Security Startups
← Directory

Smallstep

Private CA and device identity so internal TLS, SSH, and laptops get short-lived certificates instead of passwords.

Proof of life. Published hardware-bound device identity essay, May 2026

Smallstep runs step-ca, an open-source certificate authority, plus a commercial control plane for enterprise PKI and device identity. Device Identity for Okta binds a managed device certificate to workforce SSO so access follows the laptop, not a shared secret. It is certificates as identity, not a secrets vault with a PKI checkbox.

Category
Secrets and non-human identity
Headquarters
San Francisco, United States
Country
United States
Founded
2016
Funding stage
Series A
Total funding
$26M
Website
https://smallstep.com

Investors

StepStone GroupBain Capital Venturesboldstart

Tags

Series AUnited States

Proof-of-life verified against this source. Outbound clicks are tokenized for directory analytics.