#436 - Sponsor Spotlight - P0 Security

#436 - Sponsor Spotlight - P0 Security

In this Sponsor Spotlight episode, Jeff Steadman flies solo and welcomes Greg Danyi, co-founder and CTO of P0 Security, to the show. Greg walks through P0's approach to runtime access control, covering how it applies to humans, non-human identities, and AI agents alike. The conversation digs into the difference between authentication and authorization, why zero standing privilege is more achievable now than before agentic adoption took hold, and how dynamic, evidence-based policies can reduce reliance on manual approvals. Greg also shares real examples, including row-level access control for data lakes and a CRM mishap that shows how easily agents can misinterpret intent. The episode closes with a look at where enterprise AI agent governance may be headed over the next few years, plus a lighter conversation about explaining IAM to a 10-year-old. This episode is made possible through the generous support of P0 Security as part of IDAC's nonprofit Sponsor Spotlight series. Learn more at p0.dev/idac.



Connect with Greg (Gergely): https://www.linkedin.com/in/gergely-danyi/

Learn more about P0: https://p0.dev/idac/



Connect with us on LinkedIn:


Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/


Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/


Visit the show on the web at http://idacpodcast.com



00:00 - Introduction and sponsor acknowledgment

01:13 - Greg Danyi's path into IAM

02:18 - What P0 Security solves for

03:21 - Where P0 fits versus PAM and IGA

04:46 - Agentic identity as a driver of adoption

05:27 - MCP servers and unpredictable agent actions

07:10 - Defining runtime access control

08:50 - How authentication and authorization work together

09:07 - Standing access versus expressed intent

10:16 - Zero standing privilege in practice

12:27 - Agentic identity as a distinct identity class

19:24 - Automated evidence for approvals

20:42 - Walking through a support agent example

22:13 - Row-level access control for data lakes

23:35 - Dynamic roles explained

29:55 - CRUD risks and underestimated concerns

31:32 - Human intent and giving agents clear direction

36:32 - Where enterprise AI agent governance is headed

39:36 - Advice for CIOs and CISOs getting started

41:15 - Explaining IAM to a 10-year-old

42:29 - Board games, dice, and calculated risk

44:00 - Closing thoughts and where to learn more



Keywords: IDAC, Identity at the Center, Jeff Steadman, Jim McDonald, Greg Danyi, P0 Security, runtime access control, agentic identity, zero standing privilege, non-human identity, authentication, authorization, IAM podcast


Tämä jakso on lisätty Podme-palveluun avoimen RSS-syötteen kautta eikä se ole Podmen omaa tuotantoa. Siksi jakso saattaa sisältää mainontaa.

Jaksot(447)

#447 - Authenticate 2026 Preview with Andi Hindle

#447 - Authenticate 2026 Preview with Andi Hindle

Jeff Steadman sits down with Andi Hindle, conference chair for Authenticate 2026, for a preview of this year's event. Making his seventh appearance on the show, Andi walks through how Authenticate has...

14 Syys 1h 16min

#446 - Rethinking Identity for AI Agents with Rick Scot

#446 - Rethinking Identity for AI Agents with Rick Scot

Rick Scot, Global CIO and CISO at Elevate Textiles, joins Jim and Jeff to talk about how he went from leading a data team to holding both the CIO and CISO seats at a global manufacturing company. Rick...

7 Syys 1h 10min

#445 - Sponsor Spotlight - Twine Security

#445 - Sponsor Spotlight - Twine Security

Jim McDonald hosts this Sponsor Spotlight episode of Identity at the Center, made possible with support from Twine Security. Jim is joined by Benny Porat, co-founder and CEO of Twine Security and prev...

2 Syys 52min

#444 - August 2026 Mailbag

#444 - August 2026 Mailbag

Jeff and Jim open with the unavoidable topic of AI agents and the tension between enabling innovation and governing agent permissions, then run through a packed fall conference schedule. The August ma...

31 Elo 49min

#443 - Ghosts in the Machine with John Huyette and Omer Arshed

#443 - Ghosts in the Machine with John Huyette and Omer Arshed

Jeff and Jim are joined by John Huyette, AI Risk Leader at RSM, and Omer Arshed, North American Digital Identity Leader at RSM, to explore how identity controls can help organizations manage the growi...

24 Elo 1h 13min

#442 - Identiverse 2026 - Identity After Dark with Bravura Security

#442 - Identiverse 2026 - Identity After Dark with Bravura Security

Recorded live at Identiverse 2026 in Las Vegas on June 17, Jeff and Jim are joined by Bart Allan, General Manager at Bravura Security, for a live recording with a studio audience. In a late-night talk...

19 Elo 1h 29min

#441 - Identiverse 2026 - Sachini Siriwardene and Ian Glazer

#441 - Identiverse 2026 - Sachini Siriwardene and Ian Glazer

Live from Identiverse 2026 in Las Vegas, Jeff and Jim sit down with Sachini Siriwardene, winner of this year's Kim Cameron Award, along with Ian Glazer of the Digital Identity Advancement Foundation (...

17 Elo 37min

#440 - Identiverse 2026 - Mike Kiser

#440 - Identiverse 2026 - Mike Kiser

Recorded live at Identiverse 2026, Jeff and Jim sit down with returning guest Mike Kiser, Director of Strategy and Standards at SailPoint, for a wide-ranging conversation that spans two of the standar...

10 Elo 52min