// THREAT DETECTION AND DATA PRIVACY TERM

IAM

IAM, or Identity and Access Management, is a cybersecurity system that helps organizations ensure only authorized individuals can access specific resources, applications, or data. It manages user identities and controls their permissions.

IAM — illustration from Wikipedia
Image via Wikipedia

TECHNICAL DEFINITION

Identity and Access Management (IAM) is a cybersecurity framework comprising policies, processes, and technologies for managing digital identities and controlling access to enterprise resources across diverse IT environments, including on-premises, cloud, and hybrid infrastructures, enforcing principles like least privilege and Zero Trust.

BACKGROUND

Optiv Security, Inc. ("Optiv") is a privately owned information security services and security technology reseller company based in Denver, Colorado. Optiv is a solutions integrator that delivers end-to-end cybersecurity services globally.

READ MORE ON WIKIPEDIA

SYNONYMS & ALIASES

  • Identity Management
  • Access Management
  • IdM
  • I&AM
  • Identity Governance
  • Access Control

USAGE NOTE

IAM is foundational for maintaining a strong security posture, achieving regulatory compliance, and streamlining user provisioning in modern enterprise IT landscapes.

DEVELOPERS

Organizations developing technology related to IAM.

  • Okta

    Okta is a leading independent provider of identity for the enterprise, offering cloud-based identity and access management solutions for workforce and customer identities, enabling secure access to applications and devices.

  • Microsoft

    Microsoft provides a comprehensive suite of identity and access management solutions, most notably Microsoft Entra ID (formerly Azure Active Directory), which offers secure identity services for applications, devices, and users across hybrid environments.

  • SailPoint

    SailPoint specializes in enterprise identity governance, providing solutions that help organizations manage and secure digital identities, govern access to critical systems, and ensure compliance with regulatory requirements.

  • CyberArk

    CyberArk is a global leader in privileged access management (PAM), offering a comprehensive platform to secure and manage identities and access for humans and machines, critical for protecting an organization's most sensitive assets.

  • Ping Identity

    Ping Identity delivers intelligent identity solutions for the enterprise, including single sign-on (SSO), multi-factor authentication (MFA), access security, directory, and API security, enabling secure digital experiences.

  • ForgeRock

    ForgeRock provides a comprehensive digital identity platform that offers solutions for workforce, customer, and IoT identity and access management, enabling organizations to secure and manage identities across various environments.

  • AWS (Amazon Web Services)

    AWS provides AWS Identity and Access Management (IAM), a web service that helps you securely control access to AWS resources. It enables you to manage users, groups, and permissions within the AWS ecosystem.

  • Google Cloud

    Google Cloud offers Google Cloud Identity, a cloud-based Identity as a Service (IDaaS) solution that provides identity, access, application, and device management for Google Cloud and third-party applications.

RELATED TERMS IN DEFENSE & ARCHITECTURE