- Home
- IAM
- Certificate Lifecycle Management
- Smallstep Device Identity
Smallstep Device Identity
Hardware-attested cert-based device identity platform for enterprise ZTNA.

Smallstep Device Identity
Hardware-attested cert-based device identity platform for enterprise ZTNA.
Go Beyond the Directory. Track the Entire Market.
Monitor competitor funding, hiring signals, product launches, and market movements across the whole industry.
Smallstep Device Identity Description
Smallstep Device Identity is a certificate-based device identity platform designed to ensure that only authorized, company-owned devices can access enterprise resources. The platform leverages ACME Device Attestation (ACME DA), a standard co-developed with Google at the IETF, which uses hardware co-processors for device attestation and key binding. This approach replaces older protocols like SCEP and is designed to prevent credential exfiltration, phishing, and impersonation attacks. Core use cases include: - Certificate-based Wi-Fi access using EAP-TLS - Enforcing device identity in SSO flows for SaaS applications - Device identity enforcement for VPNs and Zero Trust Network Access (ZTNA) - Certificate management for DevOps workloads and VMs - Extending single sign-on and device identity to SSH The platform provides cross-platform support covering Linux, macOS, Android, iOS, and Windows — addressing a gap left by traditional MDM tools that typically lack Linux support. It covers four foundational components of device identity: device inventory, configuration, credential issuance, and enforcement. Smallstep Device Identity also extends identity coverage to non-human actors, including AI agents, MCP clients, MCP servers, and model runtimes. It handles the full certificate lifecycle for device identities and can integrate with existing certificate authorities or replace them.
Smallstep Device Identity FAQ
Common questions about Smallstep Device Identity including features, pricing, alternatives, and user reviews.
Smallstep Device Identity is Hardware-attested cert-based device identity platform for enterprise ZTNA. developed by Smallstep. It is a IAM solution designed to help security teams with Certificate Management, Zero Trust, ZTNA.
FEATURED
Fix-first AppSec powered by agentic remediation, covering SCA, SAST & secrets.
Cybercrime intelligence tools for searching compromised credentials from infostealers
Agentless cloud security platform for risk detection & prevention
Fractional CISO services for B2B companies to build security programs
POPULAR
Real-time OSINT monitoring for leaked credentials, data, and infrastructure
A threat intelligence aggregation service that consolidates and summarizes security updates from multiple sources to provide comprehensive cybersecurity situational awareness.
AI security assurance platform for red-teaming, guardrails & compliance
TRENDING CATEGORIES
Stay Updated with Mandos Brief
Get strategic cybersecurity insights in your inbox