SecurityBrief Asia - Technology news for CISOs & cybersecurity decision-makers
Story image

Yubico launches suite to enhance enterprise phishing defence

Today

Yubico has announced the general availability of its Yubico Enrollment Suite, designed to help enterprises achieve phishing resistance on a wide scale.

The suite includes offerings such as Yubico FIDO Pre-reg and the newly introduced YubiEnroll, which provide enterprises with options to transition towards a passwordless security model by pre-enrolling YubiKeys with their Identity Platform (IdP) prior to distribution to end users.

Yubico FIDO Pre-reg integrates seamlessly with the Okta Workforce Identity Cloud, enabling pre-enrolled YubiKeys to be delivered directly to users. YubiEnroll further assists organisations utilising Okta's identity and access management by allowing IT staff to enrol YubiKeys on behalf of end users at their locations. This provides Okta customers with a flexible approach to implementing high-assurance multi-factor authentication (MFA) using YubiKeys.

Okta, identified as the inaugural partner for Yubico FIDO Pre-reg, collaborated with Yubico to develop the integrated solution. As part of its initiative known as the Okta Secure Identity Commitment, the company quickly deployed the solution to over 6,000 employees worldwide as an early adopter, aiming to lead the fight against identity-based attacks.

According to Stephen Lee, Vice President of Technical Strategy & Partnerships at Okta, the company had three primary goals when rolling out Yubico FIDO Pre-reg. These included offering phishing-resistant onboarding for new users, ensuring a consistent recovery experience for existing users who may lose their primary device, and reducing user friction and administrative overhead.

"At Okta, we had rolled out a passwordless solution for our global workforce using the Okta FastPass technology. With Yubico, we saw an opportunity to leap the final hurdle to deliver an end-to-end passwordless experience. Over four months, we shipped 6,000+ YubiKeys to employees and contractors in 42 countries," Mr Lee said.

In implementing this solution, Okta achieved several milestones, delivering YubiKeys to employees across 42 countries, fully deploying the solution within four months, and experiencing zero administrative overhead when employees lost their primary authenticators or devices.

With the Yubico FIDO Pre-reg, enterprises can offer users secure passwordless access without manual security key registration, as the keys are pre-registered with the organisation's IdP. This direct enrolment in the authentication platform reduces reliance on help desks, empowering enterprises to bolster their cyber defences against phishing attacks throughout the user account lifecycle.

Follow us on:
Follow us on LinkedIn Follow us on X
Share on:
Share on LinkedIn Share on X