Secret Double Octopus
Passwordless, phishing-resistant workforce authentication vendor differentiated by support for legacy enterprise systems like VPN, VDI, and mainframe alongside modern cloud apps.
Visit Website ↗ + Add to CompareOverview
Secret Double Octopus builds passwordless, phishing-resistant authentication for enterprise workforces, positioning itself around extending passwordless access not just to modern SaaS applications but to the legacy and hybrid systems — VPNs, VDI, mainframes, on-premises Active Directory — that most cloud-native passwordless vendors don’t reach. The platform issues cryptographic credentials tied to a device or authenticator rather than a shared secret, aiming to eliminate the credential-theft and phishing risk that passwords and even some MFA methods still carry.
Founded in 2015 and headquartered in Tel Aviv, Israel, the company has raised funding across multiple rounds, including a $15 million Series B in 2020 backed by Sony Financial Ventures, KDDI, and Global Brain alongside earlier investors Jerusalem Venture Partners and Benhamou Global Ventures, and a Series C round announced in January 2024 led by Benhamou Global Ventures. The involvement of strategic corporate investors like Sony and Japanese telecom KDDI is a notable signal, though total disclosed funding remains modest relative to large IAM platform vendors.
Secret Double Octopus is a FIDO Alliance member and was named “Best in Class” in an Aite Group matrix evaluation of enterprise passwordless authentication vendors, with Aite’s analysts reporting large-scale deployments among enterprise customers. As identity remains the leading initial-access vector in breaches, phishing-resistant passwordless authentication is a high-relevance category, though the company competes against both point-solution passwordless specialists and large platform vendors (Microsoft, Okta, Ping Identity) increasingly building native passwordless support.
Innovation Matrix Assessment
Continues extending passwordless SSO coverage into legacy and hybrid enterprise systems (VPN, VDI, mainframe, on-prem AD), a steady enterprise-IAM feature pace rather than rapid platform expansion.
Aite Group analysts reported deployments scaling to thousands or tens of thousands of users at large enterprises, but no independently named large enterprise customer case study was found to corroborate operational scale directly.
Raised a $15M Series B in 2020 and a Series C in January 2024 with strategic backing from Sony Financial Ventures and KDDI, indicating durable enterprise and corporate-investor interest, though total disclosed funding remains modest next to large IAM platform vendors.
Targeting passwordless authentication for legacy and hybrid enterprise systems (mainframe, VDI, on-prem AD) that most cloud-native passwordless vendors don't support well is a real, specific differentiator rather than a repackaging of standard FIDO2/WebAuthn support.
Named 'Best in Class' in an Aite Group matrix report and holds active FIDO Alliance membership, but the Aite report is a vendor-cited commissioned analyst evaluation rather than an independently published, freely available benchmark, and no independently named customer case study was located.
Credential theft and phishing remain the leading initial-access vectors in breaches, making phishing-resistant passwordless authentication a high-priority identity security control for enterprise CISOs.
Why CISOs Should Care
Gives CISOs a path to eliminate passwords and phishing-resistant credential theft risk not just for modern cloud apps but for legacy systems (VDI, mainframe, VPN) that many workforce passwordless vendors don't reach.
What Makes It Different
Focuses specifically on extending passwordless authentication into legacy and hybrid enterprise environments that many newer, cloud-native passwordless vendors don't support well.
The Matrix Verdict
55/100 — INCREMENTAL INNOVATOR
A credible, Israel-based passwordless authentication specialist with real enterprise deployments and strategic financial backers (Sony, KDDI), but operating in an IAM category increasingly contested by larger platform vendors (Microsoft, Okta, Ping) adding native passwordless capability.
Editorial Note: Claims vs. Verified Findings
The 'Best in Class' Aite Group designation and large-scale deployment figures ('thousands to tens of thousands of users') are drawn from vendor press releases citing a commissioned analyst report rather than an independently published, freely available benchmark; no independently named enterprise customer case study was found during this review. Funding rounds (2020 Series B, 2024 Series C) and investor names are independently reported by SecurityWeek/BusinessWire/PR Newswire.
Sources
Alternatives to Secret Double Octopus
Teleport
An identity-based infrastructure access platform issuing short-lived cryptographic identities for humans, machines, and AI agents in place of…
SpecterOps
Identity attack-path security specialist behind BloodHound, the widely used open-source tool for mapping Active Directory and Entra ID…
Socure
AI-driven identity verification and fraud platform used by banks, fintechs, and government agencies to validate identities during digital…
Keyfactor
Machine identity and PKI management platform helping enterprises secure certificates, keys, and post-quantum cryptography readiness at scale.
Astrix Security
Non-human identity security platform that discovers and governs API keys, OAuth tokens, service accounts, and AI-agent credentials across…
CyberArk
The market-leading privileged access management vendor, extending from vaulted human credentials into machine identity and secrets management.