Cloud & Hybrid
Rapid, Scalable Deployment
Deploy MyID in your own Microsoft Azure or Amazon Web Services environment, or run it through a federal-grade managed-service partner. Fast time-to-value, elastic scale and no physical hardware to maintain. Built for enterprises moving to cloud-first identity security without air-gap requirements.
What this deployment model delivers
Deploy to your own cloud
Run MyID® in your own Azure or AWS environment. Elastic scalability, infrastructure-as-code deployment, no physical hardware to maintain. Your team owns operations, or engage a managed-service partner for a fully-managed offering.
Data residency choice
Choose your hosting region: UK, EU or US. Data stays in your selected region, supporting UK, EU or US data residency requirements. An EU-only option is available where you need EU data residency.
Entra ID integration
Native Microsoft Entra ID integration for FIDO2 provisioning and PKI trust. Cloud HSM support via Thales Luna Cloud HSM (DPoD). Works with your existing Microsoft 365 and Azure deployment.
Hybrid: on-prem AD, cloud admin
Split architecture: on-premise Active Directory with the cloud-hosted MyID Operator Client and self-service. Staff anywhere can use self-service while PKI stays on-premise.
Architecture components
| MyID Operator Client | Web admin console and self-service, hosted on Azure or AWS |
| Policy Engine | Logic tier, scale and patch on your own schedule |
| Cloud HSM | Thales Luna Cloud HSM (DPoD). FIPS 140-2 Level 3 |
| Database | Azure SQL or Amazon RDS. HA, automated backup, encryption at rest |
Detailed platform requirements
Full server, operating system, database, HSM and client requirements for every MyID deployment are maintained in the Technical Overview, alongside the architecture and API detail.
Cloud and hybrid deployment, rapid scale without infrastructure burden
Cloud-hosted credential management removes the physical infrastructure overhead while maintaining enterprise-grade security. Your team owns the deployment, or you engage a managed-service partner such as WidePoint for a fully-managed offering. Intercede provides architecture review, migration consulting and ongoing technical support, so your operations team focuses on credential policy and user management rather than physical hardware. Hybrid models let you keep credential issuance on-premise while moving administration and reporting to the cloud, supporting data residency requirements while reducing operational complexity.
Common questions
Need something specific? Contact our team →
MyID can be deployed to Microsoft Azure (any region) or Amazon Web Services (any region). You choose the region; data stays in your selected region. EU customers can select EU-only data residency.
Your operations team typically owns the deployment, with Intercede providing technical support, version upgrade guidance and architecture review. For a fully-managed offering, customers can engage a managed-service partner such as WidePoint. Intercede itself does not operate customer estates.
Yes. Intercede provides architecture review and migration consulting for on-premise to cloud moves, including credential data migration, PKI trust migration and parallel-run testing. Your team or partner runs the migration; we guide the design. The time required depends on the size and complexity of your existing deployment.