HID - Experts & Thought Leaders

Latest HID news & announcements

HID Helps In Automating The Access Control Management At Żabka

Enhancing enterprise security is high on the list of priorities for businesses across sectors. Within the retail industry, there is an additional focus on enabling new ways of working through management tools. Integrated solutions and applications help to create a robust security landscape and ensure a future-ready posture as organizations look to address emerging risks and create better experiences for next-gen employees. Physical access control (i.e., the readers on the door and the credentials that individuals present to them for authentication) is not only one of the first interactions employees have with security technology but is also the first line of defense in security programs. Good user experience The balance of a good user experience and strong security is critical, though striking that balance has been a challenge historically as security teams are tasked with prioritizing safety and protection. Innovative companies who want to go beyond traditional access control have found the balance of a frictionless user experience and strong security in mobile access solutions. Żabka is one of the largest European retail companies with 7000 locations across Poland Żabka is one of the largest European retail companies with 7000 locations across Poland and the Czech Republic. Innovation is in its DNA and the organization is known as an early adopter. From introducing AI to create an autonomous and checkout-free shopping experience to launching a cloud-based platform to better the franchise management process, Żabka has actively embraced continuous change and improvement. When implementing security for its new headquarters in Poznań, Poland, Żabka returned to its pioneering roots, requiring a highly secure, automated solution that enabled the integration of custom applications and simplified the use of other building-wide office functionalities. Physical security components Żabka’s vision included seamless access starting at building entrances with employees using their mobile phones to ‘badge’ into the building. From there, the same mobile credential would unlock turnstiles, authenticate floor access in elevators, track time and attendance and release documents at shared printers. Most importantly, user data would need to be secured via encryption and authentication through appropriate access keys with the introduction of new users being completely under Żabka’s control. The implementation of an ecosystem with multiple capabilities — including a migration from plastic cards to mobile identities, surveillance tools, access management, and physical security components to underpin the entire solution — also necessitated collaboration between partners who shared Żabka’s spirit of modernization and vision for a seamless user experience. Traditional plastic credentials Żabka’s comprehensive ecosystem utilizes digital access control processes The project team included HID Global who managed the transition from traditional plastic credentials to mobile identities, with Zonifero to develop a custom mobile app, and Cynergy to complete the installation of hardware and embedded components. Żabka’s comprehensive ecosystem utilizes digital access control processes and integrated surveillance tools with a security management platform enabling Żabka to migrate completely to the use of mobile identities. The move to HID Mobile Access has changed the experience of employees, visitors, HR, and security administrators by accelerating and automating access control management for the entire building. Integrated surveillance tools Mobile identities, contactless employee onboarding, touchless visitor management, time and attendance, and integration with the security system of the entire building are now aggregated and facilitated within the smartphone app. Security administrators remotely managed a pool of allocated mobile identities The ability to manage the access control system from anywhere with no physical contact was especially valuable. Launched amid the pandemic, the new infrastructure enabled Żabka employees to maintain social distancing and limit contact through automatic and remote activation of access. Security administrators remotely managed a pool of allocated mobile identities and individual access to users’ devices, thereby solving the problem of storing physical cards, facilitating credential transfers, issuing new credentials in the case of lost or damaged ones, and deactivating cards in the event they were lost or stolen. Mobile identity functionalities Żabka implemented mobile access on a large scale with mobile IDs in use by about 800 employees. The retailer also plans to implement further mobile identity functionalities, such as opening parking lot gates, making cafeteria purchases, and seamlessly logging in to computers. Steve is responsible for leading and coordinating demand generation programs and channel marketing activities for HID's Physical Access Control Solutions (PACS) business area in Europe. He has over 20 years of experience working in B2B marketing, 15 of which have been in the safety and security industries.

Safetrust Aliro: Transforming Credential Management

Safetrust today introduced the Safetrust Aliro 1.0 Migration Credential, a physical credential designed to help enterprises move from proprietary access technologies to the open Aliro standard without replacing their existing reader infrastructure. Enterprises can issue, manage, and update the credential themselves, while one organization-controlled identity can operate across Aliro-compatible readers from multiple vendors. Organization-controlled digital trust Traditional credentials often rely on proprietary keys controlled by an access control vendor. Aliro credentials instead use digital certificates the organization issues and controls. As with the certificates that secure websites and enterprise IT systems, the organization determines which identities are trusted, where they can be used, and how certificates are issued, updated, and revoked. Organizations can also authorize external partners, including landlords, parking operators, and workplace service providers, to trust the same credential. One badge can therefore provide access to corporate offices, shared buildings, parking facilities, and other approved environments without requiring a separate credential from each provider. For large enterprises, this provides direct control over credential security, less dependence on any single hardware vendor, and alignment across physical access, enterprise PKI, identity and access management, and Zero Trust strategy. The credential implements the Connectivity Standards Alliance's Aliro 1.0 specification and works with Aliro-compatible hardware from multiple vendors. Aliro was developed through collaboration among more than 220 CSA member companies, including Apple, Google, Samsung, and Safetrust. A new model for enterprise identity "Aliro represents the first time customers and vendors outside the government sector have come together around a common standard for organizational identity," said Jason Hart, CEO and co-founder of Safetrust. "For enterprise security leaders, this creates a path to stronger security and greater vendor choice without requiring a disruptive replacement of their existing access infrastructure." Passport model for access As an open, multi-vendor standard, Aliro is becoming the enterprise equivalent of a passport: the issuer establishes a trusted identity, while independent organizations decide whether and where to accept it. Moving beyond proprietary credentials For decades, physical access customers have migrated from one proprietary credential technology to the next, often replacing readers, credentials, and key infrastructure with each generation. While the cryptography improved, the underlying model often did not: the credential vendor continued to control the technology and the critical trust infrastructure. When that vendor-controlled trust infrastructure was compromised, the security of the credentials customers relied upon was compromised with it, restarting the migration cycle all over again. Open migration path Aliro changes that model. Instead of asking customers to migrate to Safetrust's next proprietary credential, Safetrust is providing a migration path to an industry standard that any compliant vendor can implement. The organization, not Safetrust, generates and controls its keys and establishes its trust relationships, bringing physical access in line with the certificate-based security practices already familiar to enterprise IT. Supporting legacy infrastructure The Safetrust Aliro credential simplifies migration by consolidating multiple legacy credentials onto a single card. Safetrust has independently developed emulation technology that enables interoperability with installed legacy reader ecosystems, including readers configured for HID® Seos® Standard and Elite credentials, LEAF credentials, vendor-specific credentials used with MIFARE® DESFire® data models, and more than 30 low-frequency proximity technologies. Safetrust independently developed these legacy-compatible applications, and they are not HID or other third-party credentials. This allows one physical credential to work with existing legacy readers without modifying the installed infrastructure, while also supporting migration to Aliro. Phased migration without disruption Organizations can therefore migrate to Aliro at their own pace without disrupting day-to-day operations. Existing readers can remain in service while Aliro-capable infrastructure is introduced progressively, starting with the highest-risk areas such as data centers, schools, production and warehouse environments, and other sensitive or unsupervised openings. As reader infrastructure is upgraded, the same credential transitions from legacy compatibility to Aliro's certificate-based trust model without requiring users to change cards again. The credential works with the infrastructure an organization has today and moves to a stronger trust model as Aliro-capable infrastructure is deployed. Expanding credential capabilities The migration credential is designed to become more capable over time. Beyond physical access, organizations can enable additional applications and services on the same credential, extending their investment without issuing another badge. Extending beyond physical access The same physical credential can also extend beyond the door. An optional full FIDO2 application enables the Safetrust Aliro credential to operate as an NFC FIDO2 authenticator for compatible workstations, applications, services, and mobile devices. NFC tap-to-enroll is also supported, allowing organizations to consolidate physical access and strong digital authentication onto a single employee credential and potentially reduce the need for separate FIDO2 security tokens. Future-proof credential management As security requirements and standards evolve, administrators update credentials in the field by tapping the card on a desktop reader or NFC-enabled phone. Specification updates, digital certificate changes, and support for additional legacy credentials apply without replacing the physical badge, extending its useful life and simplifying credential management. Tap-To-Authenticate workflows Safetrust's patented Tap to Authenticate technology extends the physical credential into digital workflows. By tapping the card to an NFC-enabled phone or computer, an organization can authenticate the credential and initiate an approved browser-based workflow, including identity verification, support services, emergency assistance, credential self-service, or mobile credential provisioning. For mobile wallet provisioning, organizations control which users are eligible and what identity verification is required before issuing an authorized credential to Apple Wallet, Google Wallet, Samsung Wallet, or Safetrust Wallet. Flexible deployment The credentials are available in multiple form factors and can be ordered preprogrammed, programmed onsite, or provisioned with an NFC-enabled mobile device. They are available today through Safetrust distribution partners and will be available online through retail channels in Q4 2026. Demonstrating Aliro At GSX 2026 Safetrust will demonstrate its Aliro physical credential alongside mobile credentials working across a range of vendors at the Global Security Exchange (GSX), September 14–16, 2026, at the Georgia World Congress Center in Atlanta. Visit Safetrust at Booth 3545 and attend One Credential, Any Reader: How the Aliro Standard Ends Vendor Lock-In on Tuesday, September 15, from 2:45–3:45 p.m. ET in Room B308/B309. Safetrust will also host the webinar Aliro: The Card on Wednesday, September 9, at 11 a.m. 

PSG Announces Technology Partnership With Mercury Security To Bring Zero Trust To The Far Edge

Prometheus Security Group Global (PSG), the FED-GOV Nuclear Security Platform and a pioneer in Zero Trust physical security and operational technology (OT) solutions, announces a technology partnership with Mercury Security, a pioneer in open-architecture access control hardware, to extend Zero Trust principles deeper into physical security environments — all the way to the far edge. The partnership combines Mercury’s industry-pioneer access control platform with PSG’s patented technology for embedding Zero Trust directly at the far-edge device — including sensors, door hardware, readers, cameras, and other field devices. By establishing trusted device identity and cryptographically authenticating and verifying field signals, PSG enables physical security systems to move beyond assumed inputs to authenticated, verified data at its source — before that data ever enters the network. Verifying field signals Through its partnership organizations work to reduce cyber risk across operational and physical security environments, confidence in the integrity of field-device data is increasingly critical. Most physical security systems inherently trust their field inputs and continue to rely on decades-old end-of-line resistor (EOL) technology, which was designed to detect circuit faults but provides no device identity, authentication, or signal verification. “Zero Trust begins with knowing that the data entering a system is both authenticated and verified. Mercury’s leadership in access control, combined with PSG’s embedded identity and signal verification at Layers 0 and 1, gives customers a powerful way to strengthen security at the far edge — across both analog and digital environments — without requiring wholesale replacement of existing infrastructure,” said Rick Gross, CEO, Prometheus Security Group Global. Physical security decisions “Mercury has built its reputation on delivering open, flexible, and highly reliable access control solutions. By collaborating with PSG, we are strengthening the integrity of physical security data and supporting the evolving cybersecurity requirements of our customers,” said Damon Dageenakis, Senior Director of Product Management, Mercury Security. Under the partnership, PSG and Mercury will collaborate on technology initiatives, market education, and customer engagement designed to help security leaders apply Zero Trust principles throughout physical security systems — strengthening security at the far edge while preserving investments in existing physical security infrastructure. For PSG, the partnership represents an important step in advancing a broader Zero Trust architecture for physical security: establishing trust not only in users and networks, but also in the devices, communications, events, and data that drive physical security decisions. As AI and advanced analytics increasingly influence those decisions, the ability to authenticate and verify data at its source becomes even more critical — AI can only be as trusted as the data it receives.

Insights & Opinions from thought leaders at HID

ISC West 2019 Day Two: Explaining The New And The Tried-And-True

There are many new technologies at ISC West this year. There are also some tried-and-true solutions on display. More mature products have the benefit of being fully vetted and battle-tested, which may make them a more comfortable choice for security customers. I had a couple of discussions on Day 2 of the show about the advantages, and possible drawbacks, of new products. “To a security director, when you say ‘new,’ he translates that into ‘risk,’” says Bill Spence, VP of Sales, U.S., Canada and Western Europe for HID Global’s Lumidigm biometrics brand. “Anytime you say new, there is a probability of risk. The key is to educate. Education quantifies risk, and an educated customer can make an intelligent decision about risk versus reward.” “We have to take customers from where they are to help them understand new technologies,” says Spence. “We must give them a bridge to that understanding, and education is the bridge.” Lumidigm Biometrics Integrations An app provides graphics that take installers step-by-step through the installation process HID Global is incorporating Lumidigm biometrics into the new iClass SE RB25F fingerprint reader being highlighted at the show. Two-factor authentication can use either a card or mobile credential along with biometrics; there is no latency; and templates can be stored on a card. Another new offering at the HID Global booth is an augmented reality tool to simplify installation of newer systems that incorporate the more secure OSDP protocol. An app provides graphics that take installers step-by-step through the installation process. Also highlighted at the HID Global booth — and at the booths of turnstile manufacturers throughout the show — are embedded readers that provide tested and certified mobile access control for turnstiles. IClass SE technology is embedded in the iRox-T Turnstile Reader from Essex Electronics. Innovative Security Technologies There’s a delicate balance at any trade show between creating excitement about new products and educating customers to be comfortable with new technologies. There is some of both at ISC West 2019. In the future, hardware will be a delivery device, not the core of systems “We are on the cusp of change in the industry, and it’s closer than ever,” says Jennifer Doctor, Johnson Controls’ Senior Director, Project Management - Intrusion. “We will see the impact of promised technologies that will come from other industries, such as artificial intelligence. The very definition of security is changing. We are an industry that needs to be risk-averse, and we need to prove out the technology. There is innovation, but we just need to make sure technologies are what the market wants and expects.” “In the future, hardware will be a delivery device, not the core of systems, which will come from intelligence in the software and from services,” she adds. “The products we deliver will enable that.” Have 30 percent of service companies in the U.S. security market jumped into the cloud?  PowerSeries Pro Intrusion Portfolio Johnson Controls is highlighting the commercial PowerSeries Pro intrusion portfolio, which features PowerG encrypted technology that enables wireless systems that are cyber-secure. The cloud is coming on strong, and one company finding success in cloud systems is Eagle Eye Networks, which has seen 93% compounded annual growth over the past three years. Economies of scale have enabled them to lower subscription prices by 35%, with an extra 10% decrease for customers that pay annually. Ken Francis, President of Eagle Eye Networks, says they are signing up 50 new dealers a month for the cloud video offering. Francis estimates that 30 percent of service companies in the U.S. security market have jumped into the cloud “It’s really heating up,” says Francis. “The general cloud is driving increases in the surveillance cloud.” Jumping To Cloud Embracing the cloud and recurring monthly revenue (RMR) requires that dealers transform their businesses to ensure success. Francis says dealers should dedicate sales resources to cloud offerings rather than expect everyone to sell the cloud, and there should be a base commission plan on RMR services in lieu of upfront project fees. March Networks is also showing integration of video with the Shopify cloud-based point-of-sale (POS) system “Talk to professionals about your cash flow and understand how to capitalize on financing partners to ensure cash flow while investing in the RMR stream,” he adds. “And look for ways to reduce your costs to serve the customer base as your RMR increases.” For example, use of remote site diagnostics, configuration and support can avoid the need for expensive “truck rolls” that can undermine profitability. Francis estimates that 30 percent of service companies in the U.S. security market have jumped into the cloud. Alarm companies, which are accustomed to the RMR model, are generally ahead of the curve, while traditional security integrators are lagging. “It’s a requirement to change or die,” he notes. Insight Hosted Managed Service Also, in the area of managed services, March Networks is highlighting its Insight hosted managed service that can provide instant information on video systems located at remote sites, including visibility into firmware versions, camera warranty information, and cybersecurity status of systems. The ability to dive deeply into system status empowers a new recurring revenue stream for integrators. Color-coded icons summarize system status and show pending issues and clicking on the icons provides detailed workflow information. The system can also be offered for smaller systems such as those at convenience stores and quick-serve restaurants. March Networks is also showing integration of video with the Shopify cloud-based point-of-sale (POS) system. The integration enables managers to evaluate POS information, especially anomalies, to determine possible employee theft and other shrinkage issues.

How Do Changes In The Broader Economic Climate Impact Security?

At mid-year 2026, the broader economy tells a story of resilience under pressure. Conflict in the Middle East has triggered a shock to the energy supply, driving oil prices up and reigniting global inflation. However, a total downturn has been averted. Exceptional, historic levels of business investment and data center construction are providing a firm floor for growth, offsetting cooler consumer spending and keeping labor markets fundamentally stable. But how are changing economics impacting the physical security market? We asked our Expert Panel Roundtable: How do changes in the broader economic climate impact physical security?

What Factors Are Accelerating Technology Modernization In Security?

In the simplest terms, technology modernization accelerates when older systems become too expensive to maintain or fail to support modern standards. Market competition pushes businesses to update their technologies to meet rising customer demands. Additionally, the rapid shift toward cloud-based infrastructures and artificial intelligence creates a fear of missing out, forcing companies to adapt or risk irrelevance. Focusing on the physical security market, we asked our Expert Panel Roundtable: What factors are accelerating technology modernisation in security?