SlideShare a Scribd company logo
FIDO and Adaptive Authentication
John Tolbert
Lead Analyst
KuppingerCole, Inc
www.kuppingercole.com
Mobile Social
Risk Adaptive Continuous
Stronger
Authentication Trends
10/5/2018© KuppingerCole 2
• SMS OTP (deprecated)
• Mobile push notifications
• Mobile apps
• Global Platform TEE / SE
• Secure Enclave for iOS
• Mobile biometrics
• Device native, such as TouchID, FaceID, Samsung Fingerprint
• 3rd party, such as NokNok Labs, Daon, etc.
• FIDO UAF and 2.0
Mobile Authentication
10/5/2018© KuppingerCole 3
Why mobile devices are important for MFA
4
FIDO
• Facebook, Google, Microsoft, LinkedIn, Twitter, et al
• Based on open standards OpenID and OIDC
• Can also be used for registration
• Famed for Ease-of-use
• Incorporates elements of risk adaptive and continuous authentication
Social Logins
10/5/2018© KuppingerCole 5
Geo-location User attributes
Geo-velocity User history
Geo-fencing: IP addresses / ranges User on new device check
Time of day / week Jailbreak or root check
Device ID / fingerprint Known compromised credential check
Device health assessment Fraud indicator check
Known bad IP / network checks
Factors that can be evaluated by risk adaptive authentication
10/5/2018© KuppingerCole 6
Risk adaptive authentication & FIDO
10/5/2018© KuppingerCole 7
FIDO
Risk Score
0
50
100
T1 T2 T3
T4
T5
T6
Risk variance across time
Risk Score
Continuous Authentication
10/5/2018© KuppingerCole 8
T1: Initial AuthN
T2: No major
environmental changes
T3: Change of WiFI SSID
T4: Location change
T5: Normal behavior
T6: Return to baseline
Identify criteria
for evaluation
and vendors to
survey
Invite vendors
to participate
Evaluate vendor
responses
Interview active
customers
Objective
ratings
Prepare report
Leadership Compass Methodology
10/5/2018© KuppingerCole 9
Security
Function-
ality
Usability Integration Interop
Leadership Compass Components
10/5/2018© KuppingerCole 10
Innovation Market
Position
Financial Ecosystem
Leadership Compass Components -- additional
10/5/2018© KuppingerCole 11
Product Leadership –
functionality and
completeness of vision
Market Leadership –
number and geographic
distribution of
customers, partners,
and support ecosystem
Innovation Leadership –
delivering new and
useful features at
customer request
Overall Leadership
The Different Categories of Leadership
10/5/2018© KuppingerCole 12
• HID Global
• IBM
• OneSpan
• RSA
• SecureAuth + Core Security
© KuppingerCole 13
• AdNovum
• CA Technologies
• Entrust Datacard
• Ergon Informatik
• Evidian
• ForgeRock
10/5/2018
Vendors in Leadership Compass Adaptive AuthN (on-prem)
• Microsoft
• Okta
• One Identity
• OneSpan
• Ping Identity
• Symantec
• ThreatMetrix
© KuppingerCole 14
• Centrify
• Entrust Datacard
• Gemalto
• HID Global
• ID Data Web
• Iovation
10/5/2018
Vendors in Leadership Compass Cloud MFA
LC Adaptive Authentication Overall Leadership
10/5/2018© KuppingerCole
15
KuppingerCole Analysts AG
Headquarters
Wilhelmstraße 20-22
65185 Wiesbaden | Germany
Tel +49 (211) 23 70 77 – 0
Fax +49 (211) 23 70 77 – 11
www.kuppingercole.com
The Future of Information Security and Privacy – Today.
sales@kuppingercole.com
10/5/2018© KuppingerCole

More Related Content

PPTX
FIDO Masterclass
PDF
Beyond Passwords: FIDO & the Future of Consumer Authentication
PDF
Consumer Authentication Trends in APAC
PDF
FIDO Authentication in a Mobile Network
PDF
Deploying FIDO Authentication - Business Considerations
PDF
2018 12-07 tokyo-seminar Brett McDowell
PDF
FIDO2 & Microsoft
PPTX
Webinar: Catch Up with FIDO Plus AMA Session
FIDO Masterclass
Beyond Passwords: FIDO & the Future of Consumer Authentication
Consumer Authentication Trends in APAC
FIDO Authentication in a Mobile Network
Deploying FIDO Authentication - Business Considerations
2018 12-07 tokyo-seminar Brett McDowell
FIDO2 & Microsoft
Webinar: Catch Up with FIDO Plus AMA Session

What's hot (20)

PPTX
FIDO Alliance Webinar: Catch Up WIth FIDO
PPTX
Introduction to FIDO's Identity Verification & Binding Initiative
PDF
Using FIDO Authenticator for IoT Devices
PDF
FIDO & PSD2 – Achieving Strong Customer Authentication Compliance
PPTX
Authenticate 2021: Welcome Address
PPTX
Introducing FIDO Device Onboard (FDO)
PDF
FIDO Authentication Technical Overview
PDF
Deployment Snapshot from Japan: NTT DOCOMO, Yahoo! Japan
PDF
FIDO Certified Program: The Value of Certification
PDF
Deployment Case Study: Login.gov & FIDO2
PPTX
A First Step to a World without Passwords
PDF
Javelin Research's State of Strong Authentication 2019 Report Webinar
PPTX
Webinar: Considerations for Deploying FIDO in the Enterprise
PDF
FIDO and the Future of User Authentication
PDF
FIDO UAF Adoption in Hong Kong
PDF
Introduction to FIDO Biometric Authentication
PDF
FIDO Alliance Vision and Status
PDF
FIDO Authentication for Gaming Webinar
PDF
FIDO as Regtech - Addressing Government Requirements
PDF
FIDO's Role in the Global Regulatory Landscape for Strong Authentication
FIDO Alliance Webinar: Catch Up WIth FIDO
Introduction to FIDO's Identity Verification & Binding Initiative
Using FIDO Authenticator for IoT Devices
FIDO & PSD2 – Achieving Strong Customer Authentication Compliance
Authenticate 2021: Welcome Address
Introducing FIDO Device Onboard (FDO)
FIDO Authentication Technical Overview
Deployment Snapshot from Japan: NTT DOCOMO, Yahoo! Japan
FIDO Certified Program: The Value of Certification
Deployment Case Study: Login.gov & FIDO2
A First Step to a World without Passwords
Javelin Research's State of Strong Authentication 2019 Report Webinar
Webinar: Considerations for Deploying FIDO in the Enterprise
FIDO and the Future of User Authentication
FIDO UAF Adoption in Hong Kong
Introduction to FIDO Biometric Authentication
FIDO Alliance Vision and Status
FIDO Authentication for Gaming Webinar
FIDO as Regtech - Addressing Government Requirements
FIDO's Role in the Global Regulatory Landscape for Strong Authentication
Ad

Similar to FIDO and Adaptive Authentication (20)

PPTX
Global Regulatory Landscape for Strong Authentication
PDF
Introduction to the FIDO Alliance
PPTX
Introduction to FIDO Alliance
PPTX
FIDO Alliance Vision and Updates
PDF
FIDO Workshop at the Cloud Identity Summit: FIDO Alliance Overview
PDF
Introduction to the FIDO Alliance
PPTX
Strong Authentication Trends in Government
PPTX
The State of Passkeys with FIDO Alliance.pptx
PPTX
Introduction to FIDO Alliance: Vision and Status -Tokyo Seminar -Brett McDowell
PPTX
2019 FIDO Seoul Seminar - Moving Beyond Passwords
PDF
Fido Overview: Status and Future
PPTX
FIDO Alliance: Welcome and FIDO Update.pptx
PPTX
Welcome and FIDO Update.pptx
PDF
Modern Authentication – Turn a Losing Battle into a Winning Strategy, Robert ...
PDF
'A Question of Scale: Mapping Authentication to the Modern Computing Ecosystem'
PDF
FIDO & The Mobile Network Operator - Goode Intelligence & Nok Nok Labs
PDF
FIDO And the Future of User Authentication
PDF
The State of FIDO
PDF
FIDO Alliance Today: Status and News
PPTX
Webinar: Beyond Two-Factor: Secure Access Control for Office 365
Global Regulatory Landscape for Strong Authentication
Introduction to the FIDO Alliance
Introduction to FIDO Alliance
FIDO Alliance Vision and Updates
FIDO Workshop at the Cloud Identity Summit: FIDO Alliance Overview
Introduction to the FIDO Alliance
Strong Authentication Trends in Government
The State of Passkeys with FIDO Alliance.pptx
Introduction to FIDO Alliance: Vision and Status -Tokyo Seminar -Brett McDowell
2019 FIDO Seoul Seminar - Moving Beyond Passwords
Fido Overview: Status and Future
FIDO Alliance: Welcome and FIDO Update.pptx
Welcome and FIDO Update.pptx
Modern Authentication – Turn a Losing Battle into a Winning Strategy, Robert ...
'A Question of Scale: Mapping Authentication to the Modern Computing Ecosystem'
FIDO & The Mobile Network Operator - Goode Intelligence & Nok Nok Labs
FIDO And the Future of User Authentication
The State of FIDO
FIDO Alliance Today: Status and News
Webinar: Beyond Two-Factor: Secure Access Control for Office 365
Ad

More from FIDO Alliance (20)

PPTX
Securing Account Lifecycles in the Age of Deepfakes.pptx
PPTX
FIDO Seminar: Perspectives on Passkeys & Consumer Adoption.pptx
PPTX
FIDO Seminar: Evolving Landscape of Post-Quantum Cryptography.pptx
PPTX
FIDO Seminar: Targeting Trust: The Future of Identity in the Workforce.pptx
PPTX
FIDO Seminar: New Data: Passkey Adoption in the Workforce.pptx
PPTX
FIDO Seminar: Authentication for a Billion Consumers - Amazon.pptx
PPTX
FIDO Alliance Seminar State of Passkeys.pptx
PPTX
FIDO Munich Seminar: FIDO Tech Principles.pptx
PPTX
FIDO Munich Seminar: Securing Smart Car.pptx
PPTX
FIDO Munich Seminar: Strong Workforce Authn Push & Pull Factors.pptx
PPTX
FIDO Munich Seminar: Biometrics and Passkeys for In-Vehicle Apps.pptx
PPTX
FIDO Munich Seminar Workforce Authentication Case Study.pptx
PPTX
FIDO Munich Seminar In-Vehicle Payment Trends.pptx
PPTX
FIDO Munich Seminar FIDO Automotive Apps.pptx
PPTX
FIDO Munich Seminar Blueprint for In-Vehicle Payment Standard.pptx
PPTX
FIDO Munich Seminar Introduction to FIDO.pptx
PPTX
UX Webinar Series: Essentials for Adopting Passkeys as the Foundation of your...
PPTX
UX Webinar Series: Drive Revenue and Decrease Costs with Passkeys for Consume...
PPTX
UX Webinar Series: Aligning Authentication Experiences with Business Goals
PDF
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf
Securing Account Lifecycles in the Age of Deepfakes.pptx
FIDO Seminar: Perspectives on Passkeys & Consumer Adoption.pptx
FIDO Seminar: Evolving Landscape of Post-Quantum Cryptography.pptx
FIDO Seminar: Targeting Trust: The Future of Identity in the Workforce.pptx
FIDO Seminar: New Data: Passkey Adoption in the Workforce.pptx
FIDO Seminar: Authentication for a Billion Consumers - Amazon.pptx
FIDO Alliance Seminar State of Passkeys.pptx
FIDO Munich Seminar: FIDO Tech Principles.pptx
FIDO Munich Seminar: Securing Smart Car.pptx
FIDO Munich Seminar: Strong Workforce Authn Push & Pull Factors.pptx
FIDO Munich Seminar: Biometrics and Passkeys for In-Vehicle Apps.pptx
FIDO Munich Seminar Workforce Authentication Case Study.pptx
FIDO Munich Seminar In-Vehicle Payment Trends.pptx
FIDO Munich Seminar FIDO Automotive Apps.pptx
FIDO Munich Seminar Blueprint for In-Vehicle Payment Standard.pptx
FIDO Munich Seminar Introduction to FIDO.pptx
UX Webinar Series: Essentials for Adopting Passkeys as the Foundation of your...
UX Webinar Series: Drive Revenue and Decrease Costs with Passkeys for Consume...
UX Webinar Series: Aligning Authentication Experiences with Business Goals
FIDO Alliance Osaka Seminar: The WebAuthn API and Discoverable Credentials.pdf

Recently uploaded (20)

PPTX
Big Data Technologies - Introduction.pptx
PPTX
Effective Security Operations Center (SOC) A Modern, Strategic, and Threat-In...
PDF
Encapsulation theory and applications.pdf
PDF
Spectral efficient network and resource selection model in 5G networks
PPTX
Digital-Transformation-Roadmap-for-Companies.pptx
PPTX
ACSFv1EN-58255 AWS Academy Cloud Security Foundations.pptx
PDF
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
PPTX
Programs and apps: productivity, graphics, security and other tools
PDF
Mobile App Security Testing_ A Comprehensive Guide.pdf
PDF
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
PDF
Per capita expenditure prediction using model stacking based on satellite ima...
PDF
Electronic commerce courselecture one. Pdf
PDF
Unlocking AI with Model Context Protocol (MCP)
PDF
Building Integrated photovoltaic BIPV_UPV.pdf
PPTX
Spectroscopy.pptx food analysis technology
PDF
Encapsulation_ Review paper, used for researhc scholars
PDF
Dropbox Q2 2025 Financial Results & Investor Presentation
PDF
KodekX | Application Modernization Development
PPTX
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
PDF
Chapter 3 Spatial Domain Image Processing.pdf
Big Data Technologies - Introduction.pptx
Effective Security Operations Center (SOC) A Modern, Strategic, and Threat-In...
Encapsulation theory and applications.pdf
Spectral efficient network and resource selection model in 5G networks
Digital-Transformation-Roadmap-for-Companies.pptx
ACSFv1EN-58255 AWS Academy Cloud Security Foundations.pptx
7 ChatGPT Prompts to Help You Define Your Ideal Customer Profile.pdf
Programs and apps: productivity, graphics, security and other tools
Mobile App Security Testing_ A Comprehensive Guide.pdf
Build a system with the filesystem maintained by OSTree @ COSCUP 2025
Per capita expenditure prediction using model stacking based on satellite ima...
Electronic commerce courselecture one. Pdf
Unlocking AI with Model Context Protocol (MCP)
Building Integrated photovoltaic BIPV_UPV.pdf
Spectroscopy.pptx food analysis technology
Encapsulation_ Review paper, used for researhc scholars
Dropbox Q2 2025 Financial Results & Investor Presentation
KodekX | Application Modernization Development
VMware vSphere Foundation How to Sell Presentation-Ver1.4-2-14-2024.pptx
Chapter 3 Spatial Domain Image Processing.pdf

FIDO and Adaptive Authentication

  • 1. FIDO and Adaptive Authentication John Tolbert Lead Analyst KuppingerCole, Inc www.kuppingercole.com
  • 2. Mobile Social Risk Adaptive Continuous Stronger Authentication Trends 10/5/2018© KuppingerCole 2
  • 3. • SMS OTP (deprecated) • Mobile push notifications • Mobile apps • Global Platform TEE / SE • Secure Enclave for iOS • Mobile biometrics • Device native, such as TouchID, FaceID, Samsung Fingerprint • 3rd party, such as NokNok Labs, Daon, etc. • FIDO UAF and 2.0 Mobile Authentication 10/5/2018© KuppingerCole 3
  • 4. Why mobile devices are important for MFA 4 FIDO
  • 5. • Facebook, Google, Microsoft, LinkedIn, Twitter, et al • Based on open standards OpenID and OIDC • Can also be used for registration • Famed for Ease-of-use • Incorporates elements of risk adaptive and continuous authentication Social Logins 10/5/2018© KuppingerCole 5
  • 6. Geo-location User attributes Geo-velocity User history Geo-fencing: IP addresses / ranges User on new device check Time of day / week Jailbreak or root check Device ID / fingerprint Known compromised credential check Device health assessment Fraud indicator check Known bad IP / network checks Factors that can be evaluated by risk adaptive authentication 10/5/2018© KuppingerCole 6
  • 7. Risk adaptive authentication & FIDO 10/5/2018© KuppingerCole 7 FIDO
  • 8. Risk Score 0 50 100 T1 T2 T3 T4 T5 T6 Risk variance across time Risk Score Continuous Authentication 10/5/2018© KuppingerCole 8 T1: Initial AuthN T2: No major environmental changes T3: Change of WiFI SSID T4: Location change T5: Normal behavior T6: Return to baseline
  • 9. Identify criteria for evaluation and vendors to survey Invite vendors to participate Evaluate vendor responses Interview active customers Objective ratings Prepare report Leadership Compass Methodology 10/5/2018© KuppingerCole 9
  • 10. Security Function- ality Usability Integration Interop Leadership Compass Components 10/5/2018© KuppingerCole 10
  • 11. Innovation Market Position Financial Ecosystem Leadership Compass Components -- additional 10/5/2018© KuppingerCole 11
  • 12. Product Leadership – functionality and completeness of vision Market Leadership – number and geographic distribution of customers, partners, and support ecosystem Innovation Leadership – delivering new and useful features at customer request Overall Leadership The Different Categories of Leadership 10/5/2018© KuppingerCole 12
  • 13. • HID Global • IBM • OneSpan • RSA • SecureAuth + Core Security © KuppingerCole 13 • AdNovum • CA Technologies • Entrust Datacard • Ergon Informatik • Evidian • ForgeRock 10/5/2018 Vendors in Leadership Compass Adaptive AuthN (on-prem)
  • 14. • Microsoft • Okta • One Identity • OneSpan • Ping Identity • Symantec • ThreatMetrix © KuppingerCole 14 • Centrify • Entrust Datacard • Gemalto • HID Global • ID Data Web • Iovation 10/5/2018 Vendors in Leadership Compass Cloud MFA
  • 15. LC Adaptive Authentication Overall Leadership 10/5/2018© KuppingerCole 15
  • 16. KuppingerCole Analysts AG Headquarters Wilhelmstraße 20-22 65185 Wiesbaden | Germany Tel +49 (211) 23 70 77 – 0 Fax +49 (211) 23 70 77 – 11 www.kuppingercole.com The Future of Information Security and Privacy – Today. sales@kuppingercole.com 10/5/2018© KuppingerCole