Device Authority
Device Authority is a UK-based cybersecurity vendor that provides the KeyScaler platform for automated machine identity and access management across IoT and OT environments, serving enterprise customers in automotive, healthcare, industrial, and energy.
- Company typePrivate
- Founded2014
- HeadquartersReading, United Kingdom
- Headcount11–50
- GTM typeB2B
- OfferingSoftware
What Device Authority does
Device Authority Limited is a UK-headquartered (Reading) private cybersecurity software vendor founded in 2014 that builds the KeyScaler platform for machine identity and access management across Internet of Things (IoT) and Operational Technology (OT) environments. The platform automates the full device identity lifecycle — zero-touch provisioning, cryptographic credential issuance and rotation, certificate lifecycle management, and policy-driven zero-trust access control — and is differentiated by patented Dynamic Device Key Generation (DDKG) and 'The Device is the Key' technology, which authenticate devices based on physical and environmental attributes without requiring a hardware root of trust, including for legacy devices. KeyScaler is delivered as an enterprise license or as a multi-tenant SaaS (KeyScaler-as-a-Service / KSaaS) built on Microsoft Azure, with supporting modules including KeyScaler Central, KeyScaler Discovery, and an emerging KeyScaler Risk & Compliance layer; KeyScaler 2025 adds AI/ML-driven anomaly detection and continuous authorization.
The company serves enterprise customers across healthcare and medical devices, transport and automotive, industrial manufacturing, energy and utilities, and the public sector, with secondary reach into Managed Security Service Providers via the KSaaS multi-tenant model. Revenue is generated primarily through SaaS subscriptions, enterprise platform licenses, and managed services delivered with channel partners (notably Xalient, Microsoft, CyberArk, Olympus Solutions, and Entrust), with proof-of-value consulting engagements supporting automotive and manufacturing use cases. Device Authority has raised approximately $11.9 million across disclosed rounds (December 2021 led by Tern PLC/ALP/Venafi and February 2024 led by Ten Eleven Ventures), with Tern PLC retaining a 25.3% equity stake as a strategic investor.
Device Authority firmographics
Firmographics- Name
- Device Authority
- Legal name
- Device Authority Limited
- Website
- https://deviceauthority.com
- Company type
- Private
- Founded year
- 2014
- Operating status
- Operating
- Headcount range
- 11–50 employees
- Short description
- Device Authority is a UK-based cybersecurity vendor that provides the KeyScaler platform for automated machine identity and access management across IoT and OT environments, serving enterprise customers in automotive, healthcare, industrial, and energy.
- Ownership category
- akta.pro rank
Device Authority industry classification
Industry- Product category
- IoT/OT Identity and Access Management
- NAICS
- Computing Infrastructure Providers, Data Processing, Web Hosting, and Related Services (518)
- SIC
- Services-Computer Programming, Data Processing, Etc. (7370)
- akta.pro primary industry
- Secrets Management & Machine Identity (API keys, certificates, workload identity) (HDAEAJAJ)
- akta.pro secondary industries
- Device Identity & Certificate-Based Authentication (PKI) (BPAMAEAL), Identity Orchestration & Policy (Zero Trust Access, Conditional Access) (HDADAAAL), Data Security & Access Governance for Data (Entitlements/Policy Enforcement) (HDAEADAH)
Keywords
Where Device Authority is headquartered
LocationHeadquarters
- HQ city
- Reading
- HQ country
- United Kingdom
- HQ region
- Europe
Offices3 records
Markets served
Device Authority business model
Business model- GTM type
- B2B
- Offering type
- Software
- Cost components
- Technology or R&D, Personnel, Infrastructure, Marketing or Sales, Operations
Revenue model
- KeyScaler-as-a-Service (KSaaS) Subscription: SaaS-based subscription model delivered on Microsoft Azure. Provides automated machine identity management, certificate lifecycle management, and device security as a fully managed service. Multi-tenant platform enables MSSPs to manage multiple customers.
- KeyScaler Platform License: Enterprise platform licensing for organizations requiring on-premises or dedicated deployments. Includes PKI automation, key management, and identity lifecycle management capabilities. €5K/month pricing mentioned for KMS solution.
- Managed Security Services Partnership: Revenue generated through strategic partnerships with MSSPs and managed security providers like Xalient, where KeyScaler is integrated into managed service offerings. Partners deliver the solution through their 'as-a-service' security models.
- Professional Services and Consulting: Implementation and consulting services including €10K free consulting for KMS PoV customers signed before June 30, 2026. Industry Proof of Value (PoV) engagements for automotive and manufacturing organizations.
Pricing tiers
| Model | Billing | Price |
|---|---|---|
| Subscription | Monthly | Enterprise KMS Solution - €5K/month |
| Freemium | Pay-as-you-go | KeyScaler Discovery - Free (Limited Time) |
| Subscription | Annual | KSaaS Multi-Tenant - Custom Pricing |
| Subscription | Multi-year contract | Managed Service Model - Partnership Based |
Go-to-market motion4 records
Distribution channels5 records
Marketing channels8 records
Device Authority product offering
Product offeringCore offering
Device Authority provides the KeyScaler platform for automated machine identity and access management across IoT and operational technology (OT) environments. The platform delivers zero-touch device provisioning, cryptographic identity lifecycle management, policy-driven certificate issuance and rotation, and continuous trust verification for connected devices in enterprise and manufacturing environments. Offerings are delivered as both on-premises enterprise software and a fully managed multi-tenant SaaS (KeyScaler-as-a-Service/KSaaS) built on Microsoft Azure.
Product overview
Device Authority offers a platform-plus-modules architecture centered on its KeyScaler IoT security platform. The core KeyScaler Platform delivers automated, policy-driven machine identity lifecycle management for IoT and OT environments, supported by KeyScaler Central (the core automation engine), KeyScaler-as-a-Service (cloud-native multi-tenant deployment), KeyScaler Discovery (network visibility tool), and KeyScaler Risk & Compliance (emerging compliance functionality). Supporting components include DDKG (patented Dynamic Device Key Generation technology) and specialized solutions for PKI automation, privileged access management, connected vehicles, code signing, connected factories, and key management for automotive/manufacturing. The platform combines machine identity automation, cryptographic trust, risk intelligence, and compliance assurance to help organizations reduce cyber risk and achieve regulatory compliance.
Differentiator
Problem solved
Functional benefit
Brands
- KeyScaler: IoT security platform for machine identity management and automated device lifecycle security
- KeyScaler-as-a-Service (KSaaS)
- KeyScaler Central
- KeyScaler Discovery
- KeyScaler Risk & Compliance
- DDKG
Products and services
- KeyScaler Platform Primary IoT security platform that secures machine identities from OT to connected products with automated, policy-driven lifecycle management at scale, combining machine identity automation, cryptographic trust, risk intelligence, and compliance assurance.
- KeyScaler Central The automation engine of the KeyScaler platform providing zero-touch device provisioning, security policy enforcement, device identity lifecycle management, and enterprise application integration.
- KeyScaler-as-a-Service (KSaaS) Fully managed, multi-tenant SaaS platform built on Microsoft Azure with white-labeling, flexible APIs, and built-in compliance tools (ISO 27001, SOC2) for MSSPs and enterprise customers.
- KeyScaler Discovery Network scanning tool that provides visibility into unmanaged devices, outdated certificates, and vulnerabilities across enterprise environments, generating actionable reports for risk assessment and remediation planning.
- PKI Automation for IoT Automated Public Key Infrastructure services for IoT environments including certificate provisioning, renewals, and revocations with centralized CA operations and secure CSR signing.
- PAM for IoT/OT Privileged Access Management solution for IoT and OT environments enabling policy-driven encryption and granular access control for connected devices.
- Connected Vehicle IoT security solution for automotive applications providing PKI services for vehicle identity, authentication to network services, data encryption, and secure ownership transfer capabilities for connected vehicles.
- Code Signing / Secure Updates Solution enabling secure firmware and software updates for IoT devices with signature verification to ensure integrity and prevent malicious modifications.
- Connected Factory
Quantifiable outcome
- 11 million+ machine identity authentications completed across 49 countries
- +3 more outcomes
Companies that use Device Authority
Customer profileNamed customers6 records
Segments6 records
Ideal customer profiles4 records
Device Authority technology and API
TechnologyTechnology focussed Yes
API detail
- Has API
- Yes
- API docs
- API detail
Core technology
AI maturity
App detail
Integration7 records
AI capability4 records
Feature7 records
Device Authority partnerships and signals
Strategic signalPartnerships
Eight partnerships are on record, tiered flagship and core.
- XalientflagshipStrategic partnership integrates KeyScaler platform into Xalient's managed cybersecurity services. The collaboration provides automated IoT and OT device identity management and Zero Trust security capabilities to enterprises across regulated industries including energy, utilities, manufacturing, healthcare, and critical infrastructure. Delivered as part of Xalient's managed 'as-a-service' model, supported by Xalient's MARTINA AIOps platform.
- Olympus SolutionscoreStrategic partnership with Olympus Solutions announced July 2025 to deliver scalable, automated IoT security solutions to enterprise customers. The partnership enables managed security service delivery with KeyScaler integration.
- MicrosoftflagshipPartnership with Microsoft and CyberArk to deliver secure IoT solutions for manufacturing based on the NIST framework. KeyScaler integrates with Microsoft Azure IoT and Connected Vehicle Platforms. Device Authority is a Microsoft Azure Technology partner and 2023 Microsoft Partner of the Year Award winner. KSaaS platform is built on Microsoft Azure.
- CyberArkcorePartnership with Microsoft and CyberArk to deliver secure IoT solutions for manufacturing environments based on the NIST framework. Combines identity management, cloud-edge connectivity, and lifecycle security for connected devices.
- Cumulus (c8y)coreTechnology ecosystem partner with logo displayed on Device Authority homepage. Cumulus (c8y) is an IoT platform company enabling integration between KeyScaler and enterprise IoT environments.
- PTCcoreStrategic ecosystem partner shown in Device Authority's partner logo section. PTC provides IoT and AR platforms that integrate with KeyScaler for connected product and smart factory solutions.
- PlaxidityXcoreAutomotive cybersecurity partner with logo displayed in Device Authority's partner ecosystem. PlaxidityX specializes in automotive embedded security solutions complementary to KeyScaler's device identity management.
- EntrustcorePartnership with Entrust provides hybrid and high-scale PKI services to provision digital certificates as trusted identities. KeyScaler integrates with Entrust PKI for certificate lifecycle management in connected vehicle and manufacturing environments. Includes HSM Access Control integration for secure key generation and storage.
Scale indicators10 records
Recent moves6 records
Expansion highlights6 records
Device Authority competitors and assessment
Company assessmentDirect peers
- DigiCert: DigiCert is a direct PKI and digital-certificate peer offering IoT device identity, code signing and TLS certificate management at enterprise scale, competing for the same connected-device and PKI automation budget as KeyScaler.
- Entrust: Entrust is a direct peer in PKI and certificate-based authentication for IoT, automotive and connected-device customers, and is also an active integration partner of Device Authority for hybrid PKI services — making it both a peer and a complementary ecosystem participant.
- Keyfactor: Keyfactor is a direct peer in IoT and connected-device PKI, providing PKI-as-a-Service, certificate lifecycle automation and machine-identity management for manufacturers, automotive and industrial IoT customers — closely overlapping with KeyScaler's core proposition.
- CyberArk: CyberArk is now both a co-sell partner and direct competitor following its 2024 acquisition of Venafi. Its privileged access and machine-identity platform competes with KeyScaler's IoT/OT identity offering, while the firm also delivers manufacturing security solutions jointly with Microsoft and Device Authority.
- Venafi (CyberArk): Venafi is the closest direct comparable: a machine-identity management platform protecting TLS certificates, code-signing keys and machine identities across cloud and connected devices. It was acquired by CyberArk in 2024, making it the most head-to-head competitor to Device Authority's KeyScaler in the IoT/OT machine-identity category — and notably, Venafi also co-led Device Authority's 2021 funding round.
- Sectigo: Sectigo is a direct peer in certificate lifecycle management and PKI/IoT identity, providing automated certificate issuance, renewal and revocation for connected-device manufacturers and enterprises — overlapping with KeyScaler's certificate lifecycle automation capabilities.
Broad incumbents
- Okta: Okta is a broad incumbent identity platform with an emerging IoT/Workforce Identity for Everything story that competes for the same enterprise identity and zero-trust budget as KeyScaler, particularly in hybrid workforce-and-device IAM consolidation.
- Microsoft Entra / Azure IoT: Microsoft Entra (Azure AD) plus Azure IoT represent a broad incumbent identity and IoT platform that overlaps with KeyScaler's device identity and zero-trust capabilities across Azure-native deployments — and is simultaneously Device Authority's largest go-to-market partner via co-sell and Azure Marketplace.
Emerging players
- Akeyless: Akeyless is an emerging player in secrets management and machine-identity that overlaps with KeyScaler's certificate/key lifecycle automation capabilities, particularly for cloud-native and hybrid IoT workloads.
- HashiCorp (Vault): HashiCorp Vault is an emerging/adjacent player focused on cloud secrets management, certificate and key lifecycle automation. While not IoT-first, it increasingly overlaps with Device Authority's certificate/key management capabilities for cloud-connected device workloads.
Market position
Strengths5 records
Weaknesses5 records
Competitive moat5 records
Key risks6 records
Key highlights7 records
Customer concentration
Device Authority social profiles
Digital presenceDevice Authority compliance and trust
Trust signalCompliance2 records
Device Authority financial estimates
Financial estimateRevenue estimate
Valuation estimate
Device Authority leadership team
Management profileNumber of profiles
Profiles5 records
Device Authority funding detail
Funding detailFunding overview
Funding rounds4 records
Investors6 records
Funding detail is available on the Subscription and Enterprise plan.Contact sales →
Device Authority M&A and investment
M&A and investmentM&A
Investments
M&A and investment is available on the Subscription and Enterprise plan.Contact sales →
Frequently asked questions about Device Authority
What does Device Authority do?
Device Authority provides the KeyScaler platform for automated machine identity and access management across IoT and operational technology (OT) environments. The platform delivers zero-touch device provisioning, cryptographic identity lifecycle management, policy-driven certificate issuance and rotation, and continuous trust verification for connected devices in enterprise and manufacturing environments. Offerings are delivered as both on-premises enterprise software and a fully managed multi-tenant SaaS (KeyScaler-as-a-Service/KSaaS) built on Microsoft Azure.
Is Device Authority a public or private company?
Device Authority is a private company. It is classified as venture growth investor backed and is currently operating.
When was Device Authority founded?
Device Authority was founded in 2014. It employs 11 to 50 people.
Where is Device Authority based?
Device Authority is headquartered in Reading, United Kingdom, in the Europe region.
How does Device Authority make money?
Four revenue lines are on record. KeyScaler-as-a-Service (KSaaS) Subscription is the primary driver. The others are keyScaler Platform License, managed Security Services Partnership and professional Services and Consulting.
Who are Device Authority's main competitors?
Direct peers on record are DigiCert, Entrust, Keyfactor, CyberArk, Venafi (CyberArk) and Sectigo. Broad incumbents are Okta and Microsoft Entra / Azure IoT. Emerging players are Akeyless and HashiCorp (Vault).
Does Device Authority have an API?
Yes. Device Authority offers flexible APIs as part of its KeyScaler-as-a-Service (KSaaS) platform for MSSPs, enabling integration with existing security infrastructure and automation of device identity lifecycle management. Developer documentation is at deviceauthority.com/developers/resources.
What industry is Device Authority in?
Device Authority's product category is IoT/OT Identity and Access Management. Its primary akta.pro industry code is HDAEAJAJ, Secrets Management & Machine Identity (API keys, certificates, workload identity), with a secondary code of BPAMAEAL, Device Identity & Certificate-Based Authentication (PKI). Its NAICS code is 518 and its SIC code is 7370.