Enforcing Anthropic’s Zero Trust for AI Agents Framework
More than two-thirds of organizations suspect AI agents have already accessed data beyond their intended scope, according to the 2026 State of AI Agent Identity Security report. That finding highlights...
View ArticleImplementing the Gold Standard: A Roadmap for Dynamic Ephemeral Credentials
Introduction Companion Document: This implementation guide builds on the concepts and benefits described in “Dynamic Ephemeral Credentials: The Gold Standard of Modern Machine IAM.” Transforming from...
View ArticleNew Research Shows AI Agents Are Outpacing Identity Security
The security conversation around AI agents often focuses on what the models can do. Far less attention has been paid to how those agents are being connected to enterprise systems, what they can access...
View ArticleWhen your Snowflake AI agent can query everything you can query
Cortex reached general availability in November 2025, with Cortex Code following in February 2026. These capabilities allow organizations to deploy AI agents that can query structured and unstructured...
View ArticleClaude didn’t go rogue. Permissions did.
On Friday April 25, 2026, a Cursor agent running Claude Opus 4.6 deleted PocketOS’s entire production database and all volume-level backups in a single API call to Railway. It took nine seconds. The AI...
View ArticleThe Identity Risks of Vibe Coding
In a nutshell “Vibe coding” is becoming a common development pattern. It lowers the barrier to building functional software, which is genuinely useful. It also produces a category of identity and...
View ArticleDynamic Ephemeral Credentials: The Gold Standard of Modern Workload IAM
Introduction: Knowing Better, But Not Doing Better Every security professional knows that hardcoded API keys are dangerous. Every IAM leader understands that static credentials pose significant risks....
View ArticleWhat Cybersecurity Can Learn from the Adolescent Brain
Introduction Cybersecurity is often framed as a technical discipline focused on software vulnerabilities, network defenses, and encryption protocols. However, many successful cyberattacks exploit not...
View ArticleWhat Is Privileged Access Management (PAM)?
The Ultimate Guide to Securing the Keys to Your Kingdom in 2026 If you’ve spent any time in cybersecurity lately, you’ve probably heard the term “PAM” thrown around a lot. No, we’re not talking about a...
View ArticleThe AI Agent Problem Nobody’s Talking About: Privileged Access for Non-Human...
The AI Agent Problem Nobody’s Talking About: Privileged Access for Non-Human Workers Every organization rushing to deploy AI agents is about to run into a problem that looks familiar but is actually...
View ArticleClose Hidden Gaps in Enterprise Password Management
This blog was originally published at this link. For compliance leaders and CIOs, password policy failures are often silent but dangerous. Across all industries, overlooked compliance gaps can quietly...
View ArticleAI agents are forcing a reckoning with identity and control
This blog was originally published here. Most organizations never planned for AI to start making real decisions. They started with simple helpers. An agent answered basic questions or generated small...
View ArticleThe State of Identity Governance in 2026: Why Boards Think Access Is Under...
In many organizations, identity governance appears healthy at the executive level. Provisioning SLAs are met. Access reviews complete on time. Audit findings are addressed. Yet identity-related...
View ArticleBeneath the AI iceberg: The forces reshaping work and security
This blog was originally published here. In conversations about AI, there’s a tendency to treat the future like a horizon we’re walking toward, always somewhere ahead, always a question of when. But if...
View ArticleWhy Modern MFA Keeps Failing and Why Assured Identity is the Next Security...
Introduction For most of cybersecurity’s history, attackers were forced to break into systems. They exploited software vulnerabilities, bypassed perimeter defenses, and escalated privileges once...
View ArticleEnterprise Password Management for the Breach Era
This blog was originally published here. Credential breaches are a top concern for IT Directors and CISOs across every industry. When attackers compromise user credentials at scale, the ability to...
View ArticleAzure AI Studio and Azure OpenAI
The rapid evolution of AI, particularly with powerful platforms like Azure AI Studio and Azure OpenAI, presents an exciting frontier for innovation. However, as I’ve explored in previous posts on...
View ArticleClose the NHI Governance Gap
We’ve spent the better part of the last decade tightening our grip on workforce authentication. SSO is widespread. MFA is table stakes. Access reviews, offboarding workflows, and role-based policies...
View ArticleIdentity and Access Management and Identity Governance Explained
Mitigating identity-related access risks is critical as organizations face evolving threats daily. As businesses shift to multi-cloud and hybrid environments, identity sprawl such as shadow IT and...
View ArticleFrom Chatbots to Agents: The Evolution Toward Agentic AI
The chatbot that once asked “Press 1 for billing” can now autonomously process your refund, update your account, and schedule a follow-up call. What we’re witnessing is the fourth major evolution in...
View Article