PIV-Compliant Government Mobility
A complete solution for NIST 800-157
Our popular Derived PIV/CAC credential solution enables true mobility for government organizations by providing secure, anywhere-anytime access to applications, work files and systems. Our complete offering includes deployment, user enrollment and credential management. It aligns with NIST SP 800-157 for compliance with the HSPD12/FIPS 201-2 Personal Identity Verification (PIV) requirements.
Features
The Entrust derived PIV credential solution is fully integrated with leading EMM platforms.
A unique self-service module enables anywhere-anytime onboarding and credential management.
The mobile smart credential is encoded with the same certificate types and use the same communication language used on the physical PIV smart cards.
PIN unblock and reset features are easily self-managed through our self-service module or directly on the user's mobile device.
The Derived Credential Enrollment Process
Entrust Identity Enterprise can be configured for several different Derived PIV Credential activation methods, including:
- QR code with password displayed
- QR code with password via encrypted email
- Email with password displayed
- Email with password via encrypted email
These activation options provide secure workflows for generating and activating Derived PIV Credentials.
Use Cases & Authentication Methods
Derived credentials are leveraged to increase security in two ways. An advantage of our mobile smart credential application is that both methods of access can be easily configured and are enhanced through partnerships we maintain with other leaders in the mobile device industry.
- Enabling access to certificate-enabled mobile applications for authentication directly though the mobile device — removing the need for username and password
- Using the derived credential to provide logical access to a traditional workstation or laptop; similar to how a PIV smartcard is used for SCLO
Identity Portfolio
High assurance cloud-based workforce and consumer authentication. Credential-based access including passwordless authentication with unified SSO.
High assurance workforce and consumer authentication. Credential-based authentication including physical smart card issuance. On-premises solution.
Best-in-class MFA and VPN protection for Windows-based workforces.
Our identity portfolio capabilities:
Authenticate
Authorize
Transact and Manage
The identity portfolio suited to your authentication needs
- Consumer
- Workforce
- Citizen
Consumer
Attract and retain customers with best-in-class mobile and online banking services.
Give customers frictionless access to your portals—and build a great brand experience.
Our portfolio integrates seamlessly with your Customer Identity Access Management (CIAM) strategies.
We have the trusted identity tools you need to help you be successful and in compliance.
Workforce
Our portfolio offers the necessary technologies to integrate physical and logical secure access.
Empower workers everywhere with always-on access to VPNs and SaaS applications.
Protect the critical application credentials of system administrators or senior leaders.
Get a true passwordless SSO solution that supports all devices, PCs and Macs, and cloud and on-premises apps.
Our solutions ensure application security for contractors using on-prem or cloud apps.
Remove complexity and enable highly secure mobility with proven PIV solutions.
Citizen
Use our portfolio to secure and manage passports, national ID's and driver's licenses.