PresenceAssure delivers high-assurance authentication for Windows and web single sign-on by verifying user identity and real-time physical presence. It supports touchless experiences and phishing-resistant methods such as FIDO and certificate-based authentication, including PIV, at initial login and can continuously verify presence throughout the session—without replacing existing identity infrastructure.
Request a demo How it worksPasswords, one-time codes, and federated identities can
establish that a valid credential was presented. Even strong authentication methods do
not necessarily confirm that the authorized person remains physically present and
actively participating after authentication.
For regulated organizations, that distinction matters. Credentials may be phished,
shared, relayed, or misused. High-risk applications and sensitive workflows require
assurance that the right person—not merely the right credential—is present at login and,
when policy requires, remains present throughout the session.
PresenceAssure closes this assurance gap by orchestrating supported authentication
methods with configurable presence, proximity, liveness, and biometric signals.
Bad actors can steal, mimic, or exploit captured credentials. Organizations need strong authentication methods that resist phishing attempts and tether the authorized interactive user to the authentication process before access is granted.
A successful login verifies a moment in time. It does not necessarily establish that the same authorized user remains present and actively participating throughout the session.
Different applications, users, and risk levels often require different factors. Without centralized orchestration, stronger controls can become inconsistent, difficult to audit, and disruptive to users.
PresenceAssure began as a touchless biometric authentication system and has evolved into
a configurable authentication and policy-orchestration platform. It verifies who the
user is and whether the user is physically present by combining supported authentication
methods with proximity or wearable signals, liveness detection, and biometric matching.
Workflows can be tailored to each application, user group, role, and risk level.
Designed for regulated enterprises, PresenceAssure strengthens Windows Authentication
and web SSO while integrating with Active Directory, cloud identity providers, and
standards-based federation. It supports FIDO and certificate-based authentication,
including PIV, and can be deployed on-premises or through a public/SaaS cloud model.
Confirms that the authorized user is physically present when access is requested.
Supports phishing-resistant methods such as FIDO and certificate-based authentication, including PIV. Smart cards, security keys, and wearables are supported form factors rather than separate authentication methods.
Lets administrators compose authentication journeys with mandatory or optional steps, retry limits, timeouts, fallback methods, and biometric logic.
Applies workflows to specific applications, user groups, roles, and risk conditions for proportionate assurance.
Verifies the user at initial login and can continuously verify presence throughout the session according to configured policy.
Provides a touchless alternative to conventional inserted-card PIV workflows while preserving certificate-based authentication. PresenceAssure can also add presence or biometric verification before or after an existing PIV authentication step.
Provides dashboards, authentication outcomes, user trends, reporting, and audit trails for operational oversight, compliance, and investigation.
Integrates with Windows Authentication, Active Directory, cloud identity providers, and web SSO environments without replacing existing identity or authorization systems.
PresenceAssure evaluates the authentication context, invokes the required methods and factors, verifies identity and real presence, and applies the organization’s authentication policy. The workflow supports initial authentication and, when configured, continued presence verification throughout the session.
PresenceAssure adds presence and biometric assurance to existing authentication environments. Organizations retain their identity providers, applications, credentials, and authorization policies while integrating configurable verification into Windows Authentication and web SSO workflows.
Extend high-assurance authentication to Windows access
in local and Active Directory environments.
Connect PresenceAssure to Microsoft Entra ID and other supported cloud identity providers within existing web SSO environments.
Integrate enterprise applications through supported federation interfaces, including SAML and OIDC, while retaining the existing identity provider and authorization model.
Orchestrate FIDO and certificate-based authentication, including PIV, within policy-driven workflows. Supported form factors can include smart cards, security keys, and wearables.
Combine camera-based face or iris matching and
liveness checks with supported wearable, token, and proximity signals according
to the deployment.
Deploy PresenceAssure on premises or through a
public/SaaS cloud model according to security, operational, and regulatory
requirements.
PresenceAssure supports regulated enterprises that require higher identity assurance, consistent authentication policy, and auditable authentication outcomes. This includes federal government and defense, healthcare, financial services, critical infrastructure, and manufacturing environments.
Federal and defense organizations can modernize PIV-based authentication with touchless workflows that preserve certificate-based authentication. PresenceAssure can also add proximity, liveness, or biometric verification before or after an existing PIV step and continuously verify presence throughout the session according to policy.
For healthcare providers, PresenceAssure supports touchless authentication at clinical and shared workstations, helping authorized staff sign in without repeatedly handling cards or readers while maintaining high identity assurance. Zeva’s real-world healthcare experience informs workflows designed for speed, hygiene, shared-device use, and auditable authentication.
PresenceAssure supports policy-driven authentication aligned with the principles of the NIST SP 800-63-4 Digital Identity Guidelines and NIST SP 800-207 Zero Trust Architecture. It combines supported authentication methods, federation, contextual policy, and real-time presence signals to strengthen identity assurance at login and throughout the session.
See how PresenceAssure can add real-time presence assurance to your existing Windows Authentication, web SSO, and identity environment. Request a demonstration to explore the authentication methods, presence factors, and deployment model that fit your organization.
Request a Demo