RSA is an identity security company focused on protecting complex enterprise and public-sector environments. Its AI-powered Unified Identity Platform brings together identity intelligence, authentication, access, governance, and lifecycle management so organizations can secure workforce access, reduce identity risk, and support compliance across cloud, hybrid, and on-premises estates.
RSA emphasizes resilience and high-assurance operations for security-sensitive organizations that cannot rely on cloud-only identity controls. Its portfolio spans modern passwordless access, traditional multi-factor authentication, lifecycle automation, governance, and supporting services for modernization, migration, and optimization, making RSA a strong fit for organizations balancing legacy infrastructure with cloud adoption.
Offerings, Capabilities, and Integrations
RSA delivers identity capabilities across authentication, access, governance, and lifecycle management. Its offerings support passwordless and multi-factor authentication, single sign-on, contextual and adaptive access, self-service credential management, identity verification, lifecycle automation, access visibility, and risk-informed policy enforcement for cloud, hybrid, and on-premises use cases.
RSA supports deployment models ranging from SaaS to customer-managed sovereign and air-gapped environments. Its integration footprint includes Microsoft Entra ID, Active Directory and LDAP, SAML 2.0, OpenID Connect, RADIUS, web proxy, and SCIM-based identity sources. RSA also combines software, hardware authenticators, appliances, and professional services to help customers design, deploy, migrate, and optimize identity programs.
Products and Services
- RSA ID Plus: Flagship identity and access management platform that delivers authentication, access, passwordless capabilities, self-service, directory support, and hybrid resilience across cloud, hybrid, and on-premises environments.
- RSA Governance & Lifecycle: Identity governance and lifecycle solution for access visibility, access requests, policy enforcement, lifecycle automation, compliance workflows, and risk-informed governance.
- RSA Governance & Lifecycle Cloud: Cloud-delivered version of RSA Governance & Lifecycle that provides the same core IGA capabilities in a managed deployment model.
- RSA SecurID: On-premises and hybrid secure access portfolio for organizations that need strong authentication, legacy environment support, and flexible deployment options.
- RSA Authentication Manager: Core authentication and access management software used to manage users, policies, authenticators, and protected resources in SecurID deployments.
- SecurID Hardware Appliance: Security-hardened rack-mount appliance that enables rapid on-premises deployment of Authentication Manager.
- RSA Authenticators: Authentication portfolio spanning hardware and software authenticators for OTP, FIDO-based passwordless, biometrics, mobile push, and related multi-factor use cases.
- RSA Risk AI: Machine learning-based risk engine that evaluates identity confidence and access risk in real time to drive smarter authentication and access decisions.
- RSA Help Desk Live Verify: Bi-directional, passwordless identity verification capability designed to secure help desk interactions and reduce social engineering and account takeover risk.
- RSA Mobile Lock: Mobile security capability that detects device threats and can block or restrict authentication until the issue is resolved.
- RSA My Page: User-facing experience for secure enrollment, credential management, identity verification, self-service, and single sign-on.
- RSA ID Plus for Microsoft M1: Enhanced security layer for Microsoft Entra ID that adds MFA resilience, phishing-resistant passwordless access, help desk fraud protection, and broader coverage across hybrid and non-Microsoft environments.
- RSA ID Plus Sovereign Deployment: Customer-deployed and customer-managed implementation of RSA ID Plus for private cloud, multi-cloud, on-premises, restricted, and air-gapped environments.
- RSA Professional Services: Advisory and implementation services covering architecture and design, migration assessment, implementation assistance, operational support, optimization, and custom software solutions.
Target Customers
RSA primarily serves large organizations with demanding security, compliance, and operational resilience requirements. Its customer profile centers on enterprises and public-sector bodies that run a mix of cloud, hybrid, and on-premises systems and need identity controls that extend beyond cloud-only environments.
RSA is especially well aligned to security-sensitive sectors such as government, financial services, healthcare, energy, defense, and other critical infrastructure organizations. It is also suited to teams managing employees, contractors, partners, and other identities that require strong authentication, lifecycle control, audit readiness, and continuous access oversight.
Cloud Integrations and Marketplace
- AWS Marketplace: RSA has a verified AWS Marketplace presence, including RSA Governance & Lifecycle Cloud, which is offered as a cloud-delivered identity governance solution deployed on AWS.
- Microsoft Azure Marketplace: RSA has a verified Microsoft Azure Marketplace presence for identity offerings including RSA ID Plus for Microsoft M1, and RSA also provides Azure-based deployment options for Authentication Manager and related Microsoft-focused solutions.
Key People
- Greg Nelson: Chief Executive Officer
- Jim Taylor: President, Chief Product and Strategy Officer
- Kevin McAdams: Chief Financial Officer
- Michael Bourgon: Chief Human Resources Officer
- Robert Hughes: Chief Information Security Officer
- Laura Marx: Chief Marketing and Growth Officer
- Ryan Toben: Chief Customer Officer
- Alaa Abdulnabi: Senior Vice President and General Manager, International
Key Facts
- Headquarters: Burlington, Massachusetts, United States
- Employees: Approximately 2,700
- Annual Revenue: $500M-$1B
- Parent Company: Clearlake Capital Group and STG
- Subsidiaries: 20+ subsidiaries and affiliates, including RSA Security Canada ULC, RSA Security France S.A.S., RSA Security UK Ltd, RSA Security Applications India Private Limited, and RSA Security Australia Pty. Ltd.
- Publicly Listed: Privately held
Analyst Recognitions
- Gartner: 2025 Gartner Magic Quadrant for Access Management — Niche Player.