PingOne Risk is an easy-to-implement cloud service that helps your organization make smarter authentication decisions using machine learning and analytics to detect malicious activity. By analyzing multiple risk signals, PingOne Risk can identify anomalous activity and trigger mitigation tools to block attacks or require strong authentication methods—providing a greater level of assurance of your users’ identities.
PingOne Risk enables administrators to configure intelligence-based authentication policies by combining the results of multiple risk predictors to calculate a single risk score. Data feeds and inputs roll into set risk predictors. The predictors are assigned different scores and aggregated into a risk policy to determine if a user poses low, medium, or high risk to the organization and the level of authentication required. Administrators can create multiple risk policies and apply them in different use cases to meet business requirements.
Reduce the number of times users are interrupted to authenticate
Aggregate risk policies that incorporate multiple risk signals
Improve security by learning past user behavior and detecting anomalies
PingOne Risk spans from the “Known” to the “Authenticated” stages of the user journey.
PingOne Risk allows you to assign values to various risk predictors to calculate overall risk. You can adjust risk scores and thresholds to fit organization needs and use cases, and you can customize overrides to take priority over the aggregated score. Risk policies include:
Anonymous Network
Geo-Velocity Anomaly
IP Reputation
IP Velocity
User Location Anomaly
User Risk Behavior
User Velocity
User-Based Risk Model
Custom/Third Party Predictors
Already have risk signals? Add those custom feeds to PingOne Risk policies and map them to high, medium, or low risk scores. You can also apply overrides and view analytics in the dashboard.
Bad actors usually don’t sign on like legitimate users. Recognizing abnormal user behavior can help your organization detect malicious activity, but this requires analyzing vast amounts of authentication data to learn behavior patterns.
PingOne Risk uses machine learning to detect unusual behavior between users and organizational norms. It applies machine learning to User and Entity Behavior Analytics (UEBA) in real-time, continuously analyzing unusual behavior compared to the user's past behavior.
Bad actors will typically use unknown VPNs, Tor, and proxies to mask their IP address to breach resources and applications. PingOne Risk analyzes IP address data from a user’s device to determine if the address is originating from any type of anonymous network. If so, the user can then be prompted for step-up authentication or denied access. Additionally, PingOne Risk supports creating an IP whitelist to include an enterprise’s VPN networks—ensuring that legitimate VPN users can access authorized resources.
Understanding where risk is inside your organization can help you make the right authentication decisions to increase your security posture. PingOne Risk gives you robust dashboards and reports that provide greater insights into risk events distribution, high-risk locations, high-risk factors, riskiest users, browser distribution, and operating systems distribution. You can take a deep dive into risk data by inspecting monitored user activity using advanced filtering options.
Leverage risk signals for adaptive authentication
Allow low-risk users access without forcing step-up authentication
Apply machine learning and AI to user and organization behavior
Amalgamate a variety of threat indicators with multiple data feeds and inputs
Deep dive into risk with reports and dashboards
Easily identify high-risk users and force them to do additional authentication
Ingest custom or third party risk signals
Integrates with PingFederate and all PingOne products, including DaVinci
Differentiate between normal and abnormal authentication requests
Aggregate risk scoring based on weights or numerical values
Increase security
Minimize friction
in the user
experience
Prevent fraud
PingOne Risk can be deployed as:
PingOne Services - Multi-tenant SaaS
PingOne Risk is an integral part of the PingOne Cloud Platform and is essential to the “Detect” phase of the identity and access management user journey.
PingOne Risk is an integral part of the PingOne Cloud Platform and is essential to the “Detect” phase of the identity and access management user journey.
Start Today
See how Ping can help you deliver secure employee and customer experiences in a rapidly evolving digital world.
Request a free demo
Thank you! Keep an eye on your inbox. We’ll be in touch soon.