The right solution.
For the right problem.
From eliminating passwords in classified networks to enabling NIS2 compliance in critical infrastructure, find your use case.
Authentication Use Cases
Eliminate Passwords Completely
Replace all password-based authentication with FIDO2 hardware keys, PKI smart cards or mobile derived credentials. No fallback to passwords, ever. Sharply reduces the phishing attack surface for covered applications.
Hardware-Bound Authentication
Because FIDO2 and PKI credentials are cryptographically bound to the legitimate service, they will not authenticate to a spoofed domain, so a fake login page cannot capture a usable credential.
Authentication Without Network Connectivity
Authentication that works without network connectivity. MyID MFA supports fully air-gapped and disconnected networks: Grid Pattern and OATH offline OTP, plus offline Mobile Push, and smart card PKI all work offline. Suited to classified and disconnected environments. (Users enrol online once before offline use; synced passkeys require connectivity.)
Regulatory Compliance Use Cases
FIPS 201 PIV for US Government
Full FIPS 201 Personal Identity Verification compliance for federal agencies. PIV credential lifecycle, issuance, personalisation, renewal and revocation at scale. Trusted by multiple US federal agencies.
EU Essential Operator Compliance
NIS2 Annex II requires strong multi-factor authentication for all critical systems. MyID MFA and CMS provide the compliant authentication layer documented, auditable and ready for national authority inspection.
Cardholder Data Environment Auth
PCI-DSS v4.0 requires MFA for all access to cardholder data environments. MyID MFA helps meet the PCI-DSS v4.0 MFA requirements for access into cardholder-data environments, providing phishing-resistant authentication and an auditable event log to support Requirement 8 controls.
Sector-Specific Deployments
Strong authentication for NHS clinical access
Options include breached-password protection across all Active Directory accounts (MyID PSM) and phishing-resistant pattern or FIDO authentication for remote clinical access (MyID MFA), aligned to NHS DSPT and NIST SP 800-63B.
Classified Network Access Control
PKI credential lifecycle for multi-domain classified environments with formal accreditation requirements. Air-gap operation, dual-persona credentials and cross-domain guard integration.
OT / SCADA Authentication
Strong authentication for Operational Technology environments where network connectivity cannot be assumed. Authentication for disconnected and segmented networks. MyID MFA’s offline OTP and offline Mobile Push let operators authenticate even when a network is air-gapped or segmented, useful in OT and SCADA environments.
Common questions
Need something specific? Contact our team →
The most common deployment starts with smart card lifecycle management for Windows domain authentication and VPN, typically replacing an ageing credential management deployment. Customers typically start with smart card lifecycle management for Windows and VPN, extend to FIDO2 hardware keys for privileged users, and can add remote identity-proofing where required.
Yes. Use our industry pages for sector-specific use cases: US Federal Government, UK & EU Government, Healthcare & NHS, Financial Services, Energy & Utilities, Defence & Intelligence, Aerospace and Technology. Each page covers the specific regulations, standards and operational requirements for that sector.
MyID's passwordless journey has three phases: (1) Deploy MyID MFA to add a phishing-resistant second factor while keeping passwords; (2) Enable Windows passwordless sign-in with FIDO2 keys or smart cards; (3) Disable passwords entirely for users on the new flow. Each phase reduces risk while maintaining operational continuity.