Release Notes
This page contains information about the new developments and improvements made to Imprivata Identity Threat Detection and Response (ITDR).
The following is generally available to customers who have purchased Advanced Passwordless Access (APA) or Identity Assurance and Threat Detection (IATD).
User access and role provisioning for ITDR is now managed through the customer’s Imprivata Cloud Platform (ICP) tenant. Users can no longer be invited or added to an ITDR workspace directly from the ITDR user interface.
Managing ITDR access through ICP reduces complexity for customers by giving them one fewer place to manage users and roles, so they can focus on the benefits APA and IATD deliver.
For more information, see Managing Workspace Users.
ITDR prevents deletion of rule sets that have been used for risk-based authentication in the last 24 hours. Rule sets with no evaluation calls in the last 24 hours can still be deleted through the existing confirmation flow.
This safeguard helps prevent unintended removal of risk-based authentication protections, keeping bad actors out while allowing trusted users in seamlessly.
For more information, see Rule Sets.
Latest Releases
Navigate our previous release notes.
The following is generally available to customers who have purchased Advanced Passwordless Access (APA) or Identity Assurance and Threat Detection (IATD).
ITDR now includes an Audit Logs interface that gives administrators a centralized, chronological view of key activity across the workspace, including what happened, who performed the action, and when it occurred.
For more information, see View Audit Log Activity.
ITDR now includes a Model Context Protocol (MCP) experience that lets users interact with ITDR data through natural-language prompts. Users can ask questions about unusual workspace activity, review findings, and receive recommended next steps, including creating a test rule set based on identified behavior.
The following is generally available to customers who have purchased Advanced Passwordless Access (APA) or Identity Assurance and Threat Detection (IATD).
Introduces SSF support in ITDR, enabling teams to send Security Event Tokens (SETs) from third-party providers into ITDR, where they are surfaced in Event Explorer for centralized investigation. SETs can also drive adaptive authentication and automated response actions. Twosense.ai will be the first supported integration for a mutual EAM customer.
Introduces a new “Remove from List” action for real-time adaptive authentication and automated response, enabling customers to automatically remove users from enforcement lists in response to detections, including security events received via SSF.
Introduces a new History tab on the rule set. This version history provides an audit of changes made to a rule set, including what changed, who made the change, and when it occurred. An AI-generated change summary highlights key differences between versions.
For more information, see Rule Set Version History.
If changes to a rule set result in unexpected behavior or an incident, restore a prior active version in three clicks.
For more information, see Restore a Previous Version of a Rule Set.
Introduces an AI-generated summary highlighting the differences between an active rule set and a test version on the Test Results page.
Rule set evaluations are now available in a new tab on the rule set. Users can view evaluations that occurred against a rule set over the last 30 days without leaving the rule set experience.