Airlock Secure Access Hub is a centralized security platform that integrates Web Application and API Protection (WAAP), Customer Identity and Access Management (cIAM), and API security. It functions as an upstream reverse proxy at the application layer, terminating TLS connections to inspect traffic and protect backend services. This architecture decouples security, user authentication, and access management from core business applications, providing a single enforcement point for security policies that protect web applications and APIs from threats such as the OWASP Top 10, injection attacks, and automated bots.
The system manages identity functions including registration, Single Sign-On (SSO), federation, and adaptive or risk-based authentication. Technical capabilities include centralized virtual patching, dynamic whitelisting, and bot management. Designed for high availability through active/active clustering, the platform can be deployed in on-premise, hybrid, or public cloud environments. It facilitates integration into DevSecOps pipelines via containerization and API-driven automation and supports connections to existing user directories and legacy systems.