Despite extensive investment by companies in cybersecurity solutions and best practices, cyber criminals continue to steal their employees’ credentials in ever more sophisticated phishing attacks.
The damage can be significant, with large organizations standing to lose up to $15 million per year—not to mention the reputational damage and loss of trust that result from a breach.
Certificate-based authentication based on the PIV (FIPS 201) standard along with FIDO2 passkeys offer robust solutions to human factor vulnerabilities, forming the cornerstone of any Zero Trust security framework.
IDEMIA has been a leading provider of PIV and CAC cards to the U.S. Federal Government and large enterprise customers for over 20 years.
IDEMIA offers U.S.-based manufacturing and centralized print bureau services for personalization and fulfillment of PIV cards, and has delivered over 65 million cards to date.
In July 2025, IDEMIA’s ID-One PIV® 243 Card was the first to achieve FIPS 140-3 Level 2 validation from NIST, making it the first new addition to the GSA’s Approved Products List (APL) in four years. (Full press release.)
While PIV cards remain the bedrock of FIPS 201-compliant (PIV) authenticators, there is an increasing demand for USB security keys because of their “plug-and-play” versatility for logical access.
IDEMIA Public Security now offers USB security keys as a convenient way to increase your cybersecurity posture through secure multi-factor authentication (MFA) using PKI-based and FIDO2 cryptographic authentication in multiple configurations.
FIPS 140-3 Level 2
When initialized in NPIVP, in CIV or in CIV+ Configuration, ID-One® PIV® 243 is FIPS 140-3 validated with overall level 2. CMVP Certificate #5024.
FIPS 140-3 Level 3
When initialized in SPE, or in SPE+ Configuration, (i.e. Secure PIN Entry: when the card enforces the encrypted transmission of the PIN for verification even over the contact interface), ID-One® PIV® 243 is FIPS 140-3 validated with overall level 3. CMVP Certificate #5027.
FIPS 201-2
When initialized in NPIVP Configuration, ID-One® PIV® 243 is FIPS 201-2 Compliant™. Its PIV Card Application has been validated by NIST to fully comply with SP800-73-4. NPIVP Certificate #50.
GSA APL
When initialized in NPIVP Configuration, and when using Product Part Number 2292732 (i.e. a smart card form factor with composite PETF/PVC card body specially designed to pass NIST stringent physical testing requirements), ID-One PIV® 243 has been approved for use by the U.S. Government and is listed on the IDManagement.gov web site under GSA APL#1513.
MINEX II
ID-One® PIV® 243 fingerprint On-Card-Comparison (OCC) algorithm has been validated for interoperability by NIST MINEX II.
LEAF is a secure open physical access control framework that does not lock you to any specific vendor.
IDEMIA is a founding member of the LEAF Community and our goal is to provide highly secure, open standard smart credentials that do not lock our customers into proprietary technology while securing their enterprise.
IDEMIA Smart Credentialing portfolio includes ID-One® PIV smart cards and ID-One® Key Go and ID-One® Key Bolt USB security keys. Below is a table with the difference between the solutions.

*NEW* Technical Resources
Visit our new Technical Resources page to download mini drivers, review documentation, and request assistance.