Connect with us

Hi, what are you looking for?

SecurityWeekSecurityWeek

Identity & Access

RSA Expands IAM Portfolio with Acquisition of PassBan

RSA has acquired San Francisco startup PassBan to beef up its identity access management portfolio.

RSA has acquired San Francisco startup PassBan to beef up its identity access management portfolio.

PassBan’s mobile and cloud-based multifactor authentication technology will be used to help RSA accelerate delivery of its Adaptive IAM vision, according to Manoj Nair, senior vice-president and general manager of the RSA Identity Trust Manager business.

PassBan offers modern multi-factor verification methods including biometrics, voice and facial recognition, geo-location, and on-demand OTP tokens, Nair said. These methods would complement the broad capabilities already available in RSA’s new Authentication Manager 8 platform.

While RSA’s SecurID software tokens let customers use their mobile devices as authentication form factors, PassBan’s technology will “enable us to take that even further,” Nair said.

With more and more employees using mobile devices to access enterprise data and resources, and the growing popularity of cloud applications, it is critical that authentication models “enable and support multiple authentications from multiple devices,” Nair said. With PassBan and the recent acquisition of IAM vendor Aveska, RSA will be able to extend its Adaptive IAM strategy to address mobile and cloud requirements and cover enterprise, cloud, and mobile IT environments, Nair said.

PassBan “enhances all of the key tenets” of RSA’s Adaptive IAM vision, including reliance on rich identity profiles, risk-based and intelligence-driven authentication and access controls, and tools optimized for cloud and mobile infrastructures.

RSA will also be incorporating PassBan’s mobile technology partners into its mobile partner ecosystem, RSA Certified Mobile Partner Program. “Developers looking to increase the security of their mobile or web applications with multi-factor user verification will now get access to a combined wealth of easy to use capabilities and options to choose from, to best fit their application needs,” Kayvan Alikhani, the CEO of PassBan, said in a blog post.

Advertisement. Scroll to continue reading.

The acquisition combines “PassBan’s focus and expertise in cloud based mobile user identification and verification solutions with that of RSA’s comprehensive security solution suite and their long standing track record as a trusted name in business security, worldwide,” Alikhani said.

The acquisition announcement comes just a few days after RSA announced it was integrating Webroot’s malware detection technology into its own FraudAction anti-phishing service to detect phishing attacks faster and with less false positives. With this partnership, not only would the FraudAction service identify attacks faster, it would also be able to analyze suspected sources and proactively protect users, the companies said.

Related: RSA Plans Agile, Intelligent IAM Through Acquisition of Aveksa

Written By

Click to comment

Daily Briefing Newsletter

Subscribe to the SecurityWeek Email Briefing to stay informed on the latest threats, trends, and technology, along with insightful columns from industry experts.

SecurityWeek’s Threat Detection and Incident Response Summit brings together security practitioners from around the world to share war stories on breaches, APT attacks and threat intelligence.

Register

Securityweek’s CISO Forum will address issues and challenges that are top of mind for today’s security leaders and what the future looks like as chief defenders of the enterprise.

Register

Expert Insights

Related Content

Identity & Access

Zero trust is not a replacement for identity and access management (IAM), but is the extension of IAM principles from people to everyone and...

Identity & Access

Hackers rarely hack in anymore. They log in using stolen, weak, default, or otherwise compromised credentials. That’s why it’s so critical to break the...

Application Security

Fortinet on Monday issued an emergency patch to cover a severe vulnerability in its FortiOS SSL-VPN product, warning that hackers have already exploited the...

Application Security

Virtualization technology giant VMware on Tuesday shipped urgent updates to fix a trio of security problems in multiple software products, including a virtual machine...

Application Security

Password management firm LastPass says the hackers behind an August data breach stole a massive stash of customer data, including password vault data that...

Application Security

Microsoft on Tuesday pushed a major Windows update to address a security feature bypass already exploited in global ransomware attacks.The operating system update, released...

Application Security

Electric car maker Tesla is using the annual Pwn2Own hacker contest to incentivize security researchers to showcase complex exploit chains that can lead to...

Identity & Access

NSA publishes recommendations on maturing identity, credential, and access management capabilities to improve cyberthreat protections.