Skip to main content
Home > Solutions > The right solution. For the right problem.

The right solution.
For the right problem.

From eliminating passwords in classified networks to enabling NIS2 compliance in critical infrastructure, find your use case.

Authentication

Authentication Use Cases

Passwordless

Eliminate Passwords Completely

Replace all password-based authentication with FIDO2 hardware keys, PKI smart cards or mobile derived credentials. No fallback to passwords, ever. Sharply reduces the phishing attack surface for covered applications.

MyID CMSMyID MFA
Standards: NIST SP 800-63B, FIDO2, WebAuthn
Anti-Phishing

Hardware-Bound Authentication

Because FIDO2 and PKI credentials are cryptographically bound to the legitimate service, they will not authenticate to a spoofed domain, so a fake login page cannot capture a usable credential.

MyID CMSMyID MFA
Standards: FIDO2, NIST AAL3, OMB M-22-09
Offline / Air-Gap

Authentication Without Network Connectivity

Authentication that works without network connectivity. MyID MFA supports fully air-gapped and disconnected networks: Grid Pattern and OATH offline OTP, plus offline Mobile Push, and smart card PKI all work offline. Suited to classified and disconnected environments. (Users enrol online once before offline use; synced passkeys require connectivity.)

MyID MFAMyID CMS
Standards: CNSSI 1253, NIST SP 800-53
Compliance

Regulatory Compliance Use Cases

Federal / HSPD-12

FIPS 201 PIV for US Government

Full FIPS 201 Personal Identity Verification compliance for federal agencies. PIV credential lifecycle, issuance, personalisation, renewal and revocation at scale. Trusted by multiple US federal agencies.

MyID CMSMyID MFA
Standards: FIPS 201-3, HSPD-12, OMB M-11-11
NIS2

EU Essential Operator Compliance

NIS2 Annex II requires strong multi-factor authentication for all critical systems. MyID MFA and CMS provide the compliant authentication layer documented, auditable and ready for national authority inspection.

MyID MFAMyID CMSMyID PSM
Standards: NIS2, eIDAS 2.0
PCI-DSS

Cardholder Data Environment Auth

PCI-DSS v4.0 requires MFA for all access to cardholder data environments. MyID MFA helps meet the PCI-DSS v4.0 MFA requirements for access into cardholder-data environments, providing phishing-resistant authentication and an auditable event log to support Requirement 8 controls.

MyID MFAMyID PSM
Standards: PCI-DSS v4.0, ISO 27001
Industry Sectors

Sector-Specific Deployments

Healthcare

Strong authentication for NHS clinical access

Options include breached-password protection across all Active Directory accounts (MyID PSM) and phishing-resistant pattern or FIDO authentication for remote clinical access (MyID MFA), aligned to NHS DSPT and NIST SP 800-63B.

MyID MFAMyID CMS
Standards: NHS DSPT, CQC, GDPR
Aerospace / Defence

Classified Network Access Control

PKI credential lifecycle for multi-domain classified environments with formal accreditation requirements. Air-gap operation, dual-persona credentials and cross-domain guard integration.

MyID CMSMyID MFA
Standards: NATO STANAG, JSP 440, DSTL
Critical Infrastructure

OT / SCADA Authentication

Strong authentication for Operational Technology environments where network connectivity cannot be assumed. Authentication for disconnected and segmented networks. MyID MFA’s offline OTP and offline Mobile Push let operators authenticate even when a network is air-gapped or segmented, useful in OT and SCADA environments.

MyID MFAMyID CMS
Standards: NIS2

Common questions

Need something specific? Contact our team →

The most common deployment starts with smart card lifecycle management for Windows domain authentication and VPN, typically replacing an ageing credential management deployment. Customers typically start with smart card lifecycle management for Windows and VPN, extend to FIDO2 hardware keys for privileged users, and can add remote identity-proofing where required.

Yes. Use our industry pages for sector-specific use cases: US Federal Government, UK & EU Government, Healthcare & NHS, Financial Services, Energy & Utilities, Defence & Intelligence, Aerospace and Technology. Each page covers the specific regulations, standards and operational requirements for that sector.

MyID's passwordless journey has three phases: (1) Deploy MyID MFA to add a phishing-resistant second factor while keeping passwords; (2) Enable Windows passwordless sign-in with FIDO2 keys or smart cards; (3) Disable passwords entirely for users on the new flow. Each phase reduces risk while maintaining operational continuity.