#329 - Discovering Effective User Access Reviews with Stephen Washington

#329 - Discovering Effective User Access Reviews with Stephen Washington

In this episode of the Identity at the Center podcast, hosts Jeff and Jim discuss the vital role of user access reviews, device identity, and the evolving landscape of Identity Access Management (IAM) with guest Stephen Washington, Head of IAM at Discover Financial. The conversation delves into regulatory compliance, the use of AI in IAM, and practical steps for improving user access certifications. They also explore the importance of managing service accounts, innovations in IGA, and the role of identity in modern cybersecurity frameworks. The episode wraps up on a lighter note with a chat about fitness challenges like Tough Mudder and personal cheese preferences for grilled cheese sandwiches.


Chapters

00:00 Introduction to Regulatory Compliance in Financial Services 01:54 Welcome to the Identity at the Center Podcast 02:07 Exploring Device Identity 03:19 The Role of Identity in Modern Security 06:44 Engaging with the IAM Community 10:31 Upcoming Conferences and Events 13:58 Interview with Stephen Washington 25:36 The Importance of User Access Reviews 33:55 Backend Changes in IGA Systems 35:04 The Concept of Identity Data Lake 36:37 AI and Identity Fatigue 37:22 Importance of Identity Hygiene 38:32 Challenges with Access Reviews 39:42 Regulatory Compliance and Policy Changes 41:06 Advice for Practitioners on Access Reviews 45:47 NYDFS and User Access Reviews 47:41 The Role of NIST Cybersecurity Framework 52:35 Training Auditors and Policy-Based Access Control 57:38 Fitness and Stress Relief 01:05:38 Grilled Cheese and Final Thoughts


Connect with Stephen: https://www.linkedin.com/in/stephen-washington-jr-5569b57/


Gartner IAM Summit - Code IDAC425 saves 425€: https://www.gartner.com/en/conferences/emea/identity-access-management-uk

European Identity and Cloud Conference 2025 - Use code idac25mko for 25% off: https://www.kuppingercole.com/events/eic2025?ref=partneridac

Identiverse 2025 - Use code IDV25-IDAC25 for 25% off: https://identiverse.com/


Connect with us on LinkedIn:

Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/

Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/

Visit the show on the web at http://idacpodcast.com

Jaksot(396)

Identity at the Center #52 - Jackson Shaw, IAM Jedi

Identity at the Center #52 - Jackson Shaw, IAM Jedi

Jim and Jeff talk with an IAM Knight of the Old Republic, Jackson Shaw, about his 36 years in the IAM space, some of his observations over the years, and the intersection of IT Service Management (ITSM) platforms and Identity Governance & Administration (IGA) technologies. Connect with Jackson on LinkedIn here: https://www.linkedin.com/in/jshaw Follow Jackson on Twitter @JacksonShaw "Jackson’s List of Things About IAM"™ (Working Title): Conferences & Organizations: Martin Kuppinger & KuppingerCole – Their conferences (identity, CIAM, security) and YouTube channel – www.kuppingercole.com Gary Rowe & Techvision Research - https://techvisionresearch.com/ Gartner – www.gartner.com Forrester – www.forrester.com Identiverse conference – www.identiverse.com IDPro – www.idpro.com Books: Powerful, Patty McCord Death by Meeting, Patrick Lencioni Steve Jobs, Walter Isaacson Surrounded by Idiots, Thomas Erikson Power Presentations, Jerry Weissman & his website www.besuasive.com Visit the show at www.IdentityAtTheCenter.com and follow @IDACPodcast on Twitter.

13 Heinä 202054min

Identity at the Center #51 - Insider Threat with Phil from Preempt

Identity at the Center #51 - Insider Threat with Phil from Preempt

Jim, Jeff, and special guest Phil Meneses from Preempt Security talk about insider threat and an upcoming report that Preempt is releasing about the hidden risks of workforce identities. Click here to access the Preempt Whitepaper "2020 Identity Risk Infographic": https://www.preempt.com/white-paper/2020-identity-risk-infographic/ Visit Preempt Security here: https://www.preempt.com/identity-information-detect-threats/ Connect with Phil on LinkedIn here: https://www.linkedin.com/in/philmeneses/ Visit the show at www.IdentityAtTheCenter.com and follow @IDACPodcast on Twitter.

6 Heinä 202041min

Identity at the Center #50 - It's Our Birthday!

Identity at the Center #50 - It's Our Birthday!

Jim and Jeff talk almost nothing about IAM and instead reflect on the show turning 1, some of their favorite episodes from the first year, a new show website, and what to expect in the future of the podcast. Visit the show at www.IdentityAtTheCenter.com and follow @IDACPodcast on Twitter.

29 Kesä 202034min

Identity at the Center #49 - Role Mining Lessons Learned

Identity at the Center #49 - Role Mining Lessons Learned

Jim and Jeff talk with IAM Architect and fellow Identropian Helio Gomez about the lessons they have all learned when it comes to role mining and engineering. Thanks to listener Andrew C. for the topic suggestion! Connect with Helio here: https://www.linkedin.com/in/helio-gomez-1507765/ Connect with Jim and Jeff on LinkedIn here: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Email the show at questions@identityatthecenter.com or send us a message on LinkedIn.

22 Kesä 202042min

Identity at the Center #48 - Eve Maler, IAM UMAnitarian

Identity at the Center #48 - Eve Maler, IAM UMAnitarian

Jim and Jeff talk with Eve Maler, CTO at ForgeRock about her work in the IAM space which includes helping found standards like XML and UMA, why we think blockchain identity is over-hyped, and some of the highlights of the recently released ForgeRock 2020 Consumer Identity Breach Report. 2020 ForgeRock Consumer Identity Breach Report: https://www.forgerock.com/resources/2020-consumer-identity-breach-report ForgeRock ROI Calculator: https://www.forgerock.com/roi-calculator/ Find Eve here: Twitter: https://twitter.com/xmlgrrl LinkedIn: https://www.linkedin.com/in/evemaler/ Connect with Jim and Jeff on LinkedIn here: Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Email the show at questions@identityatthecenter.com or send us a message on LinkedIn.

15 Kesä 202050min

Identity At The Center #47 - IAM Program Drivers & Requirements

Identity At The Center #47 - IAM Program Drivers & Requirements

Jim and Jeff talk about IAM Program Drivers & Requirements and which comes first. LastPass Report: https://www.lastpass.com/identity-and-access-management-by-industry Connect with Jim and Jeff on LinkedIn here: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Email the show at questions@identityatthecenter.com or send us a message on LinkedIn.

8 Kesä 202052min

Identity At The Center #46 – The 2020 KuppingerCole Leadership Compass for Privileged Access Management

Identity At The Center #46 – The 2020 KuppingerCole Leadership Compass for Privileged Access Management

Jim and Jeff talk about some of the findings in the recently released 2020 KuppingerCole Leadership Compass for Privileged Access Management. Grab the report from any of these leading vendors (in alphabetical order): BeyondTrust: https://www.beyondtrust.com/resources/whitepapers/kuppingercole-leadership-compass-privilege-management CyberArk: https://lp.cyberark.com/kuppingercole-leadership-compass-pam-2020.html Thycotic: https://thycotic.com/why-thycotic/analysts-opinions/kuppingercole-leadership-compass-report/ Identiverse 2020 Conference Link: https://identiverse.com/ Connect with Jim and Jeff on LinkedIn here: Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Email the show at questions@identityatthecenter.com or send us a message on LinkedIn.

1 Kesä 202056min

Identity At The Center #45 - The 2020 Verizon Data Breach Investigations Report

Identity At The Center #45 - The 2020 Verizon Data Breach Investigations Report

Jim and Jeff talk about some of the findings in the recently released 2020 Verizon Data Breach Investigations Report (link below). Report link: https://enterprise.verizon.com/resources/reports/dbir/ Identiverse 2020 Conference Link: https://identiverse.com/ Connect with us on LinkedIn: Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Email your questions, suggestions, and topic requests to the show at questions@identityatthecenter.com

25 Touko 202050min