#382 - Sponsor Spotlight - HYPR

#382 - Sponsor Spotlight - HYPR

This episode is sponsored by HYPR. Visit hypr.com/idac to learn more.

In this episode from Authenticate 2025, Jim McDonald and Jeff Steadman are joined by Bojan Simic, Co-Founder and CEO of HYPR, for a sponsored discussion on the evolving landscape of identity and security.

Bojan shares his journey from software engineer to cybersecurity leader and dives into the core mission of HYPR: providing fast, consistent, and secure identity controls that complement existing investments. The conversation explores the major themes from the conference, including the push for passkey adoption at scale and the challenge of securely authenticating AI agents.

A key focus of the discussion is the concept of "Know Your Employee" (KYE) in a continuous manner, a critical strategy for today's remote and hybrid workforces. Bojan explains how the old paradigm of one-time verification is failing, especially in the face of sophisticated, AI-powered social engineering attacks like those used by Scattered Spider. They discuss the issue of "identity sprawl" across multiple IDPs and why consolidation isn't always the answer. Instead, Bojan advocates for a flexible, best-of-breed approach that provides a consistent authentication experience and leverages existing security tools.


Connect with Bojan: https://www.linkedin.com/in/bojansimic/

Learn more about HYPR: https://www.hypr.com/idac


Connect with us on LinkedIn:

Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/

Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/

Visit the show on the web at idacpodcast.com


Chapter Timestamps:

00:00 - Introduction at Authenticate 2025

00:23 - Sponsored Episode Welcome: Bojan Simic, CEO of HYPR

01:11 - How Bojan Simic Got into Identity and Cybersecurity

02:10 - The Elevator Pitch for HYPR

04:03 - The Buzz at Authenticate 2025: Passkeys and Securing AI Agents

05:29 - The Trend of Continuous "Know Your Employee" (KYE)

07:33 - Is Your MFA Program Enough Anymore?

09:44 - Hackers Don't Break In, They Log In: The Scattered Spider Threat

11:19 - How AI is Scaling Social Engineering Attacks Globally

13:08 - When a Breach Happens, Who's on the Hook? IT, Security, or HR?

16:23 - What is the Right Solution for Identity Practitioners?

17:05 - The Critical Role of Internal Marketing for Technology Adoption

22:27 - The Problem with Identity Sprawl and the Fallacy of IDP Consolidation

25:47 - When is it Time to Move On From Your Existing Identity Tools?

28:16 - The Role of Document-Based Identity Verification in the Enterprise

32:31 - What Makes HYPR's Approach Unique?

35:33 - How Do You Measure the Success of an Identity Solution?

36:39 - HYPR's Philosophy: Never Leave a User Stranded

39:00 - Authentication as a Tier Zero, Always-On Capability

40:05 - Is Identity Part of Your Disaster Recovery Plan?

41:36 - From the Ring to the C-Suite: Bojan's Past as a Competitive Boxer

47:03 - How to Learn More About HYPR


Keywords:

IDAC, Identity at the Center, Jeff Steadman, Jim McDonald, Bojan Simic, HYPR, Passkeys, Know Your Employee, KYE, Continuous Identity, Identity Verification, Authenticate 2025, Phishing Resistant, Social Engineering, Scattered Spider, AI Security, Identity Sprawl, Passwordless Authentication, FIDO, MFA, IDP Consolidation, Zero Trust, Cybersecurity, IAM, Identity and Access Management, Enterprise Security

Jaksot(393)

#201 - IAM through CISO eyes with Helen Patton

#201 - IAM through CISO eyes with Helen Patton

Jim and Jeff talk with Helen Patton, Chief Information Security Officer for the CISCO Security Business Group, about her views on a range of IAM topics through her eyes as a CISO. Connect with Helen: https://www.linkedin.com/in/helenpatton/ Visit her website: https://www.cisohelen.com/ Cybersecurity Canon: https://cybersecuritycanon.com/ Connect with us on LinkedIn: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.

27 Helmi 20231h 16min

#200 - Celebrating 200

#200 - Celebrating 200

Jim and Jeff take an episode to celebrate putting out 200 episodes and talk about how the show started and where it is going before highlighting a handful of favorite episodes over the last few years. Thanks to everyone who listens, shares, and subscribes! Connect with us on LinkedIn: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.

20 Helmi 20231h 16min

#199 - Managing IAM with Sarah Cecchetti

#199 - Managing IAM with Sarah Cecchetti

Jim and Jeff talk with Sarah Cecchetti, Head of Product for AWS Cognito and co-founder and board member of IDPro, about managing IAM teams, products, projects, and everything in between. Connect with Sarah: https://www.linkedin.com/in/sarahcecchetti/ IDPro: https://idpro.org/ Connect with us on LinkedIn: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.

13 Helmi 20231h 1min

#198 - Identity BCP and DR for the Cloud with Muli Motola

#198 - Identity BCP and DR for the Cloud with Muli Motola

Jim and Jeff have a discussion with Muli Motola, Co-founder, and CEO at accSenSe, about the need to consider Business Continuity Planning (BCP) and Disaster Recovery (DR) for identity infrastructure in the cloud. Connect with Muli: https://www.linkedin.com/in/motolamuli/ Learn more about accSenSe: https://accsense.io/ Connect with us on LinkedIn: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.

6 Helmi 20231h 1min

#197 - GSA & CISA PAM Playbook with Ken Myers and Ross Foard

#197 - GSA & CISA PAM Playbook with Ken Myers and Ross Foard

Jim and Jeff talk with Ken Myers, Director in the Identity Assurance and Trusted Access Division for the GSA, and Ross Foard, IT Specialist in the INFOSEC group of Cybersecurity and Infrastructure Security Agency (CISA), about the GSA & CISA PAM Playbook. Connect with Ken: https://www.linkedin.com/in/idmken/ Connect with Ross: https://www.linkedin.com/in/ross-foard/ Privileged Identity Playbook: https://playbooks.idmanagement.gov/playbooks/pam/ Implementing a Zero Trust Architecture (2nd Preliminary Draft): https://csrc.nist.gov/publications/detail/sp/1800-35/draft Connect with us on LinkedIn: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.

30 Tammi 20231h 3min

#196 - CIAM Authentication with Mickey Boodaei

#196 - CIAM Authentication with Mickey Boodaei

Jim and Jeff talk with Mickey Boodaei, CEO and co-founder of Transmit Security, about reducing risk and fraud with modern authentication in Customer/Consumer Identity & Access Management (CIAM) platforms. Connect with Mickey: https://www.linkedin.com/in/mickeyboodaei/ Learn more about Transmit Security: https://www.transmitsecurity.com/ Events: Gartner IAM Summit: https://www.gartner.com/en/conferences/na/identity-access-management-us European Identity and Cloud Conference: https://www.kuppingercole.com/events/eic2023 Identiverse: https://identiverse.com/ Connect with us on LinkedIn: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.

23 Tammi 20231h 5min

#195 - Fully Merged Identity Security with Gabe Avner

#195 - Fully Merged Identity Security with Gabe Avner

Jim and Jeff talk with Gabe Avner, Director of Content at Authomize, about his blog post about the merging of identity security with information security. Connect with Gabe: https://www.linkedin.com/in/gabriel-avner-57a67717/ Read Gabe's article: https://www.authomize.com/blog/2022-is-the-year-that-identity-fully-merged-with-security-a-retrospective/ Learn more about Authomize: https://www.authomize.com/ Upcoming events: KuppingerCole European Identity & Cloud Conference: https://www.kuppingercole.com/events/eic2023 Identiverse 2023: https://identiverse.com/ Gartner US IAM Summit 2023: https://www.gartner.com/en/conferences/na/identity-access-management-us Connect with us on LinkedIn: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.

16 Tammi 202348min

#194 - IAM AMA with Martin Kuppinger

#194 - IAM AMA with Martin Kuppinger

Jim and Jeff talk with Martin Kuppinger, Founder and Principal Analyst at KuppingerCole Analysts, about a wide range of IAM topics in the first episode of 2023. Connect with Martin: https://www.linkedin.com/in/martinkuppinger/ Learn more about KuppingerCole: https://www.kuppingercole.com/ KuppingerCole European Identity & Cloud Conference: https://www.kuppingercole.com/events/eic2023 Identiverse 2023: https://identiverse.com/ Gartner US IAM Summit 2023: https://www.gartner.com/en/conferences/na/identity-access-management-us IDPro Words of Identity: https://bok.idpro.org/article/id/86/ Connect with us on LinkedIn: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.

9 Tammi 202350min