FB pixel

IdRamp brings IDV to Microsoft Entra ID account recovery process

Entra ID enhanced with Zero Trust features for US government security
IdRamp brings IDV to Microsoft Entra ID account recovery process
 

Microsoft has announced a series of enhancements to its Entra ID platform, aimed at bolstering identity security for US government agencies and aligning with the federal Zero Trust strategy.

IdRamp is the latest company to partner with Microsoft to introduce Identity Verification (IDV) into the Entra ID account recovery process.

The partnership aims to bolster security, reduce support costs, and enhance user experience as research reveals account takeover attacks increased by 350 percent last year, resulting in nearly $13 billion in losses, IdRamp reports.

The new MS Entra ID advanced IDV account recovery system is designed to improve security by incorporating multiple verification methods, including document proofing, biometric liveness detection, verifiable credentials, and the latest Entra ID Face Check technology. The identity verification system provides Zero Trust access by integrating network access, identity protection, governance, and identity verification functionalities.

The account recovery process provides identity verification to prevent unauthorized access. IdRamp boasts that if attackers obtain stolen credentials, its verification process can block their access to neutralize phishing attempts. Additionally, the new account recovery technology integrates with existing authentication systems and business workflows.

Microsoft enhances government security with identity offering

With IDV embedded into Microsoft Entra ID, the cloud-based identity and access management service is playing a pivotal role in helping U.S. government agencies comply with M-22-09 requirements for identity security. This is part of a broader move usher the U.S. government toward Zero Trust cybersecurity principles as described in the executive order released in 2022.

The new features of Microsoft Entra ID, detailed in a recent blog post, provide tools designed to help government agencies manage user identities, which encompass certificate-based authentication in the cloud, authentication strength using Conditional Access, cross-tenant access configurations, FIDO2 provisioning APIs, Azure virtual desktop support for passwordless authentication, and device-bound passkeys.

The recent integration of Keyless’s zero-knowledge biometric technology into Entra ID aligns with the US government’s ongoing efforts to implement a Zero Trust Architecture (ZTA), with the aim of enabling organizations to adopt biometric authentication as part of their multi-factor authentication (MFA) strategies. This partnership will enable organizations to leverage biometric data, such as fingerprints or facial recognition, to authenticate users securely, aligning with the U.S. government’s push towards advanced identity verification methods.

The partnership also lets organizations using Entra ID integrate biometric authentication for login and extra security measures, without the requirement to store biometric data.

These enhancements are expected to streamline the process of complying with federal security regulations, including those outlined in the National Institute of Standards and Technology (NIST) guidelines.

Microsoft, the NIST and the National Cybersecurity Center of Excellence (NCCoE) are focusing on helping enterprises implement Zero Trust strategies, in a bid to provide organizations with actionable steps to enhance their cybersecurity postures by adopting Zero Trust principles.

As detailed in an earlier Microsoft blog post, Microsoft’s collaboration with NIST focuses on refining Zero Trust practices, with an emphasis on enhancing the effectiveness of identity and access management tools.

Related Posts

Article Topics

 |   |   |   |   |   |   | 

Latest Biometrics News

 

ID4Africa vendors see Africa leapfrogging legacy digital identity systems

The annual ID4Africa AGM is a major world event in identity – a must-attend for many biometrics providers working on…

 

Gataca boosts age assurance pitch with certification to ISO standard by ACCS

Madrid-based Gataca is now certified as a provider of privacy-preserving age assurance following an independent assessment. The company successfully completed…

 

BixeLab testing activity highlights expansion of biometric assurance

As digital identity systems evolve, biometric testing labs are increasingly becoming central to trust, compliance and interoperability. BixeLab’s recent activity…

 

Apple removes Russian digital ID app Max from its stores citing sanctions

Apple has removed Russian state-backed messaging and digital ID platform Max from its official App Store, affecting more than 20…

 

G7 backs privacy-preserving age assurance as Japan proposes social media access limits

Japan is considering new restrictions on minors’ access to social media while stopping short of blanket age bans. While countries…

 

Digital company ID could save UK financial sector £1.7B: CFIT

A UK initiative to create a reusable digital identity credential for businesses could save financial institutions £1.7 billion (US$2.2 billion)…

Comments

Leave a Reply

This site uses Akismet to reduce spam. Learn how your comment data is processed.

Biometric Market Analysis and Buyer's Guides

Most Viewed This Week

Featured Company

Biometrics Insight, Opinion

Digital ID In-Depth

Biometrics White Papers

Biometrics Events