Delivering the right user access to the right application at the right time is increasingly critical as organizations collaborate more with partners, customers, freelancers, and mobile workers, and as applications shift toward browser-based delivery and cloud services. Identity and Access Management teams must quickly and reliably adapt integrations between application infrastructure, identity providers, and end users to meet business agility, security, and privacy demands. Web Access Management (WAM)—combining web application firewalls and access management—and Identity Federation are positioned as foundational technologies for consistently managing access across internal and external systems, including hybrid and cloud environments.
WAM functions as a gateway in front of applications, handling authentication and typically coarse-grained authorization, and can inject HTTP headers to pass authorization information to backend applications or expose APIs for authorization decisions. Identity Federation standardizes identity usage across organizations by splitting authentication and authorization between an Identity Provider and Service Provider/Relying Party, using interoperable protocols such as OAuth 2.0, OpenID Connect, and UMA, and supporting configurations like federation from internal directories to cloud providers.
United Security Providers (USP), a Swiss vendor with offices in Bern, Zurich, London, and Minsk, offers USP Secure Entry Server (SES), a modular suite combining WAF, access management, CIAM capabilities, and federation. SES targets medium and large enterprises with heterogeneous users and identity sources accessing diverse applications. Modules include SES WAF (reverse proxy, SSL termination, OWASP Top 10 protection), SES Access (cross-domain SSO, adaptive risk-based authentication, trust elevation), SES Federate (SAML, OAuth2/OIDC, IdP proxy), and SES Identity (API-enabled directory/IdP with self-service and provisioning). SES adds anomaly detection across logs, supports multiple deployment models (hardware, virtual, cloud, OpenShift containers, managed service), and emphasizes interoperability, configurability via USP Connect, and avoidance of low-value feature bloat, while facing limitations in global services reach and non-support of standards like WS-*.
See All Locations
See All Locations