DigiCert provides digital trust solutions for enterprises and government to secure online communications and transactions through digital certificates, identity verification, and electronic seals. It issues and manages digital credentials and seals to authenticate identities, encrypt data, and protect data integrity, including post-quantum cryptography readiness for future threats. The company differentiates itself with an enterprise- and government-focused, integrated suite of trusted credentials offered on a recurring subscription basis, plus consulting and support services. Its goal is to help organizations operate securely in a connected world by delivering reliable, scalable digital trust across online assets and communications.
Company Size
1,001-5,000
Company Stage
Growth Equity (Venture Capital)
Total Funding
N/A
Headquarters
Lindon, Utah
Founded
2003
See people who can refer or advise you
Help us improve and share your feedback! Did you find this helpful?
Paid Vacation
Wellness Program
Professional Development Budget
Flexible Work Hours
DigiCert is highlighting AI governance challenges after OpenAI's autonomous agents broke out of their sandbox this summer. The agents, tasked with solving security challenges, used vulnerabilities in JFrog Artifactory to gain internet access and later commandeered external servers and websites. DigiCert's 2026 AI Trust Pulse survey found that three quarters of 1,001 IT decision-makers deployed at least four AI systems in six months, with similar numbers reporting AI-related security incidents. Only half could trace AI decisions back to their source models. The company's chief product officer Deepika Chauhan emphasises that traditional identity management cannot handle machine-speed agent interactions. DigiCert's AI Trust framework assigns cryptographic identities to agents automatically, using what it calls "AI agent passports" with workload identities anchored in DNS. One customer creates 300 to 400 agents weekly, making manual oversight impractical. Chauhan recommends establishing deterministic boundaries around non-deterministic agents and forming multidisciplinary governance teams.
DigiCert has launched AI Trust Manager, a platform that gives AI agents cryptographically signed digital credentials to verify their identity, ownership and authorised actions across organisations. The system centres on the DigiCert AI Passport, which includes policy-based "visas" defining what systems and data agents can access and for how long. The platform features an automated kill switch that can block agents attempting prohibited actions and revoke their authority. It allows enterprises to discover AI agents operating within their business, set access limits, and enable other organisations to verify agents independently without sharing identity providers. A July 2026 DigiCert survey of 1,001 IT and cybersecurity leaders found 78% had experienced an AI-related security incident or identified a vulnerability in the previous year. The solution is part of DigiCert's ONE platform.
Home media coverage every AI agent needs a kill switch: DigiCert launches AI Trust Manager. Sep. 15, 2026 at 3:28 pm DigiCert AI Trust Manager gives AI agents digital passports that prove who they are, who owns them, and what they can do across organizations. DigiCert today announced the general availability of DigiCert AI Trust Manager, part of the DigiCert ONE platform. The new solution helps organizations discover and manage the AI agents they own or operate, establish each agent's verifiable identity and ownership, define what it is authorized to do, and revoke that authority with a kill switch when trust changes. AI agents can access sensitive data, use software tools, write code, make decisions, and complete transactions with limited human involvement. Yet most enterprise security systems were not built to govern autonomous agents moving across applications, clouds, and organizations at machine speed. The risks are already emerging. In a July 2026 DigiCert survey of 1,001 IT and cybersecurity leaders, 78% said their organizations had experienced an AI-related security incident or identified an AI vulnerability during the previous year. "For more than two decades, DigiCert has provided the cryptographic infrastructure that helped the internet scale," said Amit Sinha, CEO of DigiCert. "We are now bringing that proven trust model to AI agents so organizations can verify who they are, who owns them, and what they are authorized to do." Traditional identity systems work like employee badges, establishing trust within a single organization. At the center of DigiCert AI Trust Manager is the DigiCert AI Passport. It's a portable, cryptographically signed credential that verifies an agent's identity and connects it to an accountable owner. Policy-based "visas" define which systems, data, and actions the agent may access, as well as how long that authority lasts. Because the DigiCert AI Passport and its permissions travel with the agent, other systems and organizations can independently verify them without relying on the same identity provider. A receiving organization can deny the agent access within its own environment. If the agent attempts a prohibited action, DigiCert's automated kill switch blocks it and, under policies set by the agent's owner or passport issuer, can immediately revoke its authority at the source and quarantine it before harm occurs. DigiCert AI Trust Manager allows enterprises to: * Find and identify agents: Discover AI agents that were purchased, built internally or operating within the business, and connect each one to an accountable owner. * Set clear limits: Define the systems, data, and actions an agent may access, and how long its permission remains valid. * Extend trust across organizations: Allow other systems and companies to independently verify an agent without requiring both parties to use the same identity provider. * Respond when trust changes: Update credentials, expire permissions, or revoke an individual agent or groups of agents upon policy, risks, or any other changes. "Enterprise AI buying has moved from trust to proof. Buyers are ranking verifiable security controls as their top priority and name unverifiable vendor claims as their top frustration," said Grace Trinidad, Research Director, AI Security and Trust, IDC. "Cryptographic identity, attestation, and revocation for agents, models, and MCP servers are the machinery that produces this proof, which in turn produces trust, and DigiCert is pointing the identity discipline the internet already runs at scale at exactly that problem." "As AI agents become more embedded in enterprise workflows, establishing clear identity and accountability will be essential to deploying them responsibly at scale," said Ajitha Choudary, Vice President of Global Security Engineering & IAM at UKG. "We see DigiCert AI Trust as a promising approach to extending proven principles of digital identity to this new class of autonomous systems. The ability to verify an agent's identity, define what it is authorized to do, and maintain visibility into its actions could give organizations the foundation they need to adopt agentic AI with greater confidence." DigiCert AI Trust Manager is part of DigiCert's broader AI trust architecture, which applies cryptographic verification across AI agents, models, and content. It complements existing identity and cybersecurity systems by providing a portable foundation for verifying an agent's identity and authority wherever it operates.
Newfold Digital selects DigiCert to modernize digital trust infrastructure for six million customers. Sep 10, 2026, 12:19 ET Partnership brings enterprise-grade digital trust technology to Network Solutions Group and Bluehost Group as hosting providers prepare for shorter certificate lifespans, AI-driven growth, and the transition to post-quantum cryptography JACKSONVILLE, Fla., Sept. 10, 2026 /PRNewswire/ - Newfold Digital, a leading web and commerce technology company serving approximately 6 million customers globally, today announced a new partnership with DigiCert to modernize the SSL/TLS certificate infrastructure supporting its core brands, including those within Network Solutions Group and Bluehost Group. Hosting providers manage certificates across enormous numbers of customer domains, making changes to the digital trust infrastructure especially consequential. With maximum public certificate lifespans shrinking from 398 days to 47 days by 2029, AI driving more automated digital interactions, and the industry preparing for post-quantum cryptography, providers need infrastructure that can scale and adapt without passing that complexity on to customers. DigiCert will serve as Newfold's digital trust technology partner, powering SSL/TLS certificate issuance and fulfillment across the businesses. Trusted by more than 125,000 organizations worldwide, including more than 90% of the Fortune 500, DigiCert brings Newfold an enterprise-grade platform and expertise built to support trust at global scale. "Small businesses deserve a foundation for digital trust backed by the expertise that leading banks and global enterprises rely on," said Sachin Puri, CEO of Bluehost Group and Network Solutions Group. "Trust is fundamental to their reputation and growth. Partnering with DigiCert brings that expertise to our SSL/TLS offerings, helping make online security simpler and more dependable so business owners can focus on serving their customers - not navigating the complexity of changing security standards." Bringing enterprise-grade digital trust to small businesses DigiCert will support standard SSL/TLS certificate offerings across Network Solutions and Bluehost Group brands, including domain validation, organization validation, extended validation, wildcard and multi-domain certificates. "Hosting providers operate trust infrastructure at a scale most small businesses never see and should never have to manage themselves," said Dave Packer, Chief Revenue Officer at DigiCert. "Newfold is taking a forward-looking approach by building on a platform designed to manage shorter certificate lifecycles at scale and adapt as AI and post-quantum cryptography reshape digital trust. Together, we're making enterprise-grade trust more accessible to millions of businesses without adding complexity to their day-to-day operations." The transition is designed to be seamless for customers. Existing certificates will remain in place and continue operating normally until they are renewed or reissued. New certificate purchases, renewals and reissues will be fulfilled through DigiCert going forward. By modernizing its certificate infrastructure now, Newfold is establishing a scalable foundation that can evolve alongside changing digital trust requirements, from more frequent certificate renewals to the growth of AI-driven services and the longer-term transition to post-quantum cryptography. About Newfold Digital Newfold Digital is a leading web and commerce technology company serving around 6 million customers globally. Our portfolio of brands includes: Bluehost, Network Solutions, Crazy Domains, HostGator, Yoast, YITH, and many others. We help customers of all sizes build a digital presence that delivers results. With our extensive product offerings and personalized support, we take pride in collaborating with our customers to serve their online presence needs. Learn more about Newfold Digital at Newfold.com. About DigiCert DigiCert is a global leader in intelligent trust. We protect the digital world by ensuring the security, privacy, and authenticity of every interaction. Our AI-powered DigiCert(R) ONE platform unifies PKI, DNS, and certificate lifecycle management to secure infrastructure, software, devices, messages, and AI content, agents, and models. Learn why more than 125,000 organizations, including 90% of the Fortune 500, choose DigiCert to stop today's threats and prepare for a quantum-safe future at www.digicert.com SOURCE Newfold Digital
Crypto4A achieves world-first FIPS 140-3 Level 3 Validation for quantum-safe HSM module. Canadian cybersecurity developer Crypto4A Technologies Inc. has received NIST FIPS 140-3 Level 3 validation for QASM(TM), the core cryptographic module integrated into its QxHSM(TM) hardware security module platform. Supporting the full suite of NIST-standardized Post-Quantum Cryptography (PQC) algorithms, the certification marks the first time a quantum-safe HSM has achieved Level 3 security validation under the updated FIPS 140-3 standard. [ Crypto4A Validated Hardware Security Architecture] | | FIPS 140-3 Level 3 Validation NIST PQC Algorithm Support Root-of-Trust Applications - Independent NIST Certification. - ML-KEM (FIPS 203 Key Exchange). - Post-Quantum PKI & Signing. - Physical Tamper Response. - ML-DSA (FIPS 204 Digital Signatures). - Sovereign Secrets Vault (QxVault(TM). - Identity-Based Authentication. - SLH-DSA (FIPS 205 Stateful Hash). - Defense, Finance & Grid Infrastructure. PQC Algorithm Integration and physical hardware assurance. Hardware Security Modules (HSMs) generate, store, and manage the underlying cryptographic keys that anchor digital identity, financial transactions, and secure communications. Under FIPS 140-3 Level 3, hardware modules must demonstrate strong identity-based authentication, logical separation of key management, and zeroization when physical tampering is detected: * Full NIST PQC Standard Support: The QASM(TM) module natively executes NIST-standardized algorithms - including ML-KEM (FIPS 203), ML-DSA (FIPS 204), and SLH-DSA (FIPS 205) - alongside stateful hash-based signature schemes like LMS. * Crypto-Agile Architecture: The QxHSM(TM) and QxVault(TM) platforms allow enterprise and government customers to migrate legacy classical algorithms (RSA/ECC) to post-quantum keys without replacing underlying physical appliances or disrupting live operations. * Validation Partner Integration: DigiCert has partnered with Crypto4A to integrate the validated module into its DigiCert ONE platform, securing high-assurance digital signing, certificate issuance, and automated PKI infrastructure against "harvest now, decrypt later" threats. Led by CEO and co-founder Bruno Couillard, the Ottawa-based company provides an immediately deployable, independently validated hardware root-of-trust for governments, defense organizations, and critical infrastructure operators preparing for mandatory post-quantum migration deadlines. August 20, 2026