Skip to content
Second Key Security

Identity Assurance

Access reviews that finish every quarter, with evidence your auditor can use.

Cadence
Monthly or quarterly
Pilot pricing
Fixed scope and fixed fee, agreed in writing before we start.
Family
Identity and access

The problem

Quarterly access reviews stall in spreadsheets and reminder emails. People who left keep access to apps nobody remembered, and the auditor finds it before you do.

What you get

How it works

  1. Step 1: Connect read-only to your identity provider

    You create read-only admin roles in your identity provider and key SaaS apps.

  2. Step 2: Agents compare access to roles

    Every account is matched to its owner, role, and employment status.

  3. Step 3: An expert reviews every finding

    False positives removed, privileged access ranked by risk.

  4. Step 4: You approve removals

    Removals use your approval and your credential, and every one is logged.

Access we need

  • A read-only admin role in your identity provider, for example Read-Only Administrator in Okta or Global Reader in Microsoft Entra ID
  • Read-only admin access to your key SaaS apps

What we never do

  • We never change access ourselves.
  • Removals use your approval and your credential.

The full access model is on the security and trust page.

Questions about Identity Assurance?

Tell us what you run and what you need, and we will reply with next steps.