Ensure the Right Individuals Have Access to the Right Resources at the Right Times for the Right Reasons.

Identities are the cornerstone of a Zero Trust Architecture (ZTA). With apps, services and data in the cloud, everyone is literally an outsider. Establishing and enforcing a robust identity and access security policy enables agencies to safeguard the confidentiality, integrity, and availability of their assets both in the cloud and on-premises.

Thales TCT offers authentication solutions that address the evolution of identities. From traditional high assurance and commercial-off-the-shelf authentication solutions to first-of-a-kind hardware security module-based identity credentials, Thales TCT offers the most secure, certificate-based authentication platforms available to the U.S. Federal Government.

Universal Authentication Methods Widely Deployed Across Federal Agencies

Thales TCT provides universal authentication methods through wide-range authenticators including certificate-based smart cards and tokensOTP hardware authenticatorstokenless authenticators, and more. Thales TCT offers both its own line of government-specific, high assurance authentication solutions and Thales CPL’s commercial-of-the-shelf SafeNet authentication solutions.

Gartner Positions Thales as a Visionary in Magic Quadrant for Access Management

Provide Simple, Secure Access to all your Apps with Authentication Everywhere

Allowing you to address numerous use cases, assurance levels and threat vectors, Thales TCT authenticators are supported by access management platforms which offer uniform, centralized policy management—delivered in the cloud or on premises. Supporting software solutions include SafeNet Trusted Access (STA) and SafeNet Authentication Service, access management and authentication services, and SafeNet Authentication Client Middleware, for certificate-based authentication.  Thales partners with 3rd-party CMS vendors to offer the most comprehensive identity access and authentication management solutions.

Identity and Access Management Solutions

Access Management

On-Premises or Cloud-Based Solutions

Luna Credential System

HSM-Secured Identity Credentials

Multi-Factor Authentication

Universal Authentication Methods Widely Deployed Across the U.S. Government

High Assurance Authentication

Certificate-based Authenticators Approved for Government Use

eToken Fusion (PKI + FIDO) Free Trial Offer

New Phishing-Resistant Authentication from Thales That Combines FIDO2 with PKI in a Single Authenticator.

As more end point devices and authentication use cases proliferate our ecosystem, the need for alternative non-PIV card, NIST SP800-63-3, AAL3 level hardware authenticators increases.  To thwart vulnerabilities with legacy authentication options such as OTP, SMS, and push notification, guidance has been published to recommend phishing-resistant forms of MFA such as FIDO2 and PKI.  This is exactly what the Thales eToken Fusion series gives you; both phishing-resistant authentication options on a single token (FIDO and PKI).  TAA compliant, EUCKLEAK-Free, FIPS certified, phishing-resistant tokens.