Connect Microsoft Entra ID, Okta, and hybrid (on-prem AD + cloud) environments. Get a clear risk score, MFA coverage, privileged-access exposure, device posture, and framework-aligned recommendations (NIST · CIS · ISO) — all in one console.
Pick an IdP. Pull a snapshot. See the risk. Add another anytime — the console combines them.
Users, MFA registration, risky identities, Conditional Access, privileged roles, service principals & on-prem AD sync.
Users & factors (MFA), admin roles, app assignments, and access policies via the Okta API.
Cloud identities synced from on-premises Active Directory — with sync health and stale-sync detection.
Google Workspace, Ping Identity, Keycloak, Microsoft Entra B2B and more on the roadmap.
A security assessment, not just a dashboard.
One 0–100 posture score computed from every signal, with trend over time.
Who has MFA, who doesn't, who's privileged without MFA — surfaced automatically.
Global Admins, overprivileged service principals, and role hygiene.
Risky sign-ins, failed sign-ins, risky service principals, and Identity Protection exposure (E5).
Every finding expands to affected users & maps to NIST CSF 2.0, SP 800-63B, SP 800-207, CIS v8 & ISO 27001 controls.
Cloud + on-prem AD sync detection with stale-sync alerts.
Connect → Analyze → Act.
Add an IdP connector (Entra ID, Okta, hybrid). App-only credentials — no per-user sign-in required.
One click pulls a normalized snapshot and runs the risk engine across all signal categories.
Review drill-down findings, filter by severity, export CSV/JSON, and track your score over time.
A read-only app registration. No per-user sign-in. Revocable anytime.
Follow the onboarding guide (portal or a single CLI command) to create the read-only Entra app and grant admin consent.
Send the Tenant ID, Client ID, and Client secret to the Identity Risk Assessments team over a secure channel.
The connector runs assessments — your team gets the risk score, findings, and framework-mapped recommendations.