significantly reducing the attack window.
Universal Logout key features include:
Comprehensive Access Revocation
- One-click revocation across all devices and supported applications
- Support for top applications, including those from Microsoft, Google, Salesforce, Slack, and more
- Continuous expansion of supported applications
Intelligent, Context-Aware Action
- Responds to changes in device context without user interaction
- Triggers logout even for out-of-band signals, a unique capability in the industry
- Adapts logout actions based on risk level and affected applications
Deep Access Revocation
- Eliminates all active tokens and session data
- Dismantles the entire chain of authorization inheritance
- Works to eliminate lingering access points
Seamless Integration
- Works with Okta's Post-Auth Actions and Entity Risk Policy
- Complements Identity Threat Protection's precision risk response capabilities
As a result of the integration, organizations can bolster their security posture by significantly reducing the window of vulnerability during security events and enabling an immediate response mechanism when user accounts are compromised. In addition, they can improve operational efficiencies through streamlined security operations, incident processes, and simplified user offboarding procedures.
“In today's digital landscape, identity has become the new security perimeter. Yet, many traditional access revocation methods fall short, leaving organizations vulnerable,” said Stephen Lee, Vice President of Technical Strategy and Partnerships Okta. “ With Cerby’s integration for Workforce Identity Cloud, we’re augmenting Okta ITP’s universal logout capabilities to protect even more applications, helping our customers secure and streamline identity for their workforce, partners, suppliers, and customers.”
The new integration will become generally available later in 2024.
For more information, check out the Cerby + Okta Solution Brief.
About Cerby
Cerby provides IT and Security teams with the only comprehensive identity and access management platform tailored for disconnected applications. By integrating seamlessly with your existing identity provider, Cerby extends single sign-on, multi-factor authentication, and lifecycle management to any application, even those without APIs or support for standard protocols. With Cerby's patent-pending identity automation, IT teams can streamline manual processes such as deprovisioning and MFA enrollment, gaining unmatched efficiency and complete visibility and control over applications that fall outside traditional identity systems. Cerby empowers identity teams to extend access controls, minimize risk, and lower costs.
Since we released our offering in 2022, Cerby's platform has enabled clients like L'Oréal, Fox, Colgate-Palmolive, Dentsu, and Televisa to extend modern identity to disconnected applications, boosting enterprise security while making IT teams more efficient.