Gideon

Glossary

CAEP

Continuous Access Evaluation Profile, an OpenID Shared Signals Framework profile that defines security events such as device compliance changes and session revocation. CAEP carries the state change; receiver policy determines whether to deny access, revoke a session, require reauthentication, or take another action.

CAIQ

Consensus Assessment Initiative Questionnaire, a Cloud Security Alliance questionnaire aligned with the Cloud Controls Matrix (CCM) that cloud providers use to document security controls for customers, auditors, and CSA STAR Level 1 review. A completed CAIQ is a self-assessment, not a certification.

Data streaming

The event-processing layer Gideon uses to correlate identity and endpoint state in real time.

FIDO2

A phishing-resistant authentication standard used by modern passkeys.

GitOps

A model where infrastructure and security state are declared in version control and enforced automatically.

MCP

Model Context Protocol, a standard interface that lets AI agents interact with tools and data sources safely.

OIDC

OpenID Connect, an identity layer used for modern authentication flows.

SCIM

A protocol for provisioning and deprovisioning identities across SaaS systems.

Secure Enclave

A hardware security subsystem that protects cryptographic keys on supported Apple devices.

SSF

OpenID Shared Signals Framework, a standard for establishing event streams and exchanging signed Security Event Tokens between trusted transmitters and receivers through push or poll delivery.

TPM

Trusted Platform Module, a hardware root of trust commonly used on Windows devices.

Enterprise demo

See Gideon against your fleet model.

Bring team size, identity provider, endpoint stack, and procurement path. We will map package fit, rollout shape, and POC timing.

  • 14-day POC framework
  • Marketplace and private offer support
  • Security questionnaire routing

Request an enterprise demo