Idaptive (formerly Centrify)
Idaptive originated as Centrify’s cloud identity platform and became CyberArk Identity after the 2020 acquisition. As a multi-tenant IDaaS, it acts as an IdP that issues OIDC/OAuth tokens and SAML assertions, applies adaptive MFA and risk policies, and automates provisioning to and from directories/apps via SCIM.
Key Capabilities
-
Standards-based SSO: Works as an OIDC/OAuth 2.0 and SAML 2.0 IdP for SaaS and custom apps; admin guides cover flows and configuration.
-
Adaptive MFA & passkeys: Built-in MFA with FIDO2/WebAuthn for passwordless, alongside other factors; configurable per-policy.
-
Provisioning (SCIM 2.0): Supports inbound SCIM (for example, from Microsoft Entra ID) and outbound SCIM to target apps.
-
App catalog & templates: Curated application templates streamline SSO and provisioning setup.
Limitations
-
Lifecycle/rename: Idaptive is no longer a standalone brand—functionality is part of CyberArk Identity.
-
IGA depth: The platform focuses on access management + provisioning; full IGA (role mining, certifications/SoD) typically requires complementary tooling.
-
Advanced OAuth profiles: Public docs emphasize core OAuth/OIDC; not enough public information to confirm support for PAR/DPoP/mTLS-bound tokens in CyberArk Identity.
-
Self-hosted option: Idaptive’s value now comes as a managed SaaS (CyberArk Identity). Organizations needing fully self-hosted AM/IdP should evaluate adjacent products.