Idaptive Next-Gen Access (formerly Centrify)
Idaptive’s Next-Gen Access Cloud unified SSO, adaptive MFA, and risk/behavior analytics, using real-time access data and machine learning to inform policy decisions. After the 2020 acquisition, CyberArk continued these functions under the CyberArk Identity service (standards-based IdP with SCIM provisioning).
Key Capabilities
-
Standards-based SSO: Idaptive/CyberArk Identity acts as an OpenID Connect/OAuth 2.0 and SAML 2.0 Identity Provider for SaaS and custom apps.
-
Adaptive MFA & risk signals: The Next-Gen Access Cloud emphasized adaptive MFA driven by device/endpoint context and behavior analytics.
-
Provisioning (SCIM): CyberArk Identity documents inbound SCIM (e.g., from Microsoft Entra ID) and outbound SCIM to target apps.
-
Zero Trust alignment: Vendor positioning highlights verifying the user and validating the device before issuing tokens/assertions.
Limitations
-
Lifecycle/rename: “Idaptive Next-Gen Access” is no longer a standalone product; evaluate and integrate against CyberArk Identity docs/endpoints.
-
Advanced OAuth profiles: Public CyberArk Identity docs focus on core OAuth/OIDC; not enough public information to confirm PAR/DPoP/mTLS-bound token support.
-
IGA scope: The platform covers access management and provisioning; deeper IGA (role mining, certifications/SoD) is outside core scope in public materials.