

Identity at the Center
Identity at the Center
Identity at the Center is a weekly podcast all about identity security in the context of identity and access management (IAM). With decades of real-world IAM experience, hosts Jim McDonald and Jeff Steadman bring you conversations with news, topics, and guests from the identity management industry. Do you know who has access to what?
Episodes
Mentioned books

Apr 7, 2025 • 53min
#342 - Identity Management Day 2025 with Jeff Reich
Join Jeff and Jim in this episode of the Identity at the Center Podcast as they delve into the upcoming Identity Management Day 2025. Featuring guest Jeff Reich, Executive Director at the Identity Defined Security Alliance (IDSA), this episode unpacks the significance of non-human identities, AI in identity management, and the existential questions surrounding identity. The discussion covers upcoming events, awards, and what to expect from Identity Management Day, while also exploring the potential impact of Quantum Computing. Don't miss out on this in-depth conversation that combines humor with profound insights into the evolving landscape of identity management.Chapters00:00 Introduction and Identity Concerns01:30 AI and Podcasting01:59 AI Limitations and Future05:41 Conference Announcements07:30 Identity Management Day 202509:35 Global Identity Trends18:39 Existential Identity and AI27:29 The Concept of Identity in Technology28:05 Machine Identity and Its Implications29:30 Human vs. Machine Identity31:07 The Future of Identity with AI and Quantum Computing38:13 Identity Management Day Awards45:17 Fun and Lighthearted Discussion51:35 Conclusion and Final ThoughtsConnect with Jeff: https://www.linkedin.com/in/jreich/Learn more about the IDSA: https://www.idsalliance.org/Register for Identity Management Day 2025: https://www.accelevents.com/e/Identity-Management-Day-2025-Virtual-ConferenceConnect with us on LinkedIn:Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/Visit the show on the web at http://idacpodcast.comKeywords: Identity Management, AI, Non-Human Identities, Identity Defined Security Alliance, IDSA, Quantum Computing, Identity Management Day 2025, Identity at the Center Podcast.

Apr 1, 2025 • 26min
#341 - Alternative Realities and Dimensions of IAM in 2025
They riff on absurd future IAM trends like karaoke-required biometrics and carrier pigeon authentication. They spotlight surreal concepts such as toaster logins, quantum entanglement auth, and spirit-animal checks. Expect playful takes on sentient directories, fortune-cookie credentials, theatrical SAML assertions, and a club called Session_Expired.

Mar 31, 2025 • 1h 3min
#340 - RSM & IDAC Present: Compliance & Digital Identity with Kia Smith
Kia Smith, a director at RSM with a law and federal IT audit background, focuses on compliance, governance, and cybersecurity. She discusses aligning compliance with security, the growing regulatory complexity driven by third-party and cloud relationships, the broad impact of CMMC on supply chains, and the emerging role of AI in compliance validation.

Mar 26, 2025 • 57min
#339 - Sponsor Spotlight - Permiso
This episode is sponsored by Permiso. Visit permiso.io/idac to learn more.In this sponsored episode of the Identity at the Center Podcast, hosts Jeff and Jim sit down with Paul Nguyen, co-founder and co-CEO of Permiso, to discuss the critical role of identity security in modern information security. Paul shares insights into the history of identity threats, the rise of identity-focused attacks like Scattered Spider and LLM Jacking, and the importance of real-time identity monitoring for both human and non-human identities across cloud and on-prem environments. The episode explores how Permiso is positioned in the market to provide comprehensive identity threat detection and response (ITDR) and identity security posture management (ISPM), offering advanced visibility and proactive measures against emerging threats.Chapters00:00 Introduction to Security Vendors00:50 Welcome to the Identity at the Center Podcast01:30 Sponsored Spotlight: Permiso02:14 Meet Paul Nguyen, Co-Founder of Permiso03:34 The Importance of Identity in Security05:35 Permiso's Unique Approach to Identity Security07:36 Real-Time Monitoring and Threat Detection09:23 Challenges and Solutions in Identity Security15:16 Modern Attacks and Identity Threats25:56 The Role of Honeypots in Security Research26:49 Challenges of Maintaining Security27:15 Honeypots and Breach Detection27:46 Dwell Time and Reconnaissance28:34 Password Complexity and Monitoring Gaps29:24 Roles and Responsibilities in Identity Security29:49 Unified Identity Security Teams30:57 Emerging Threats and Joint Efforts32:49 Permiso's Role in Identity Security34:10 Detection and Response Strategies36:11 Managing Identity Risks36:51 Combining Prevention and Detection39:44 Real-World Applications and Challenges51:17 Personal Insights and Final ThoughtsConnect with Paul: https://www.linkedin.com/in/paulnguyen/Learn more about Permiso: https://permiso.io/idacConnect with us on LinkedIn:Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/Visit the show on the web at idacpodcast.com and watch at idacpodcast.tvKeywords:identity security, real-time monitoring, IAM, cybersecurity, identity exploitation, modern attacks, insider threats, honeypots, organizational structure, Non-Human Identities, Identity Security, Permiso, Risk Management, Insider Threat, Shadow IT, Identity Graph, ITDR, ISPM, Cybersecurity

Mar 24, 2025 • 1h 2min
#338 - European Identity & Cloud Conference 2025 Preview with Warwick Ashford
In this episode of the Identity at the Center Podcast, Jeff and Jim discuss the upcoming European Identity and Cloud Conference (EIC) with Warwick Ashford, Senior Analyst at KuppingerCole Analysts. Warwick outlines the differences between digital identity and identity and access management (IAM), emphasizing the importance of managing non-human identities in today’s digital world. The episode covers key themes for this year's EIC, including AI's role in cybersecurity, decentralized identity, identity ecosystems, and inclusivity. Warwick also highlights the extensive agenda comprising over 200 presentations, multiple workshops, and notable speakers from global standards bodies and cybersecurity experts. Tips for first-time attendees and the exciting social events, such as the Spree River cruises, are also discussed. Both in-person and virtual attendance options are available, ensuring no one misses out on the valuable insights and networking opportunities.Chapters00:00 Understanding Digital Identity vs. Identity and Access Management01:55 Welcome to the Identity at the Center Podcast02:03 Celebrating Milestones and Consistency03:54 Conference Discount Codes and Announcements07:13 Introducing Our Guest: Warwick Ashford07:33 Warwick's Journey into Cybersecurity and Identity11:59 The Importance of Managed Services in Cybersecurity13:34 Previewing the European Identity and Cloud Conference (EIC)16:03 Who Should Attend EIC and Why19:03 Main Themes and Tracks at EIC 202326:14 The Future of Identity Ecosystems31:59 Digital Credential Services Workshop32:22 Focus on Identity Fabrics32:52 Keynote Sessions and Presentations33:15 Involvement of Various Organizations33:56 Award Winners and Their Contributions35:34 Virtual Ticket Option and Its Benefits37:41 After Hours Events and Networking40:17 EIC Awards and Finalists42:06 Notable Speakers and Topics44:46 Tips for First Timers49:51 AI in Cybersecurity51:41 Digital Identity vs. Identity and Access Management57:07 Identity's Role in Cybersecurity01:00:13 Conclusion and Wrap-UpConnect with Warwick: https://www.linkedin.com/in/warwickashford/Conference Discounts!Gartner IAM Summit - Code IDAC425 saves 425€: https://www.gartner.com/en/conferences/emea/identity-access-management-ukEuropean Identity and Cloud Conference 2025 - Use code idac25mko for 25% off: https://www.kuppingercole.com/events/eic2025?ref=partneridacIdentiverse 2025 - Use code IDV25-IDAC25 for 25% off: https://identiverse.com/Connect with us on LinkedIn:Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/Visit the show on the web at http://idacpodcast.comKeywordsIdentity, Cybersecurity, EIC, Managed Services, Decentralized Identity, Networking, Conferences, Identity Ecosystems, Workshops, Keynotes, EIC, digital identity, cybersecurity, virtual ticket, networking, awards, keynote speakers, AI, IAM, conference tips

Mar 17, 2025 • 58min
#337 - Adaptive Authentication and Fraud Prevention with Ping’s Patrick Harding
Patrick Harding, Chief Product Architect at Ping Identity, shares insights into adaptive authentication and the future of fraud prevention. He discusses the evolution from traditional cybersecurity to identity management, highlighting challenges in SaaS applications. The conversation delves into the benefits of OpenID Connect over SAML for seamless authentication. Harding also explores the role of AI agents in enhancing security while addressing potential job implications. Plus, he offers valuable networking tips for tech conferences!

Mar 10, 2025 • 48min
#336 - IDAC Mailbag - March 2025 Edition
In this episode of the Identity at the Center Podcast, Jeff and Jim tackle questions from listeners around the world, including: "What certifications or skills would you recommend focusing on in 2025?" "What are some of the most common mistakes companies make when rolling out MFA, and how can they avoid them?" and "How should small and mid-sized businesses approach IAM when they don’t have the same resources as large enterprises?" Thanks to Ryan, Diego, and Omar for sending these in!Chapters00:00 The Unsustainable Strategy of Heroism01:48 Introducing the Identity at the Center Podcast02:04 Travel Tales and Tech Tips09:57 Listener Mailbag: Career Advice for IAM Professionals19:20 Global Listener Stats and MFA Rollout Mistakes24:30 Exploring MFA Options24:56 Common MFA Mistakes25:13 The Importance of Coverage25:44 Humorous Interlude26:00 Understanding MFA Factors26:29 Avoiding Knowledge-Based Authentication26:50 Self-Serve MFA Resets27:31 Productizing IAM28:35 Listener Question: SMB IAM Strategies31:35 Balancing Security Investments32:07 Staffing and Technology Considerations35:54 The Role of Cyber Insurance43:10 Historical Figure Swap47:10 Wrapping Up and Listener AppreciationConference Discounts!Gartner IAM Summit - Code IDAC425 saves 425€: https://www.gartner.com/en/conferences/emea/identity-access-management-ukEuropean Identity and Cloud Conference 2025 - Use code idac25mko for 25% off: https://www.kuppingercole.com/events/eic2025?ref=partneridacIdentiverse 2025 - Use code IDV25-IDAC25 for 25% off: https://identiverse.com/Connect with us on LinkedIn:Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/Visit the show on the web at http://idacpodcast.com

Mar 6, 2025 • 48min
#335 - Sponsor Spotlight - Beyond Identity
This episode is sponsored by Beyond Identity. Visit https://www.beyondidentity.com/idac to learn more.In this sponsored episode of the Identity at the Center podcast, Jeff and Jim host Sarah Cecchetti, Director of Product Strategy at Beyond Identity. They discuss the transition away from password-based systems to more secure, passwordless authentication methods. Sarah explains the unique differentiators of Beyond Identity, their integration with security tools, and how they leverage cryptographic keys stored in device secure enclaves. The conversation covers user resistance to biometrics, deployment strategies, and the importance of shared security signals. Sarah also shares personal anecdotes about her backpacking trip across Spain and informs listeners about upcoming events like BeyondCon, featuring live demos and a private performance of Broadway hits.Chapters00:00 Introduction to Passwordless Authentication00:34 What Makes Beyond Identity Unique?01:35 Welcome to the Identity at the Center Podcast02:01 Introduction of Sarah Cecchetti03:04 Beyond Identity's Approach to Authentication09:31 Balancing Security and Usability16:00 Use Cases and Customer Success Stories19:15 Technical Insights and Future Directions24:32 Understanding Customer Policy Changes24:48 Real-World Scenarios of Shared Signals25:10 Implementing Shared Signals in Security27:47 Policy Simulation and Auditing28:31 Addressing Identity-Based Threats29:57 The Future of Passwordless Security33:56 Challenges in Identity Deployment37:49 BeyondCon and Industry Events41:12 Personal Adventures and Reflections46:42 Final Thoughts and FarewellConnect with Sarah: https://www.linkedin.com/in/sarahcecchetti/Learn more about Beyond Identity: https://www.beyondidentity.com/idacBeyond Con: https://insights.beyondidentity.com/beyondcon-west-2025/aboutConnect with us on LinkedIn:Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/Visit the show on the web at idacpodcast.com and watch at https://www.youtube.com/@idacpodcast

Mar 3, 2025 • 1h 11min
#334 - Identiverse 2025 Preview with Andi Hindle
Get an insider's look at Identiverse with special guest Andi Hindle, the conference chair, on this episode of 'Identity at the Center.' Andi joins Jeff and Jim to discuss the upcoming Identiverse 2025 in Las Vegas, highlighting key sessions, workshops, and keynote speakers. They explore the significance of industry conferences, delve into non-human identities, and more. Plus, tips for maximizing your conference experience and enjoying Las Vegas!Chapters00:00 Engaging with Industry Experts01:26 Welcome to the Identity at the Center Podcast01:38 Morning Banter and LinkedIn Insights02:13 Gartner's Framework on Non-Human Identities06:14 Conferences and Networking Opportunities06:43 Upcoming Identity and Cloud Conferences08:42 Identiverse 2025 Preview with Andi Hindle15:53 The Importance of New Voices in Identity20:44 Navigating the Identiverse Agenda36:19 AI Experimentation and Side Projects37:12 Pre-Registration and Conference Workshops39:44 Key Workshop Topics and Industry Trends48:00 Keynote Speakers and Main Stage Highlights54:33 After Hours and Networking Events58:07 Exploring Las Vegas: Tips and Recommendations01:08:32 Final Thoughts and Wrap-UpConnect with Andi: https://www.linkedin.com/in/ahindleIdentiverse 2025 - Use code IDV25-IDAC25 for 25% off: https://identiverse.com/Conference Discounts!Gartner IAM Summit - Code IDAC425 saves 425€: https://www.gartner.com/en/conferences/emea/identity-access-management-ukEuropean Identity and Cloud Conference 2025 - Use code idac25mko for 25% off: https://www.kuppingercole.com/events/eic2025?ref=partneridacConnect with us on LinkedIn:Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/Visit the show on the web at http://idacpodcast.com

Feb 24, 2025 • 1h 4min
#333- Navigating Identity in the Automotive Industry with Andrew Cameron
Andrew Cameron, Technical Fellow in Identity and Access Management at General Motors, shares his decades-long IAM journey. He discusses passwordless adoption and passkeys, building scalable customer identity platforms and centralized profiles, the rise of car accounts and in-vehicle identity, handling complex B2B delegated admin, and how AI and edge performance shape mission-critical automotive identity.


