Breaking
NEW YORK — Beyond Identity raises total $205M at a $1.1B valuationRealityCheck launches to certify real humans on Zoom & Teams callsFounders of Netscape set out to delete the passwordPhishing-resistant, device-bound MFA now spans macOS, Windows, iOS & AndroidIdentity security extends to AI agents and non-human identities
Beyond Identity logo
Company Dossier · Identity Security

Beyond Identity

The New York firm trying to make the password - and the attacks that ride on it - disappear.

Beyond Identity, Inc. — founded 2019, New York City. Passwordless, device-bound authentication built by the internet pioneers behind Netscape, SGI and @Home Network. Photograph: company logo mark.

Founded 2019 HQ · New York ~150 employees B2B SaaS Series C · $1.1B
$205M
Total Raised
$1.1B
Valuation
4
Core Products
0
Shared Secrets
The Story

Deleting the Original Sin of the Internet

The password turns 65 this decade, and it has aged badly. It gets phished, reused, guessed, leaked in bulk, and forwarded across the very networks it was meant to guard. Beyond Identity's founding argument is unusually blunt for a security company: you do not harden a weak link, you remove it. Instead of a secret you type, the company issues a cryptographic key that is created inside your device and never leaves it. There is no password on a server to steal, and no code to intercept.

Founded in 2019 by Thomas "TJ" Jermoluk, Jim Clark and Nelson Melo - two of them veterans of Netscape, Silicon Graphics and @Home Network - Beyond Identity set out to rebuild authentication from the silicon up. The pitch resonated with investors who had watched breach after breach begin with one stolen credential. By February 2022 the company had raised roughly $205 million and crossed into unicorn territory at a $1.1 billion valuation, backed by New Enterprise Associates, Koch Industries and Evolution Equity Partners.

Today the company, led by CEO Jasson Casey - a computer engineer with a Ph.D. and a national-security fellowship at George Mason University - describes its work as an "Identity Defense Platform." The phrasing matters. Beyond Identity is no longer selling only a passwordless login; it is selling the claim that it can tell you, deterministically, who is on the other end of a connection and whether their device can be trusted.

"Unauthorized Access Ends Here." — Beyond Identity company tagline
What It Does · Who It Serves

Cryptography Where the Password Used to Be

At its core, Beyond Identity binds a person's identity to a specific device using public-key cryptography. When you sign in, the device proves possession of a private key that never travels the network - the same class of assurance behind TLS and passkeys, packaged for enterprise access. That single design choice removes the shared secret attackers depend on.

The second half of the platform is device trust. The authenticator continuously checks the security posture of the machine - is it patched, encrypted, running the right controls - and can revoke access the moment a laptop drifts out of compliance. Access becomes a live state rather than a one-time gate, on managed and unmanaged devices alike.

Its customers are enterprises and mid-market firms in financial services, technology, healthcare, government and education. Publicly named users include Snowflake, Boomi, Cornell University, Monolithic Power Systems, Taulia and FireHydrant. The company sells to security and IT teams, not consumers.

The problems it targets are the ones that fill breach reports: phishing, credential theft, MFA-bypass and push-fatigue attacks, and - increasingly - AI impersonation. Each traces back to a system trusting something that can be faked. Beyond Identity's answer is to make the proof unforgeable.

Where Breaches Begin — and What Beyond Identity Removes

Attacks involving stolen / weak credentials~80%
Phishing-based intrusions~36%
Shared secrets in Beyond Identity's model0%

Directional figures illustrating the credential-attack problem space; percentages are approximate industry context, not company metrics.

How It Is Different

Deterministic, Not Probabilistic

Most authentication stacks ask a fuzzy question - "does this look like you?" - and score the answer. Beyond Identity aims for a hard yes or no: this exact device holds the right key, and here is its security state right now. That shift from probability to proof is the crux of how it positions against incumbents like Okta, Microsoft Entra, Ping Identity and Duo.

Legacy MFA & Passwords

  • Shared secrets stored on servers
  • OTP codes can be phished or relayed
  • Push prompts approved by mistake
  • Device health checked rarely, if ever
  • Human-only; blind to AI agents

Beyond Identity

  • Private key never leaves the device
  • Nothing to phish - no shared secret
  • Cryptographic proof, not a tap-to-approve
  • Continuous, real-time device trust
  • Covers users, devices and AI agents
Products & Services

The Toolkit

2020 · CORE

Phishing-Resistant MFA

Passwordless, device-bound authentication using cryptographic passkeys across macOS, Windows, iOS and Android. Standards-based: OpenID Connect, SAML, X.509.

2021 · POSTURE

Device Trust

Continuous verification of device security posture on managed and unmanaged devices, granting or revoking access based on live health and compliance.

2024 · AI DEFENSE

RealityCheck

An identity-assurance plugin for Zoom and Microsoft Teams that certifies participants are authenticated humans on trusted devices (AAL3), with a visible verified badge.

2022+ · PLATFORM

Secure Access Platform

The unifying Identity Defense Platform - adaptive, risk-based policies governing access across users, devices and AI agents, wired into SSO, MDM, EDR and SIEM.

"At this point, if you want to be a Red Cup IT customer, you need to be a Beyond Identity customer." — Dan Le, Founder & CEO, Red Cup IT
Business Model · Market

How It Makes Money, and Where It Sits

Beyond Identity is a B2B SaaS business. It sells its cloud-native platform on subscription, typically priced per identity, and delivers the authenticator, device-trust engine and integrations as a managed service. Crucially, it is designed to sit alongside existing SSO, MDM and security tooling rather than rip and replace it - lowering the barrier to adoption inside large security stacks.

Third-party estimates put annual revenue around $37.8 million, a figure the company has not officially confirmed. With roughly 150 employees, it is a focused, mid-stage player rather than a sprawling platform vendor.

In the market map, Beyond Identity competes in identity and access management against Okta, Microsoft Entra ID, Ping Identity, Cisco's Duo, and hardware-key makers like Yubico, as well as passkey-forward challengers such as HYPR and Transmit Security. Its differentiator is the tight coupling of passwordless authentication with continuous device trust.

Its newest frontier - deepfake defense with RealityCheck - places it in an emerging category alongside a wave of AI-impersonation detection tools. As AI agents proliferate as a new class of network "user," Beyond Identity's move to secure non-human identities may prove as consequential as killing the password.

The People

Pioneers & Operators

Co-founder · Chairman

TJ Jermoluk

Veteran of Silicon Graphics and @Home Network; a driving force behind the company's founding vision.

Co-founder

Jim Clark

Internet pioneer and co-founder of Netscape and Silicon Graphics.

Co-founder

Nelson Melo

Engineer and technical co-founder behind the passwordless architecture.

Chief Executive Officer

Jasson Casey

Ph.D. computer engineer, ex-CTO at SecurityScorecard and VP Engineering at IronNet; national-security fellow at GMU.

Timeline

From Stealth to Unicorn

2019

Beyond Identity founded

Jermoluk, Clark and Melo start the company to eliminate passwords with device-bound cryptographic credentials.

2020

Public launch · $75M Series B

Exits stealth with its passwordless authenticator and raises $75M led by NEA and Koch Disruptive Technologies.

2021

Device Trust arrives

Adds continuous device-security verification and expands across regulated industries.

2022

$100M Series C · $1.1B

Closes a $100M Series C in February, reaching unicorn status with $205M total raised.

2024

RealityCheck launches

Releases an identity-assurance plugin for Zoom and Teams to defend against deepfakes and AI impersonation.

2025

Securing the machines

Extends the Identity Defense Platform to AI agents and non-human identities amid rising AI-impersonation threats.

Details That Amuse & Inform

Five Things Worth Knowing

01

Two co-founders helped build Netscape - the browser that opened the web - and now work to secure it.

02

The product's whole premise is subtraction: it makes login safer by removing the password entirely.

03

RealityCheck puts a literal "verified" badge on your face during a video call.

04

CEO Jasson Casey holds a Ph.D. and is a national-security fellow at George Mason University.

05

The authenticator works on unmanaged personal devices using cryptographic keys - no authenticator app required.

Frequently Asked

Questions

What does Beyond Identity do?

It provides an identity security platform that eliminates passwords by binding authentication to a cryptographic key stored on a user's device, then continuously verifies the device's security posture to grant or revoke access.

How is it different from traditional MFA?

Traditional MFA relies on shared secrets like passwords and OTP codes that can be phished or approved by mistake. Beyond Identity uses device-bound cryptographic credentials with no shared secret, making authentication phishing-resistant and deterministic.

What is RealityCheck?

RealityCheck is a plugin for Zoom and Microsoft Teams that certifies each participant is an authenticated human on a trusted device (AAL3) and displays a verified badge, helping organizations defend against deepfakes and AI impersonation on calls.

Who founded Beyond Identity and where is it based?

It was founded in 2019 by TJ Jermoluk, Jim Clark and Nelson Melo, and is headquartered in New York City. Jasson Casey serves as CEO.

How much funding has it raised?

The company has raised approximately $205M in total, including a $75M Series B in 2020 and a $100M Series C in February 2022 that gave it a $1.1B valuation.

Watch

Interviews & Product Demos

Go Deeper

Links, Social & Press

Share This Dossier

Pass It On