#368 - Sponsor Spotlight - P0 Security

#368 - Sponsor Spotlight - P0 Security

This episode is sponsored by P0 Security. Visit p0.dev/idac to learn why P0 is the easiest and fastest way to implement just-in-time, short-lived, and auditable access to your entire infrastructure stack, like servers, databases, Kubernetes clusters, cloud consoles, and cloud services, for users as well as non-human identities.


In this sponsor spotlight episode, Jim and Jeff are joined by Shashwat Sehgal, CEO and founder of P0 Security, to discuss the evolving challenges of privileged access management in modern, cloud-native environments. Shashwat explains how traditional PAM solutions often create friction for developers, leading to over-provisioning and security risks, and how P0 is tackling this problem with a developer-first, just in time (JIT) access model. The conversation covers the core problems with developer productivity, how P0's use of technologies like eBPF provides deep visibility and control without agents, the "Priority Zero" philosophy, and how a JIT approach simplifies audits and compliance. They also discuss the competitive landscape and what sets P0 Security apart from traditional and open-source solutions.


Learn more about P0: https://www.p0.dev/idac


Connect with Shashwat: https://www.linkedin.com/in/shashwatsehgal/


Chapter Timestamps:


00:00 - Podcast Intro


00:29 - Sponsor Introduction: P0 Security


01:38 - What is the problem P0 Security is trying to solve?


03:52 - Defining "Just-in-Time" (JIT) Access


06:21 - The challenge with traditional PAM for developers


08:23 - How P0 provides access without agents using eBPF


12:15 - What does the user experience look like?


15:58 - Supporting various infrastructure and access protocols


19:15 - How does P0 handle session recording and auditing?


22:20 - Is this a replacement for Privileged Access Management (PAM)?


26:40 - The story behind the name P0 Security


29:20 - Who is the ideal customer for P0?


33:15 - Handling break-glass scenarios


36:04 - Discussing the competitive landscape


42:30 - How is P0 deployed? (Cloud vs. On-prem)


46:50 - The future of P0 and the "Priority Zero" philosophy


50:32 - Final thoughts: "Access is our priority zero."


Connect with us on LinkedIn:


Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/


Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/


Visit the show on the web at http://idacpodcast.com


Keywords:

P0 Security, Shashwat Sagal, Privileged Access Management, PAM, Just-in-Time Access, JIT, Developer Security, Cloud-Native Security, Hybrid Cloud, eBPF, Kubernetes, IAM, Identity and Access Management, Cybersecurity, Zero Trust, Ephemeral Access, Developer Experience, IDAC, Identity at the Center, Jeff Steadman, Jim McDonald

Jaksot(392)

#176 - Authenticate 2022: Voice Is The Future with John Poirier

#176 - Authenticate 2022: Voice Is The Future with John Poirier

Jim and Jeff are on location at the FIDO Alliance Authenticate 2022 Conference and talk with John Poirier, Lead Director for CVS Health, about the role voice can play in a positive authentication experience. Connect with John: https://www.linkedin.com/in/johnpoirier/ Learn more about the VEX Robotics Competition: https://www.vexrobotics.com/competition Connect with us on LinkedIn: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show at www.IdentityAtTheCenter.com, follow @IDACPodcast on Twitter, and check out our live streams at www.idac.live

19 Loka 202249min

#175 - Authenticate 2022 Preview with Andrew Shikiar

#175 - Authenticate 2022 Preview with Andrew Shikiar

Jim and Jeff talk with Andrew Shikiar, Executive Director at the FIDO Alliance, to get a preview of the Authenticate 2022 conference kicking off today (October 17, 2022) in Seattle, Washington. Connect with Andrew: https://www.linkedin.com/in/andrewshikiar/ Authenticate 2022: https://authenticatecon.com/ FIDO Alliance: https://fidoalliance.org/ Connect with us on LinkedIn: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show at www.IdentityAtTheCenter.com, follow @IDACPodcast on Twitter, and check out our live streams at www.idac.live

17 Loka 202242min

#174 - Chrysalis 2022 with Gary Rowe

#174 - Chrysalis 2022 with Gary Rowe

Jim and Jeff talk with Gary Rowe, Founder, CEO, and Principal Consulting Analyst at TechVision Research, about the upcoming Chrysalis 2022 conference and what identity practitioners should expect. Connect with Gary: https://www.linkedin.com/in/gary-rowe-b6966523/ Chrysalis 2022: https://techvisionresearch.com/chrysalis-2022/ TechVision Research: https://techvisionresearch.com/ Connect with us on LinkedIn: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show at www.IdentityAtTheCenter.com, follow @IDACPodcast on Twitter, and check out our live streams at www.idac.live

10 Loka 202252min

#173 - Managing Social Media Accounts with Kurt Greening

#173 - Managing Social Media Accounts with Kurt Greening

Jim and Jeff talk with Kurt Greening, Head of Sales for Cerby, about things the IAM practitioners of the world should consider when managing access to social media accounts. Connect with Kurt: https://www.linkedin.com/in/kurtgreening/ Learn more about Cerby: https://www.cerby.com/ Cerby Social Media Checklist: https://go.cerby.com/take-action Authenticate 2022: https://authenticatecon.com/event/authenticate-2022-conference/ Oktane 2022: https://www.okta.com/oktane22/ Connect with us on LinkedIn: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show at www.IdentityAtTheCenter.com, follow @IDACPodcast on Twitter, and check out our live streams at www.idac.live

3 Loka 202246min

#172 - IAM in the Cloud with Jay Klauser

#172 - IAM in the Cloud with Jay Klauser

Jim and Jeff talk with Jay Klauser, Head of Global Sales Engineering and Tech Alliances with Britive, about how IAM in the cloud is different and how frameworks like CIEM (Cloud Infrastructure Entitlement Management) and DREAM (Dynamic Resource Entitlement and Access Management) are helping the IAM industry and practitioners get their arms around identity security for the public cloud. Connect with Jay on LinkedIn: https://www.linkedin.com/in/jay-klauser-0666353/ Learn more about Britive: https://www.britive.com/ Authenticate 2022: https://authenticatecon.com/event/authenticate-2022-conference/ Oktane 2022: https://www.okta.com/oktane22/ Connect with us on LinkedIn: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show at www.IdentityAtTheCenter.com, follow @IDACPodcast on Twitter, and check out our live streams at www.idac.live

26 Syys 202253min

#171 - Identity Proofing with Nishant Kaushik

#171 - Identity Proofing with Nishant Kaushik

Jim and Jeff talk with Nishant Kaushik, CTO with Uniken, about the identity proofing space including the difference between verified identity and verifiable credentials. Connect with Nishant: https://www.linkedin.com/in/nishantkaushik/ Learn more about Uniken: https://www.uniken.com/ 1Kosmos Webinar Link: https://www.1kosmos.com/event/mfa-tried-to-fix-passwords-but-how-do-we-fix-mfa/ Authenticate 2022: https://authenticatecon.com/event/authenticate-2022-conference/ Oktane 2022: https://www.okta.com/oktane22/ Connect with us on LinkedIn: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show at www.IdentityAtTheCenter.com, follow @IDACPodcast on Twitter, and check out our live streams at www.idac.live

19 Syys 20221h 9min

#170 - Fine Grained Authorization with Andres Aguiar

#170 - Fine Grained Authorization with Andres Aguiar

Jim and Jeff talk with Andres Aguiar, Product & Engineering Leader with Okta, about Fine Grained Authorization (FGA), OpenFGA, and where they fit in the authorization landscape. Connect with Andres on LinkedIn: https://www.linkedin.com/in/aaguiar/ Learn more about OpenFGA: https://openfga.dev/ Google Zanzibar Academy: https://zanzibar.academy/ 1Kosmos Webinar Link: https://www.1kosmos.com/event/mfa-tried-to-fix-passwords-but-how-do-we-fix-mfa/ Authenticate 2022: https://authenticatecon.com/event/authenticate-2022-conference/ Oktane 2022: https://www.okta.com/oktane22/ Connect with Jim and Jeff on LinkedIn here: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show at www.IdentityAtTheCenter.com, follow @IDACPodcast on Twitter, and check out our live streams at www.idac.live

12 Syys 202247min

#169 - IDAC Mailbag - Labor Day 2022 Edition

#169 - IDAC Mailbag - Labor Day 2022 Edition

Jim and Jeff answer questions from Identity at the Center listeners including traditional MFA versus man in the middle attacks, managing layered access, and why modernization is usually just a fancy word for "catching up." Connect with Jim and Jeff on LinkedIn here: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show at www.IdentityAtTheCenter.com, follow @IDACPodcast on Twitter, and check out our live streams at www.idac.live

5 Syys 202254min