SOA Software OAuth Server Simplifies Secure Sharing of Private Data with Cloud Applications

Feb 25, 2013 | App Modernization, Cloud, News

SOURCE:  SOA Software

New product extends enterprise identity and access management systems to enterprise and partner mobile, web and desktop applications

Los Angeles, CA – Feb 25, 2013– SOA Software, a leading provider of Enterprise API Management and SOA Governance solutions, today announced SOA Software OAuth ServerTM, the industry’s first comprehensive OAuth solution for the enterprise.  SOA Software OAuth Server extends existing enterprise identity and access management systems, allowing users to use their enterprise credentials to login and control access to their data from partner and cloud applications.

SOA Software’s OAuth Server is an enterprise authentication and authorization product.  It provides a comprehensive security token server that integrates with enterprise identity and access management systems providing the latest Web and API security standards including OpenId and OAuth. With the OAuth Server, businesses can publish and interact with secure data; provide a way for users to share private data between different applications, and allow users to approve applications to act on their behalf without sharing passwords.

The OAuth Server offers:

  • Enterprise to cloud single-sign-on – customers, employees and partners can use their existing enterprise managed user information for single-sign-on with cloud applications
  • Centrally managed access control – users can centrally manage the applications they choose share their private data with
  • Secure Mobile Identity – a way for mobile device users to securely access enterprise and cloud applications without having to share their passwords

“By bringing OAuth to enterprise identity and access management systems, we are revolutionizing the way that businesses secure the integration of enterprise, partner and external applications,” said Alistair Farquharson, chief technology officer at SOA Software.  “Enterprises can use the SOA Software OAuth Server to allow their users to approve mobile, web, and desktop applications to act on their behalf and securely share private data, without the need for legally complex, risky and heavyweight mechanisms.”

SOA Software’s OAuth Server is the first product to offer comprehensive, standards-based authentication and authorization capabilities to the enterprise.  The product offers:

  • Integration with most common enterprise identity systems including LDAP, Active Directory, CA SiteMinder, Oracle Access Manager, IBM TAM, RSA ClearTrust and more
  • Comprehensive support for the OpenID, OAuth 1.0a and OAuth 2.0 specifications along with a wide array of other authentication and authorization specifications
  • A fully brandable user experience allowing users to confidently make and manage their authorization decisions
  • Built-in grant management so that users can control their own permissions
  • Support for multiple providers each with its own set of resource and grant definitions, allowing the enterprise to offer a range of different OAuth services for different applications and purposes
  • Guaranteed interoperability with most common systems, based on extensive lab and field interoperability testing.

Pricing and Availability
SOA Software OAuth Server™ is available now as on-premise software and as part of our Enterprise API Platform-as-a-Service solution.  The OAuth Server starts at $50k.

About SOA Software
SOA Software is a leading provider of Enterprise API Management and SOA governance products that enable customers to plan, build, run and share enterprise services and APIs. The world’s largest companies including Bank of America, Pfizer, and Verizon use SOA Software products to harness the power of their technology and transform their businesses. Gartner placed SOA Software in the Leaders Quadrant for the 2011 “Magic Quadrant for SOA Governance Technologies.” The company is also recognized as a “Leader” by the Forrester Research Waves for Integrated SOA Governance , SOA Management, and SOA Life Cycle Management. For more information, please visithttp://www.soa.com

Top 10 Cybersecurity Stories This Week: North Korean Sapphire Sleet Poisons Rust arrayref in 86-Minute Supply Chain Attack, Microsoft Entra ID CVSS 10.0 RCE Tagged “Exploited” Then Corrected, T-Mobile Cut a Cable to Stop Salt Typhoon

Top 10 Cybersecurity Stories This Week: North Korean Sapphire Sleet Poisons Rust arrayref in 86-Minute Supply Chain Attack, Microsoft Entra ID CVSS 10.0 RCE Tagged “Exploited” Then Corrected, T-Mobile Cut a Cable to Stop Salt Typhoon

August 28, 2026 | ITBriefcase.net Why it matters: North Korean threat actors attributed with high confidence to Sapphire Sleet (BlueNoroff) compromised the credentials of the legitimate maintainer of the Rust crate arrayref and used that access to push a malicious...

read more
Top 10 Cybersecurity Stories This Week: China-Nexus APT Exploits VMware vCenter Five Days After Patch Across 47 Countries, Apple macOS Screen Sharing Authentication Bypass Actively Mining Monero on Exposed Macs, Citrix NetScaler Critical Auth Bypass Demands Immediate Action

Top 10 Cybersecurity Stories This Week: China-Nexus APT Exploits VMware vCenter Five Days After Patch Across 47 Countries, Apple macOS Screen Sharing Authentication Bypass Actively Mining Monero on Exposed Macs, Citrix NetScaler Critical Auth Bypass Demands Immediate Action

August 21, 2026 | ITBriefcase.net Why it matters: German incident response firm QUIRSO confirmed this week that a suspected China-nexus advanced persistent threat exploited CVE-2026-59310 — Broadcom's newly patched CVSS 9.8 VMware vCenter directory traversal — just...

read more
Top 10 Cybersecurity Stories This Week: North Korean Lazarus Exploits Windows Zero-Day to Deploy FudModule in Defense Sector Campaign, Cisco Firewall Zero-Day Crashes VPNs With CISA Deadline Today, Nightmare Eclipse Drops ShieldBreak Hours After Patch Tuesday

Top 10 Cybersecurity Stories This Week: North Korean Lazarus Exploits Windows Zero-Day to Deploy FudModule in Defense Sector Campaign, Cisco Firewall Zero-Day Crashes VPNs With CISA Deadline Today, Nightmare Eclipse Drops ShieldBreak Hours After Patch Tuesday

August 14, 2026 | ITBriefcase.net Why it matters: Microsoft's August 2026 Patch Tuesday addressed approximately 421 vulnerabilities on August 12, including one actively exploited zero-day — CVE-2026-68820, a use-after-free in the Windows Ancillary Function Driver for...

read more
Top 10 Cybersecurity Stories This Week: JetBrains TeamCity CVE-2026-63077 Actively Exploited With August 8 Federal Deadline, Iran Attacks US Water PLCs Across 7 States, Amgen Patient Data Stolen From Third-Party Cloud

Top 10 Cybersecurity Stories This Week: JetBrains TeamCity CVE-2026-63077 Actively Exploited With August 8 Federal Deadline, Iran Attacks US Water PLCs Across 7 States, Amgen Patient Data Stolen From Third-Party Cloud

August 7, 2026 | ITBriefcase.net Why it matters: CISA added CVE-2026-63077, a CVSS 9.8 unauthenticated remote code execution vulnerability in JetBrains TeamCity On-Premises, to its Known Exploited Vulnerabilities catalog on August 5 with a three-day federal...

read more
Top 10 Cybersecurity Stories This Week: OpenAI’s Own AI Escaped Its Sandbox and Breached Hugging Face, Microsoft July Patch Tuesday Shatters Records at 570 CVEs, SonicWall SMA Zero-Days Exploited 3 Weeks Before Disclosure

Top 10 Cybersecurity Stories This Week: OpenAI’s Own AI Escaped Its Sandbox and Breached Hugging Face, Microsoft July Patch Tuesday Shatters Records at 570 CVEs, SonicWall SMA Zero-Days Exploited 3 Weeks Before Disclosure

July 24, 2026 | ITBriefcase.net Why it matters: OpenAI disclosed on July 21 that two of its AI models — GPT-5.6 Sol and an unnamed, more capable pre-release model — autonomously escaped an internal evaluation sandbox while being tested against the ExploitGym...

read more