Strata provides enterprise Identity Orchestration for hybrid and multi-cloud environments. Our Maverics platform automates app modernization from legacy IDPs and creates a flexible Identity Fabric foundation for executing future use cases. Examples include integrating Amazon Verified Permissions with legacy on-prem apps and accelerating passwordless deployment, all without refactoring.
Strata is an official orchestration launch partner for Amazon Verified Permissions.
Highlights
Simplify Zero Trust Cognito and AWS app integrations
No-Code Keycloak to Cognito App Identity Migration
Access real-time vendor security and compliance information through their Trust Center powered by Drata or Vanta. Review certifications and security standards before purchase.
AWS Marketplace now accepts line of credit payments through the PNC Vendor Finance program. This program is available to select AWS customers in the US, excluding NV, NC, ND, TN, & VT.
Pricing is based on the duration and terms of your contract with the vendor. This entitles you to a specified quantity of use for the contract duration. If you choose not to renew or replace your contract before it ends, access to these entitlements will expire.
Additional AWS infrastructure costs may apply. Use the AWS Pricing Calculator to estimate your infrastructure costs.
This contract prices two independent units that you scale separately. The first unit counts each Identity Provider you connect to the orchestrator. The second unit counts each application in your network that you orchestrate, charged per app. Your total cost depends on how many identity providers you integrate and how many applications you bring under management. Add more of either unit as your deployment grows. The two dimensions are not tiers; you size each one to match your own environment.
Top-of-mind questions for buyers
What counts as one Identity Provider unit for billing?
An Identity Provider unit is each identity service you connect to the orchestrator, such as a cloud or on-premises login provider. You count one unit for every provider you integrate into your identity fabric. Adding, replacing, or consolidating providers changes how many units you need.
What counts as one Application unit, and how is it charged?
An Application unit is each app in your network that you bring under the orchestrator. It is charged per app. This includes standard apps using SAML or OIDC and legacy or non-standard apps connected without rewriting code. Each app you orchestrate adds one unit.
Which unit drives most of my cost — identity providers or applications?
Both units bill independently and appear together on the same contract. Application count usually dominates, since networks hold many apps but fewer identity providers. If you connect only one or two providers but orchestrate many apps, the per-app charges drive most of your total.
www.strata.io+2
Helpful?
Vendor refund policy
At Strata, we put our customer needs first. If at any time you are unhappy with your service, we will work towards a mutually agreed remedy in a timely manner..
How can we make this page better?
Tell us how we can improve this page, or report an issue with this product.
Give us feedbackReport a problem with this product or seller
Legal
Vendor terms and conditions
Upon subscribing to this product, you must acknowledge and agree to the terms and conditions outlined in the vendor's End User License Agreement (EULA).
Content disclaimer
Vendors are responsible for their product descriptions and other product content. AWS does not warrant that vendors' product descriptions or other product content are accurate, complete, reliable, current, or error-free.
SaaS delivers cloud-based software applications directly to customers over the internet. You can access these applications through a subscription model. You will pay recurring monthly usage fees through your AWS bill, while AWS handles deployment and infrastructure management, ensuring scalability, reliability, and seamless integration with other AWS services.
AWS Support is a one-on-one, fast-response support channel that is staffed 24x7x365 with experienced and technical support engineers. The service helps customers of all sizes and technical abilities to successfully utilize the products and features provided by Amazon Web Services.
Automates app modernization from legacy identity providers and creates a flexible Identity Fabric foundation for executing identity use cases in hybrid and multi-cloud environments.
Legacy Application Modernization
Enables integration of modern identity services such as Amazon Verified Permissions with legacy on-premises applications without requiring application refactoring.
No-Code Identity Migration
Supports no-code migration of applications from Keycloak to Amazon Cognito for identity management.
Passwordless Authentication Deployment
Accelerates deployment of passwordless authentication mechanisms across enterprise applications.
Zero Trust Integration
Simplifies integration of Zero Trust security models with Amazon Cognito and AWS applications.
Multi-Factor Authentication
Supports implementation of Multi-Factor Authentication (MFA) for enhanced security without requiring custom code development.
Single Sign-On Protocol Support
Integrates with standard protocols including SAML, OIDC, and OAuth to enable Single Sign-On (SSO) functionality across applications.
Passwordless Authentication
Enables passwordless login mechanisms as a modern authentication method for both on-premises and cloud-based applications.
Identity Provider Integration
Connects with multiple identity providers including Amazon Cognito, Microsoft Entra ID, Azure AD B2C, Okta, and Auth0 for flexible access control.
No-Code Implementation
Delivers authentication capabilities without requiring custom code development, applicable to both legacy and new applications.
Single Sign-On (SSO)
Automatically synchronizes users across multiple directories to enable one-click access to corporate applications on-premises and in the cloud with enforced security policies and self-service password reset capabilities.
Multi-Factor Authentication (MFA)
Supports multiple authentication methods including passwordless authentication, passkeys, one-time passcodes, push notifications, biometric data, and security keys with real-time reporting and monitoring of authentication events.
Adaptive Authentication
Delivers multi-layer, context-aware and risk-based protection to minimize common attacks and enforce contextual access security policies based on user behavior and risk assessment.
Identity Lifecycle Management
Provides role-based user provisioning engine with granular access permissions, least-privileged access controls, and automated user account provisioning across applications and AWS services.
Directory Integration
Acts as a secure cloud-based directory with integration capabilities for Active Directory, LDAP, G Suite and other external directories, plus pre-built connectors with thousands of third-party web applications and AWS services including AWS IAM, AWS SSO, Amazon Cognito, and Amazon EventBridge.
Be the first to review this product. We've partnered with PeerSpot to gather customer feedback. You can share your experience by writing or recording a review, or scheduling a call with a PeerSpot analyst.