Adaptive Authentication
What is Adaptive Authentication?
An authentication approach that dynamically adjusts security requirements based on contextual risk factors such as location, device, and user behavior.
Frameworks that govern adaptive authentication
What the standards actually require on adaptive authentication
Requirements naming adaptive authentication across 3 standards, quoted from the control text.
Adaptive Authentication. Require individuals accessing the system to employ [organization-defined] under specific [organization-defined]
NIST800-IA-10 · Adaptive Authentication. Require individuals accessing the system to employ [organization-defined] under specific [organization-defined] →Require individuals accessing the system to employ defined supplemental authentication techniques or mechanisms under specific circumstances or situations.
IA-10 · Adaptive Authentication →HKMA TM-G-1 adjacent modules covered in this framework's scope. TM-G-2 BUSINESS CONTINUITY PLANNING: (a) Business Continuity Governance (TM-G-2.2.1) - Board oversight + BCP committee + crisis management + RACI + ownership;
HKMA-TMG1-Adjacent-TMG2-TME1-OR2-BCP-eBanking-Resilience · TM-G-2 BCP + TM-E-1 e-Banking + OR-2 Operational Resilience Adjacent Modules →Questions people ask about adaptive authentication
What is Adaptive Authentication?
Why is Adaptive Authentication important for compliance?
Which compliance frameworks address Adaptive Authentication?
Where can I learn more about Adaptive Authentication?
See how Adaptive Authentication applies across compliance frameworks
Our platform maps 686 frameworks with 311K cross-framework control mappings. Explore how this concept is addressed across standards.