- Home
- IAM
- Certificate Lifecycle Management
- Smallstep Critical Components
Smallstep Critical Components
Certificate-based device identity platform for Zero Trust access enforcement.

Smallstep Critical Components
Certificate-based device identity platform for Zero Trust access enforcement.
Go Beyond the Directory. Track the Entire Market.
Monitor competitor funding, hiring signals, product launches, and market movements across the whole industry.
Smallstep Critical Components Description
Smallstep Critical Components (ICCE) is a device identity platform that forms the foundation of Zero Trust Network Access by issuing and managing cryptographic certificates for endpoints, workloads, and services. The platform is structured around four core components: **Combined Inventory:** Maintains a trusted device inventory by syncing with existing MDM solutions. Supports Apple, Windows, and Linux devices, with Secure Enclave and TPM 2.0 EKPub key support. **Managed Credentials:** Issues high-assurance, hardware-backed, non-exportable certificates to trusted endpoints using ACME Device Attestation across all major platforms. Credentials are deployed via existing MDMs and are continuously managed. **Resource Configuration:** Automates the configuration of endpoints to authenticate securely to resources such as Wi-Fi, VPN, and SaaS applications. A cross-platform agent handles credential and configuration management with or without MDM solutions. Supports management of Wi-Fi, VPN, and browser certificates. **Policy Enforcement:** Enforces device identity verification at the point of resource access. Supports both direct resource-level authentication and centralized enforcement via proxy or gateway. Enables access control for VPN/ZTNA, SaaS apps, SSH, and Git/GitHub, with integration into SSO providers. The platform supports EAP-TLS for Wi-Fi, hardware-backed SSH, mTLS for internal services and workloads, and device-bound credentials for identity providers. It is built on the open-source step and step-ca projects and is used by organizations in finance, healthcare, and the public sector.
Smallstep Critical Components FAQ
Common questions about Smallstep Critical Components including features, pricing, alternatives, and user reviews.
Smallstep Critical Components is Certificate-based device identity platform for Zero Trust access enforcement. developed by Smallstep. It is a IAM solution designed to help security teams with Certificate Management, Zero Trust, ZTNA.
FEATURED
Fix-first AppSec powered by agentic remediation, covering SCA, SAST & secrets.
Cybercrime intelligence tools for searching compromised credentials from infostealers
Agentless cloud security platform for risk detection & prevention
Fractional CISO services for B2B companies to build security programs
POPULAR
Real-time OSINT monitoring for leaked credentials, data, and infrastructure
A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.
AI security assurance platform for red-teaming, guardrails & compliance
TRENDING CATEGORIES
Stay Updated with Mandos Brief
Get strategic cybersecurity insights in your inbox