Skip to content

XTec, Incorporated: AuthentX Cloud

FedRAMP AuthorizedRev5High · since August 2, 2019

What its stage means

An agency or the FedRAMP program authorized it. Agencies can reuse that authorization.

See it on the FedRAMP Marketplace

Share this page:LinkedInXEmail

The provider's description

The AuthentX Cloud provides end-to-end identity, credential and access management to US Federal agencies, quasi-federal agencies, and private organizations that require interoperable identity authentication services with Federal systems and infrastructure. The primary use of AuthentX in the Federal government is to satisfy Homeland Security Presidential Directive #12 (HSPD-12), Federal Identity, Credential and Access Management (FICAM) and related policies, mandates and standards from the Office of Management and Budget (OMB), Department of Homeland Security (DHS), and National Institute of Standards and Technology (NIST) Special Publications (SP). Therefore, the AuthentX Cloud solution offered is aligned with federal mandates and high assurance requirements regarding cybersecurity, multi-factor authentication, Federal interoperability, and secure solutions for consolidation of data centers. The AuthentX Cloud consists of COTS hardware, software, and network components assembled and connected in multiple data centers. Hardware includes the XTec AuthentX XaNode appliances, the XTec AuthentX Secure Appliance (ASA), enrollment and issuance peripherals, the XTec XNode and XTec card readers, and Thales SafeNet Hardware Security Modules (HSM's). The software of the AuthentX system is built entirely from source to produce the AuthentX Linux Operating System (OS), customized embedded Microsoft OS, the AuthentX Enrollment Manager application, as well as other software packages.

XTec's AuthentX Cloud also provides Hardware Security Module (HSM) as a Service using Thales Trusted Cyber Technologies' (TCT) flagship Luna T-Series HSM. This cloud-based HSM, known as Luna as a Service, allows customers to generate, store, protect and manage cryptographic keys used to secure sensitive data and critical applications. The Luna T-Series HSM at the core of Luna as a Service is FIPS 140-2, Level 3 certified, and is approved for use in National Security Systems PKI. XTec's AuthentX Cloud Luna as a Service is offered using three (3) models:

- Luna as a Service Dedicated HSM provides customers full cryptographic control of the entire HSM. - Luna as a Service Managed HSM provides customers HSM cryptographic capabilities in a scalable, cost-effective model. Administrative tasks such as provisioning, configuring, monitoring, and patching are all performed by U.S.-based Luna as a Service engineers. - Luna as a Service Credential System provides customers a cloud service model of Thales TCT's Luna Credential System (LCS). LCS offers multi-factor authentication by maintaining user credentials in a centralized hardware device that is securely accessible through the cloud service by endpoints in a distributed network. LCS is a multi-purpose, secure credential system ideally suited for an environment in which the endpoints, or users cannot use a traditional authentication token.

What FedXchange has recorded

No change since FedXchange began following it on April 14, 2026. Each change of stage, impact level, or number of authorizations appears here.