StrongKey
Long-running passwordless authentication and PKI vendor offering a FIDO2-certified authentication server and public key infrastructure for enterprises, fintech, and healthcare, in business since 2001.
Visit Website ↗ + Add to CompareOverview
StrongKey (originally StrongAuth) provides FIDO2/passkey-based passwordless authentication servers and public key infrastructure (PKI) software, aimed at eliminating password-based credential theft for enterprise, fintech, IoT, and healthcare customers. Its authentication server was among the earlier FIDO2-certified implementations and predates the current mainstream passkey wave by many years, having built a U2F server as early as 2015 when the FIDO Alliance’s hardware-token standard was still new.
Founded in 2001 by Arshad Noor and based in the Silicon Valley area of California (with an additional office in Durham, North Carolina), StrongKey operated for over a decade as a small, self-funded PKI vendor before joining the FIDO Alliance in 2014 and pivoting more of its business toward passwordless authentication. In 2018, Japan-based Systena Corporation made a $10 million strategic investment through its U.S. subsidiary, but the company has remained small, with roughly a dozen employees as of 2026.
StrongKey’s twenty-plus-year operating history and long-standing FIDO Alliance membership give it real technical credibility in an authentication space now crowded with better-funded, more visible passkey vendors (Okta, Microsoft Entra, Yubico, and numerous startups). Its very small headcount relative to its tenure suggests a niche, low-growth business rather than an actively scaling one, even though the underlying cryptographic technology is sound.
Innovation Matrix Assessment
StrongKey was an early mover in FIDO U2F/FIDO2 server implementation (building a U2F server in 2015), but there is little evidence of major new product announcements or expansion in recent years relative to a fast-moving passkey market.
Provides functioning, FIDO2-certified passwordless authentication and PKI capability that has been operating in production for years, though its very small team (roughly a dozen people) limits the scale of deployment and support it can realistically offer.
Headcount has stayed roughly flat at around 10-12 employees for years despite a $10M strategic investment from Systena in 2018, indicating limited growth momentum relative to newer, faster-scaling passkey vendors.
Passwordless/FIDO2 authentication is now a mainstream, heavily contested category led by large platform vendors (Microsoft, Okta, Google) and well-funded startups; StrongKey's long tenure is a credibility asset but not a current disruptive edge.
FIDO2 certification is an independently verifiable, third-party-administered conformance standard, giving real evidence the authentication server meets the protocol correctly, though broader deployment-scale efficacy data was not found.
Passwordless authentication remains highly relevant as password-based credential theft continues to drive breaches, though StrongKey's relevance as a specific vendor choice is limited by its small scale versus larger passkey platform providers.
Why CISOs Should Care
Offers a long-proven, independently FIDO2-certified authentication server and PKI stack for organizations wanting to eliminate passwords without depending on a large platform vendor's ecosystem lock-in.
What Makes It Different
One of the longest-operating independent FIDO2/PKI vendors, having built U2F and FIDO2 server implementations years before passkeys became a mainstream enterprise priority.
The Matrix Verdict
40/100 — EMERGING / UNRANKED
A technically credible, independently certified passwordless authentication vendor with unusually long tenure, but a very small team and flat growth suggest a niche player rather than a scaling market leader in the now-crowded passkey space.
Editorial Note: Claims vs. Verified Findings
FIDO2 certification and FIDO Alliance membership are independently verifiable through the FIDO Alliance's own certification registry. The 2018 Systena investment is independently reported by Crunchbase/PitchBook. Current employee count (~11-12) comes from third-party headcount trackers rather than company disclosure.
Sources
Alternatives to StrongKey
Teleport
An identity-based infrastructure access platform issuing short-lived cryptographic identities for humans, machines, and AI agents in place of…
SpecterOps
Identity attack-path security specialist behind BloodHound, the widely used open-source tool for mapping Active Directory and Entra ID…
Astrix Security
Non-human identity security platform that discovers and governs API keys, OAuth tokens, service accounts, and AI-agent credentials across…
Socure
AI-driven identity verification and fraud platform used by banks, fintechs, and government agencies to validate identities during digital…
Keyfactor
Machine identity and PKI management platform helping enterprises secure certificates, keys, and post-quantum cryptography readiness at scale.
Silverfort
Agentless unified identity protection platform that extends MFA, ITDR, and access policy to legacy and unmanaged systems traditional…