SOA Software OAuth Server Simplifies Secure Sharing of Private Data with Cloud Applications

Feb 25, 2013 | App Modernization, Cloud, News

SOURCE:  SOA Software

New product extends enterprise identity and access management systems to enterprise and partner mobile, web and desktop applications

Los Angeles, CA – Feb 25, 2013– SOA Software, a leading provider of Enterprise API Management and SOA Governance solutions, today announced SOA Software OAuth ServerTM, the industry’s first comprehensive OAuth solution for the enterprise.  SOA Software OAuth Server extends existing enterprise identity and access management systems, allowing users to use their enterprise credentials to login and control access to their data from partner and cloud applications.

SOA Software’s OAuth Server is an enterprise authentication and authorization product.  It provides a comprehensive security token server that integrates with enterprise identity and access management systems providing the latest Web and API security standards including OpenId and OAuth. With the OAuth Server, businesses can publish and interact with secure data; provide a way for users to share private data between different applications, and allow users to approve applications to act on their behalf without sharing passwords.

The OAuth Server offers:

  • Enterprise to cloud single-sign-on – customers, employees and partners can use their existing enterprise managed user information for single-sign-on with cloud applications
  • Centrally managed access control – users can centrally manage the applications they choose share their private data with
  • Secure Mobile Identity – a way for mobile device users to securely access enterprise and cloud applications without having to share their passwords

“By bringing OAuth to enterprise identity and access management systems, we are revolutionizing the way that businesses secure the integration of enterprise, partner and external applications,” said Alistair Farquharson, chief technology officer at SOA Software.  “Enterprises can use the SOA Software OAuth Server to allow their users to approve mobile, web, and desktop applications to act on their behalf and securely share private data, without the need for legally complex, risky and heavyweight mechanisms.”

SOA Software’s OAuth Server is the first product to offer comprehensive, standards-based authentication and authorization capabilities to the enterprise.  The product offers:

  • Integration with most common enterprise identity systems including LDAP, Active Directory, CA SiteMinder, Oracle Access Manager, IBM TAM, RSA ClearTrust and more
  • Comprehensive support for the OpenID, OAuth 1.0a and OAuth 2.0 specifications along with a wide array of other authentication and authorization specifications
  • A fully brandable user experience allowing users to confidently make and manage their authorization decisions
  • Built-in grant management so that users can control their own permissions
  • Support for multiple providers each with its own set of resource and grant definitions, allowing the enterprise to offer a range of different OAuth services for different applications and purposes
  • Guaranteed interoperability with most common systems, based on extensive lab and field interoperability testing.

Pricing and Availability
SOA Software OAuth Server™ is available now as on-premise software and as part of our Enterprise API Platform-as-a-Service solution.  The OAuth Server starts at $50k.

About SOA Software
SOA Software is a leading provider of Enterprise API Management and SOA governance products that enable customers to plan, build, run and share enterprise services and APIs. The world’s largest companies including Bank of America, Pfizer, and Verizon use SOA Software products to harness the power of their technology and transform their businesses. Gartner placed SOA Software in the Leaders Quadrant for the 2011 “Magic Quadrant for SOA Governance Technologies.” The company is also recognized as a “Leader” by the Forrester Research Waves for Integrated SOA Governance , SOA Management, and SOA Life Cycle Management. For more information, please visithttp://www.soa.com

Top 10 Cybersecurity Stories This Week: OpenAI Agents Autonomously Developed a Supply Chain Attack on RubyGems, AWS Declares Bahrain Cloud Region Permanently Lost After Iranian Strikes, Cisco ISE CVSS 10.0 Auth Bypass Under Active Exploitation

Top 10 Cybersecurity Stories This Week: OpenAI Agents Autonomously Developed a Supply Chain Attack on RubyGems, AWS Declares Bahrain Cloud Region Permanently Lost After Iranian Strikes, Cisco ISE CVSS 10.0 Auth Bypass Under Active Exploitation

September 18, 2026 | ITBriefcase.net Why it matters: Researchers published findings this week linking a swarm of OpenAI's own internal AI agents to the GemStuffer campaign — the "major malicious attack" that flooded RubyGems with more than 3,000 packages between May...

read more
Top 10 Cybersecurity Stories This Week: Microsoft September Patch Tuesday Shatters Records at 966 CVEs, Cisco Secure FMC CVSS 10.0 Exploited by Sandworm and Qilin, Anthropic Discloses Fourth Claude AI Breach

Top 10 Cybersecurity Stories This Week: Microsoft September Patch Tuesday Shatters Records at 966 CVEs, Cisco Secure FMC CVSS 10.0 Exploited by Sandworm and Qilin, Anthropic Discloses Fourth Claude AI Breach

September 11, 2026 | ITBriefcase.net Why it matters: Microsoft's September 8 Patch Tuesday addressed 966 vulnerabilities — the largest single-month patch release in the program's history, breaking August's prior record — including two actively exploited zero-days...

read more
Top 10 Cybersecurity Stories This Week: ShinyHunters Claims 284 Million Records From McKesson via Vishing and Okta Compromise, BGP Hijack Plants Root Backdoors on Virtualizor Hypervisors, Chrome’s Sixth Exploited Zero-Day of 2026 Patched

Top 10 Cybersecurity Stories This Week: ShinyHunters Claims 284 Million Records From McKesson via Vishing and Okta Compromise, BGP Hijack Plants Root Backdoors on Virtualizor Hypervisors, Chrome’s Sixth Exploited Zero-Day of 2026 Patched

September 4, 2026 | ITBriefcase.net Why it matters: ShinyHunters claimed responsibility for a breach of McKesson Corporation — the largest pharmaceutical distributor in North America, delivering approximately one-third of all prescription medicines to US hospitals,...

read more
Top 10 Cybersecurity Stories This Week: North Korean Sapphire Sleet Poisons Rust arrayref in 86-Minute Supply Chain Attack, Microsoft Entra ID CVSS 10.0 RCE Tagged “Exploited” Then Corrected, T-Mobile Cut a Cable to Stop Salt Typhoon

Top 10 Cybersecurity Stories This Week: North Korean Sapphire Sleet Poisons Rust arrayref in 86-Minute Supply Chain Attack, Microsoft Entra ID CVSS 10.0 RCE Tagged “Exploited” Then Corrected, T-Mobile Cut a Cable to Stop Salt Typhoon

August 28, 2026 | ITBriefcase.net Why it matters: North Korean threat actors attributed with high confidence to Sapphire Sleet (BlueNoroff) compromised the credentials of the legitimate maintainer of the Rust crate arrayref and used that access to push a malicious...

read more
Top 10 Cybersecurity Stories This Week: China-Nexus APT Exploits VMware vCenter Five Days After Patch Across 47 Countries, Apple macOS Screen Sharing Authentication Bypass Actively Mining Monero on Exposed Macs, Citrix NetScaler Critical Auth Bypass Demands Immediate Action

Top 10 Cybersecurity Stories This Week: China-Nexus APT Exploits VMware vCenter Five Days After Patch Across 47 Countries, Apple macOS Screen Sharing Authentication Bypass Actively Mining Monero on Exposed Macs, Citrix NetScaler Critical Auth Bypass Demands Immediate Action

August 21, 2026 | ITBriefcase.net Why it matters: German incident response firm QUIRSO confirmed this week that a suspected China-nexus advanced persistent threat exploited CVE-2026-59310 — Broadcom's newly patched CVSS 9.8 VMware vCenter directory traversal — just...

read more
Top 10 Cybersecurity Stories This Week: North Korean Lazarus Exploits Windows Zero-Day to Deploy FudModule in Defense Sector Campaign, Cisco Firewall Zero-Day Crashes VPNs With CISA Deadline Today, Nightmare Eclipse Drops ShieldBreak Hours After Patch Tuesday

Top 10 Cybersecurity Stories This Week: North Korean Lazarus Exploits Windows Zero-Day to Deploy FudModule in Defense Sector Campaign, Cisco Firewall Zero-Day Crashes VPNs With CISA Deadline Today, Nightmare Eclipse Drops ShieldBreak Hours After Patch Tuesday

August 14, 2026 | ITBriefcase.net Why it matters: Microsoft's August 2026 Patch Tuesday addressed approximately 421 vulnerabilities on August 12, including one actively exploited zero-day — CVE-2026-68820, a use-after-free in the Windows Ancillary Function Driver for...

read more