SlideShare a Scribd company logo
© 2016 ForgeRock. All rights reserved.
Beyond Username and
Password: It's Continuous
Authorization
Andy Hall
Product Management Director, ForgeRock
Chris Kawalek
Sr. Product Marketing Manager, ForgeRock
© 2016 ForgeRock. All rights reserved.
Agenda
• The Changing Role of Identity and Access Management
• Leveraging Context for Continuous Security
• The Problem with Passwords
• A Better Way: Mobile Push Authentication
• Q & A and Next Steps
2
© 2016 ForgeRock. All rights reserved.
2010 Founded
10 Offices worldwide with headquarters in San Francisco
350+ Employees
450+ Customers
30+ Countries
$52M Funding to date (thru Series C) by Accel Partners,
Foundation Capital and Meritech Capital Partners
ForgeRock
The leading, next-generation, identity security software
platform.
© 2016 ForgeRock. All rights reserved.
Changes are Adding Complexity
Employees
Employees &
Partners
Perimeter
Perimeter
Federation
Things
Perimeter-less
Federation
Cloud
SaaS
Mobility
Social
Consumers
Perimeter-less
Federation
Cloud / SaaS
ComplexityofScale
Complexity of Experience
© 2016 ForgeRock. All rights reserved.
Perimeter-Based Security Identity-Centric Security
Enables Digital Business
Untrusted
Trusted
Inhibits Digital Business
Old Security Model is Broken.
Security Must Now Be Identity-Based.
© 2016 ForgeRock. All rights reserved.
From Simply Managing Identities to
Managing Complex Relationships
Identity Access Management Identity Relationship Management
Customers
(millions)
On-premises
People
Applications
and data
PCs
Endpoints
Workforce
(thousands)
Partners and
Suppliers
Customers
(millions)
On-premises Public
Cloud
Private
Cloud
People
Things
(Tens of
millions)
Applications
and data
PCs PhonesTablets
Smart
Watches
Endpoints
Source: Forrester Research
© 2016 ForgeRock. All rights reserved.
Authoriza*on	
   Federa*on	
  
Iden*ty	
  
Workflow	
  
Self	
  Service	
  
Authen*ca*on	
  
Iden*ty	
  
Synchroniza*on	
  
Adap*ve	
  Risk	
  
Directory	
  
Services	
  
User-­‐Managed	
  
Access	
  
Iden*ty	
  
Gateway	
  
The ForgeRock Identity Platform
Built from the OpenAM, OpenDJ, OpenIDM, and Open IG Open Source Projects
© 2016 ForgeRock. All rights reserved.
Security is not a
one time thing –
it’s continuous
Security is All About Context
Create/Update
Relationship
Create/Update
Policy
Adaptive
Authentication
Adaptive
Authorization
Accumulate
History
Adjust
Policy
© 2016 ForgeRock. All rights reserved.
Flexible Authentication for Modern and
Legacy Systems
•  Flexible authentication options that offer more
protection to authenticate to any digital resource
including users, devices, applications, APIs, and
things
•  Over 25 out-of-the-box authentication modules to fit
the needs of your business LDAP, ActiveDirectory,
device fingerprinting, one-time password, and
Adaptive Risk authentication.
•  Extend authentication to anything in a simple manner
with scripted authentication modules.
•  Implement strong multi-factor authentication by
chaining modules together
Authen'ca'on	
  
© 2016 ForgeRock. All rights reserved.
Mobile Authentication
Additional Security That’s Easy to Use
•  Improve customer experience and security
with Mobile Authentication an out-of-the
box mobile authentication app, available
both for iOS and Android.
•  Enhanced security with frictionless multi-
factor and mobile authentication integrated
with our Adaptive Risk engine
•  Deliver an easy and secure provisioning
via QR codes, with Recovery Codes to be
used in event of lost or stolen devices
Authen'ca'on	
  
© 2016 ForgeRock. All rights reserved.
Continuous Security with Context
•  Use context-based
intelligence in policies
to protect resources at
the time of access, not
just based on context
during authentication.
•  Use context to assess
risk, requiring stronger
authentication
mechanisms only when
necessary to make it
easier for users while
maintaining system
security.
User	
  Login	
  =	
  OpenAM	
  Session	
  
Change	
  requires	
  
step-­‐up	
  
authen'ca'on	
  or	
  
external	
  proofing	
  
Risk	
  score	
  or	
  
higher	
  level	
  of	
  
assurance	
  grants	
  
access	
  
System	
  detects	
  
new	
  IP	
  address	
  
and	
  device	
  ID	
  
Context	
  
Change	
  
© 2016 ForgeRock. All rights reserved.
Passwords are the De Facto Standard
Credential...For Now
•  A decades old idea, exploited to the
extreme in the modern world
•  Simple for sites to implement, but also
prone to mistakes that can lead to
massive password leaks
•  Users frustrated with increased security
protocols
•  How long? How many characters?
Uppercase and lowercase? How often do I
have to change it?
yDQwEv$UZKzhk2NN22u@
Can Anyone Remember This?
© 2016 ForgeRock. All rights reserved.
The Problem with Passwords
•  Insecure
•  Easy to share among people / written down
•  Very often used on multiple sites
•  Weak passwords are very easy to crack or
socially engineer
•  Inconvenient
•  Hard to remember strong passwords
•  Very difficult to type on mobile
•  Password managers are fidgety and create a
centralized target for attacks
•  What happens when you forget, for you and for
the site?
•  Is there a better way?
© 2016 ForgeRock. All rights reserved.
Passwordless Login and
Frictionless Multifactor
Authentication
Leverage Mobile Push Notifications to Make
Logging in Easier and More Secure
© 2016 ForgeRock. All rights reserved. 15
© 2016 ForgeRock. All rights reserved.
More Information
•  Read about all the new features on the ForgeRock blog
•  Read the documentation on backstage.forgerock.com for
technical details
•  Follow us on Twitter: @ForgeRock
•  Subscribe to Identity Disorder podcast on iTunes
© 2016 ForgeRock. All rights reserved.
© 2016 ForgeRock. All rights reserved.
Q & A
© 2016 ForgeRock. All rights reserved.
Thank You
© 2016 ForgeRock. All rights reserved.
New Mobile Push Authentication
•  Eliminates login passwords or use
for a frictionless second factor
•  Updated ForgeRock
Authenticator Mobile App for
iOS and Android receives
notifications and asks the user to
approve
•  Users can add their logo, or use
the source code to build their own
mobile apps
•  Uses SNS for secure
communication to phone
Swipe,
Fingerprint Scan,
Custom
© 2016 ForgeRock. All rights reserved.
New Mobile Push Authentication
Register Your Device
© 2016 ForgeRock. All rights reserved.
New Mobile Push Authentication
Password-less Login
© 2016 ForgeRock. All rights reserved.
New Mobile Push Authentication
Frictionless Second Factor
© 2016 ForgeRock. All rights reserved.
New Push Authentication
Customer Value
•  Vastly improves the user
experience by reducing friction
during the user authentication
process
•  Increases security by using an
“out-of-band” step
•  Push notification prevents man
in the middle attacks that could
happen with SMS/OTP
© 2016 ForgeRock. All rights reserved.
Simple, Seamless, and Secure
Access to Resources
•  Establish simple and flexible access policies
that protect your resources at all times
•  Assess risk with Contextual Authorization which
requires stronger authentication mechanisms only
when necessary to make it easier for users while
still maintaining system security
•  Constant security with Continuous Authorization
that ensures the authenticity of users, devices,
things, and services at all times and mitigate risk
whenever an anomaly is detected
Authoriza'on	
  

More Related Content

PDF
Sydney Identity Summit: Addressing the New Threat Landscape with Continuous S...
PDF
Sydney Identity Unconference Introduction and Highlights
PDF
ForgeRock Platform Release - Summer 2016
PPTX
NYC Identity Summit Business Day: Identity is the Center of Everything (Mike ...
PDF
NYC Identity Summit Tech Day: Authorization for the Modern World
PDF
Sydney Identity Summit: Doing Authorisation, Consent and Delegation Right wit...
PPTX
NYC Identity Summit Tech Day: Best Practices for API Security
PDF
Identity Relationship Management - The Right Approach for a Complex Digital W...
Sydney Identity Summit: Addressing the New Threat Landscape with Continuous S...
Sydney Identity Unconference Introduction and Highlights
ForgeRock Platform Release - Summer 2016
NYC Identity Summit Business Day: Identity is the Center of Everything (Mike ...
NYC Identity Summit Tech Day: Authorization for the Modern World
Sydney Identity Summit: Doing Authorisation, Consent and Delegation Right wit...
NYC Identity Summit Tech Day: Best Practices for API Security
Identity Relationship Management - The Right Approach for a Complex Digital W...

What's hot (20)

PPTX
NYC Identity Summit Business Day: Continuous Security
PPTX
User-Managed Access: Why and How? - Access Control in Digital Contract Contexts
PPTX
Backstage Tour of Identity - London Identity Summit
PPTX
Sydney Identity Summit: The Future's So Bright, I Gotta Wear Shades
PPTX
ForgeRock Gartner 2016 Security & Risk Management Summit
PPTX
NYC Identity Summit Tech Day: ForgeRock Identity Platform Overview
PPTX
A Backstage Tour of Identity - Paris Identity Summit 2016
PDF
Digital Trust: How Identity Tackles the Privacy, Security and IoT Challenge
PDF
DevOps Unleashed: Strategies that Speed Deployments
PDF
The Future is Now: The ForgeRock Identity Platform, Early 2017 Release
PDF
The Future of Digital Identity in the Age of the Internet of Things
PPTX
Build a Trust Platform to Enable a Frictionless Customer Experience
PDF
Sydney Identity Summit: Using Identity to Build Digital Trust (Mike Ellis Intro)
PPT
Canberra Executive Breakfast - A Citizen-Centric Approach to Identity
PDF
Security & Identity for the Internet of Things Webinar
PPTX
Identity Gateway with the ForgeRock Identity Platform - So What’s New?
PDF
The Future is Now: What’s New in ForgeRock Access Management
PDF
No IoT Without Identity
PDF
ForgeRock: Identity Relationship Management is the Foundation for Your Digita...
PDF
The Business Ecosystem is a Neighborhood - ForgeRock Identity Live Austin 2017
NYC Identity Summit Business Day: Continuous Security
User-Managed Access: Why and How? - Access Control in Digital Contract Contexts
Backstage Tour of Identity - London Identity Summit
Sydney Identity Summit: The Future's So Bright, I Gotta Wear Shades
ForgeRock Gartner 2016 Security & Risk Management Summit
NYC Identity Summit Tech Day: ForgeRock Identity Platform Overview
A Backstage Tour of Identity - Paris Identity Summit 2016
Digital Trust: How Identity Tackles the Privacy, Security and IoT Challenge
DevOps Unleashed: Strategies that Speed Deployments
The Future is Now: The ForgeRock Identity Platform, Early 2017 Release
The Future of Digital Identity in the Age of the Internet of Things
Build a Trust Platform to Enable a Frictionless Customer Experience
Sydney Identity Summit: Using Identity to Build Digital Trust (Mike Ellis Intro)
Canberra Executive Breakfast - A Citizen-Centric Approach to Identity
Security & Identity for the Internet of Things Webinar
Identity Gateway with the ForgeRock Identity Platform - So What’s New?
The Future is Now: What’s New in ForgeRock Access Management
No IoT Without Identity
ForgeRock: Identity Relationship Management is the Foundation for Your Digita...
The Business Ecosystem is a Neighborhood - ForgeRock Identity Live Austin 2017
Ad

Similar to Beyond username and password it's continuous authorization webinar (20)

PPTX
Webinar: Access Management with the ForgeRock Identity Platform - So What’s N...
PPTX
The Road to Intelligent Authentication Journeys
PDF
The Future is Now: What’s New in ForgeRock Identity Management
PPTX
Identity Management with the ForgeRock Identity Platform - So What’s New?
PPTX
Webinar: "Entitlements: Taking Control of the Big Data Gold Rush"
PDF
Intelligent Authentication (Identity Live Berlin 2018)
PDF
Identity Live Sydney: Intelligent Authentication
PPTX
Identity Live London 2017 | Daniel Raskin
PDF
The Future is Now: What’s New in ForgeRock Identity Gateway
PPTX
OpenIG Webinar: Your Swiss Army Knife for Protecting and Securing Web Apps, A...
PPTX
Directory Services with the ForgeRock Identity Platform - So What’s New?
PPTX
NYC Identity Summit Business Day: "Identity - The Future's So Bright I Gotta ...
PPTX
Internet of Things Security & Privacy
PDF
Modernizing Identity Access Management Platforms - Dale Kinney & Damian Flannery
PDF
Security On The Edge - A New Way To Think About Securing the Internet of Things
PDF
The ForgeRock Identity Platform Extends CIAM, Fall 2017 Release
PDF
Pas d'IoT sans Identité!
PPTX
The Hitchhiker's Guide to the Land of OAuth
PPTX
apidays LIVE Hong Kong 2021 - Digital Identity Centric Approach to Accelerate...
PPTX
apidays LIVE Hong Kong 2021 - Digital Identity Centric Approach to Accelerate...
Webinar: Access Management with the ForgeRock Identity Platform - So What’s N...
The Road to Intelligent Authentication Journeys
The Future is Now: What’s New in ForgeRock Identity Management
Identity Management with the ForgeRock Identity Platform - So What’s New?
Webinar: "Entitlements: Taking Control of the Big Data Gold Rush"
Intelligent Authentication (Identity Live Berlin 2018)
Identity Live Sydney: Intelligent Authentication
Identity Live London 2017 | Daniel Raskin
The Future is Now: What’s New in ForgeRock Identity Gateway
OpenIG Webinar: Your Swiss Army Knife for Protecting and Securing Web Apps, A...
Directory Services with the ForgeRock Identity Platform - So What’s New?
NYC Identity Summit Business Day: "Identity - The Future's So Bright I Gotta ...
Internet of Things Security & Privacy
Modernizing Identity Access Management Platforms - Dale Kinney & Damian Flannery
Security On The Edge - A New Way To Think About Securing the Internet of Things
The ForgeRock Identity Platform Extends CIAM, Fall 2017 Release
Pas d'IoT sans Identité!
The Hitchhiker's Guide to the Land of OAuth
apidays LIVE Hong Kong 2021 - Digital Identity Centric Approach to Accelerate...
apidays LIVE Hong Kong 2021 - Digital Identity Centric Approach to Accelerate...
Ad

More from ForgeRock (20)

PDF
Digital Identities in the Internet of Things - Securely Manage Devices at Scale
PPTX
Get the Exact Identity Solution You Need - In the Cloud - AWS and Beyond
PDF
Identity Live Sydney: Identity Management - A Strategic Opportunity
PDF
Identity Live Singapore: Transform Your Cybersecurity Capability
PDF
Identity Live Singapore 2018 Keynote Presentation
PDF
Identity Live Sydney 2018 Keynote Presentation
PDF
Identity Live Singapore: Just Ask 'Em
PDF
Identity Live Singapore: Building Trust & Privacy in a Connected Society
PDF
Identity Live Sydney: Building Trust and Privacy in a Connected Society
PDF
Get the Exact Identity Solution you Need in the Cloud - Deep Dive
PPTX
Get the Exact Identity Solution You Need - In the Cloud - Overview
PDF
ForgeRock and Trusona - Simplifying the Multi-factor User Experience
PDF
Opening Keynote (Identity Live Berlin 2018)
PDF
Steinberg - Customer identity as the cornerstone of our approach to digitaliz...
PDF
BMW Group - Identity Enables the Next 100 Years.. (Identity Live Berlin 2018)
PDF
Trust is Everything - The Future of Identity and the ForgeRock Platform (Iden...
PDF
Silo Busters- The Value of User and Data Centricity beyond IoT Devices (Ident...
PDF
Shift from GDPR readiness to sustained compliance to improve your business an...
PDF
Customer Safeguarding, Fraud and GDPR: Manah Khalil
PDF
Applying Innovative Tools for GDPR Success
Digital Identities in the Internet of Things - Securely Manage Devices at Scale
Get the Exact Identity Solution You Need - In the Cloud - AWS and Beyond
Identity Live Sydney: Identity Management - A Strategic Opportunity
Identity Live Singapore: Transform Your Cybersecurity Capability
Identity Live Singapore 2018 Keynote Presentation
Identity Live Sydney 2018 Keynote Presentation
Identity Live Singapore: Just Ask 'Em
Identity Live Singapore: Building Trust & Privacy in a Connected Society
Identity Live Sydney: Building Trust and Privacy in a Connected Society
Get the Exact Identity Solution you Need in the Cloud - Deep Dive
Get the Exact Identity Solution You Need - In the Cloud - Overview
ForgeRock and Trusona - Simplifying the Multi-factor User Experience
Opening Keynote (Identity Live Berlin 2018)
Steinberg - Customer identity as the cornerstone of our approach to digitaliz...
BMW Group - Identity Enables the Next 100 Years.. (Identity Live Berlin 2018)
Trust is Everything - The Future of Identity and the ForgeRock Platform (Iden...
Silo Busters- The Value of User and Data Centricity beyond IoT Devices (Ident...
Shift from GDPR readiness to sustained compliance to improve your business an...
Customer Safeguarding, Fraud and GDPR: Manah Khalil
Applying Innovative Tools for GDPR Success

Recently uploaded (20)

PDF
System and Network Administration Chapter 2
PDF
AI in Product Development-omnex systems
PDF
Wondershare Filmora 15 Crack With Activation Key [2025
PPTX
Essential Infomation Tech presentation.pptx
PDF
Understanding Forklifts - TECH EHS Solution
PPTX
Lecture 3: Operating Systems Introduction to Computer Hardware Systems
PDF
Softaken Excel to vCard Converter Software.pdf
PDF
How to Migrate SBCGlobal Email to Yahoo Easily
PDF
Adobe Illustrator 28.6 Crack My Vision of Vector Design
PDF
System and Network Administraation Chapter 3
PDF
Raksha Bandhan Grocery Pricing Trends in India 2025.pdf
PPTX
Odoo POS Development Services by CandidRoot Solutions
PDF
top salesforce developer skills in 2025.pdf
PPTX
L1 - Introduction to python Backend.pptx
PPTX
Introduction to Artificial Intelligence
PDF
Audit Checklist Design Aligning with ISO, IATF, and Industry Standards — Omne...
PDF
Design an Analysis of Algorithms II-SECS-1021-03
PPTX
VVF-Customer-Presentation2025-Ver1.9.pptx
PPTX
CHAPTER 2 - PM Management and IT Context
PDF
Claude Code: Everyone is a 10x Developer - A Comprehensive AI-Powered CLI Tool
System and Network Administration Chapter 2
AI in Product Development-omnex systems
Wondershare Filmora 15 Crack With Activation Key [2025
Essential Infomation Tech presentation.pptx
Understanding Forklifts - TECH EHS Solution
Lecture 3: Operating Systems Introduction to Computer Hardware Systems
Softaken Excel to vCard Converter Software.pdf
How to Migrate SBCGlobal Email to Yahoo Easily
Adobe Illustrator 28.6 Crack My Vision of Vector Design
System and Network Administraation Chapter 3
Raksha Bandhan Grocery Pricing Trends in India 2025.pdf
Odoo POS Development Services by CandidRoot Solutions
top salesforce developer skills in 2025.pdf
L1 - Introduction to python Backend.pptx
Introduction to Artificial Intelligence
Audit Checklist Design Aligning with ISO, IATF, and Industry Standards — Omne...
Design an Analysis of Algorithms II-SECS-1021-03
VVF-Customer-Presentation2025-Ver1.9.pptx
CHAPTER 2 - PM Management and IT Context
Claude Code: Everyone is a 10x Developer - A Comprehensive AI-Powered CLI Tool

Beyond username and password it's continuous authorization webinar

  • 1. © 2016 ForgeRock. All rights reserved. Beyond Username and Password: It's Continuous Authorization Andy Hall Product Management Director, ForgeRock Chris Kawalek Sr. Product Marketing Manager, ForgeRock
  • 2. © 2016 ForgeRock. All rights reserved. Agenda • The Changing Role of Identity and Access Management • Leveraging Context for Continuous Security • The Problem with Passwords • A Better Way: Mobile Push Authentication • Q & A and Next Steps 2
  • 3. © 2016 ForgeRock. All rights reserved. 2010 Founded 10 Offices worldwide with headquarters in San Francisco 350+ Employees 450+ Customers 30+ Countries $52M Funding to date (thru Series C) by Accel Partners, Foundation Capital and Meritech Capital Partners ForgeRock The leading, next-generation, identity security software platform.
  • 4. © 2016 ForgeRock. All rights reserved. Changes are Adding Complexity Employees Employees & Partners Perimeter Perimeter Federation Things Perimeter-less Federation Cloud SaaS Mobility Social Consumers Perimeter-less Federation Cloud / SaaS ComplexityofScale Complexity of Experience
  • 5. © 2016 ForgeRock. All rights reserved. Perimeter-Based Security Identity-Centric Security Enables Digital Business Untrusted Trusted Inhibits Digital Business Old Security Model is Broken. Security Must Now Be Identity-Based.
  • 6. © 2016 ForgeRock. All rights reserved. From Simply Managing Identities to Managing Complex Relationships Identity Access Management Identity Relationship Management Customers (millions) On-premises People Applications and data PCs Endpoints Workforce (thousands) Partners and Suppliers Customers (millions) On-premises Public Cloud Private Cloud People Things (Tens of millions) Applications and data PCs PhonesTablets Smart Watches Endpoints Source: Forrester Research
  • 7. © 2016 ForgeRock. All rights reserved. Authoriza*on   Federa*on   Iden*ty   Workflow   Self  Service   Authen*ca*on   Iden*ty   Synchroniza*on   Adap*ve  Risk   Directory   Services   User-­‐Managed   Access   Iden*ty   Gateway   The ForgeRock Identity Platform Built from the OpenAM, OpenDJ, OpenIDM, and Open IG Open Source Projects
  • 8. © 2016 ForgeRock. All rights reserved. Security is not a one time thing – it’s continuous Security is All About Context Create/Update Relationship Create/Update Policy Adaptive Authentication Adaptive Authorization Accumulate History Adjust Policy
  • 9. © 2016 ForgeRock. All rights reserved. Flexible Authentication for Modern and Legacy Systems •  Flexible authentication options that offer more protection to authenticate to any digital resource including users, devices, applications, APIs, and things •  Over 25 out-of-the-box authentication modules to fit the needs of your business LDAP, ActiveDirectory, device fingerprinting, one-time password, and Adaptive Risk authentication. •  Extend authentication to anything in a simple manner with scripted authentication modules. •  Implement strong multi-factor authentication by chaining modules together Authen'ca'on  
  • 10. © 2016 ForgeRock. All rights reserved. Mobile Authentication Additional Security That’s Easy to Use •  Improve customer experience and security with Mobile Authentication an out-of-the box mobile authentication app, available both for iOS and Android. •  Enhanced security with frictionless multi- factor and mobile authentication integrated with our Adaptive Risk engine •  Deliver an easy and secure provisioning via QR codes, with Recovery Codes to be used in event of lost or stolen devices Authen'ca'on  
  • 11. © 2016 ForgeRock. All rights reserved. Continuous Security with Context •  Use context-based intelligence in policies to protect resources at the time of access, not just based on context during authentication. •  Use context to assess risk, requiring stronger authentication mechanisms only when necessary to make it easier for users while maintaining system security. User  Login  =  OpenAM  Session   Change  requires   step-­‐up   authen'ca'on  or   external  proofing   Risk  score  or   higher  level  of   assurance  grants   access   System  detects   new  IP  address   and  device  ID   Context   Change  
  • 12. © 2016 ForgeRock. All rights reserved. Passwords are the De Facto Standard Credential...For Now •  A decades old idea, exploited to the extreme in the modern world •  Simple for sites to implement, but also prone to mistakes that can lead to massive password leaks •  Users frustrated with increased security protocols •  How long? How many characters? Uppercase and lowercase? How often do I have to change it? yDQwEv$UZKzhk2NN22u@ Can Anyone Remember This?
  • 13. © 2016 ForgeRock. All rights reserved. The Problem with Passwords •  Insecure •  Easy to share among people / written down •  Very often used on multiple sites •  Weak passwords are very easy to crack or socially engineer •  Inconvenient •  Hard to remember strong passwords •  Very difficult to type on mobile •  Password managers are fidgety and create a centralized target for attacks •  What happens when you forget, for you and for the site? •  Is there a better way?
  • 14. © 2016 ForgeRock. All rights reserved. Passwordless Login and Frictionless Multifactor Authentication Leverage Mobile Push Notifications to Make Logging in Easier and More Secure
  • 15. © 2016 ForgeRock. All rights reserved. 15
  • 16. © 2016 ForgeRock. All rights reserved. More Information •  Read about all the new features on the ForgeRock blog •  Read the documentation on backstage.forgerock.com for technical details •  Follow us on Twitter: @ForgeRock •  Subscribe to Identity Disorder podcast on iTunes
  • 17. © 2016 ForgeRock. All rights reserved.
  • 18. © 2016 ForgeRock. All rights reserved. Q & A
  • 19. © 2016 ForgeRock. All rights reserved. Thank You
  • 20. © 2016 ForgeRock. All rights reserved. New Mobile Push Authentication •  Eliminates login passwords or use for a frictionless second factor •  Updated ForgeRock Authenticator Mobile App for iOS and Android receives notifications and asks the user to approve •  Users can add their logo, or use the source code to build their own mobile apps •  Uses SNS for secure communication to phone Swipe, Fingerprint Scan, Custom
  • 21. © 2016 ForgeRock. All rights reserved. New Mobile Push Authentication Register Your Device
  • 22. © 2016 ForgeRock. All rights reserved. New Mobile Push Authentication Password-less Login
  • 23. © 2016 ForgeRock. All rights reserved. New Mobile Push Authentication Frictionless Second Factor
  • 24. © 2016 ForgeRock. All rights reserved. New Push Authentication Customer Value •  Vastly improves the user experience by reducing friction during the user authentication process •  Increases security by using an “out-of-band” step •  Push notification prevents man in the middle attacks that could happen with SMS/OTP
  • 25. © 2016 ForgeRock. All rights reserved. Simple, Seamless, and Secure Access to Resources •  Establish simple and flexible access policies that protect your resources at all times •  Assess risk with Contextual Authorization which requires stronger authentication mechanisms only when necessary to make it easier for users while still maintaining system security •  Constant security with Continuous Authorization that ensures the authenticity of users, devices, things, and services at all times and mitigate risk whenever an anomaly is detected Authoriza'on