#382 - Sponsor Spotlight - HYPR

#382 - Sponsor Spotlight - HYPR

This episode is sponsored by HYPR. Visit hypr.com/idac to learn more.

In this episode from Authenticate 2025, Jim McDonald and Jeff Steadman are joined by Bojan Simic, Co-Founder and CEO of HYPR, for a sponsored discussion on the evolving landscape of identity and security.

Bojan shares his journey from software engineer to cybersecurity leader and dives into the core mission of HYPR: providing fast, consistent, and secure identity controls that complement existing investments. The conversation explores the major themes from the conference, including the push for passkey adoption at scale and the challenge of securely authenticating AI agents.

A key focus of the discussion is the concept of "Know Your Employee" (KYE) in a continuous manner, a critical strategy for today's remote and hybrid workforces. Bojan explains how the old paradigm of one-time verification is failing, especially in the face of sophisticated, AI-powered social engineering attacks like those used by Scattered Spider. They discuss the issue of "identity sprawl" across multiple IDPs and why consolidation isn't always the answer. Instead, Bojan advocates for a flexible, best-of-breed approach that provides a consistent authentication experience and leverages existing security tools.


Connect with Bojan: https://www.linkedin.com/in/bojansimic/

Learn more about HYPR: https://www.hypr.com/idac


Connect with us on LinkedIn:

Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/

Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/

Visit the show on the web at idacpodcast.com


Chapter Timestamps:

00:00 - Introduction at Authenticate 2025

00:23 - Sponsored Episode Welcome: Bojan Simic, CEO of HYPR

01:11 - How Bojan Simic Got into Identity and Cybersecurity

02:10 - The Elevator Pitch for HYPR

04:03 - The Buzz at Authenticate 2025: Passkeys and Securing AI Agents

05:29 - The Trend of Continuous "Know Your Employee" (KYE)

07:33 - Is Your MFA Program Enough Anymore?

09:44 - Hackers Don't Break In, They Log In: The Scattered Spider Threat

11:19 - How AI is Scaling Social Engineering Attacks Globally

13:08 - When a Breach Happens, Who's on the Hook? IT, Security, or HR?

16:23 - What is the Right Solution for Identity Practitioners?

17:05 - The Critical Role of Internal Marketing for Technology Adoption

22:27 - The Problem with Identity Sprawl and the Fallacy of IDP Consolidation

25:47 - When is it Time to Move On From Your Existing Identity Tools?

28:16 - The Role of Document-Based Identity Verification in the Enterprise

32:31 - What Makes HYPR's Approach Unique?

35:33 - How Do You Measure the Success of an Identity Solution?

36:39 - HYPR's Philosophy: Never Leave a User Stranded

39:00 - Authentication as a Tier Zero, Always-On Capability

40:05 - Is Identity Part of Your Disaster Recovery Plan?

41:36 - From the Ring to the C-Suite: Bojan's Past as a Competitive Boxer

47:03 - How to Learn More About HYPR


Keywords:

IDAC, Identity at the Center, Jeff Steadman, Jim McDonald, Bojan Simic, HYPR, Passkeys, Know Your Employee, KYE, Continuous Identity, Identity Verification, Authenticate 2025, Phishing Resistant, Social Engineering, Scattered Spider, AI Security, Identity Sprawl, Passwordless Authentication, FIDO, MFA, IDP Consolidation, Zero Trust, Cybersecurity, IAM, Identity and Access Management, Enterprise Security

Jaksot(392)

#120 - Authenticate 2021 - The Passwordless Journey with Andrew Vitollo

#120 - Authenticate 2021 - The Passwordless Journey with Andrew Vitollo

This is the fourth in a five-part series of conversations that Jeff had with fellow identity professionals at the FIDO Alliance Authenticate 2021 conference. Jeff talks with Andrew Vitollo, Senior Product Manager at Trusona, about his identity background and the journey towards passwordless. Connect with Andrew Vitollo: https://www.linkedin.com/in/andrewvitollo/ Learn more about Trusona: https://www.trusona.com/ Learn more about the FIDO Alliance: https://fidoalliance.org/ Connect with us on LinkedIn: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show at www.IdentityAtTheCenter.comand follow @IDACPodcast on Twitter. Have a question for Jim and Jeff? Ask us here: https://anchor.fm/identity-at-the-center/message

28 Loka 202139min

#119 - Authenticate 2021 - Identity Security Strategy with Bob Lord

#119 - Authenticate 2021 - Identity Security Strategy with Bob Lord

This is the third in a five-part series of conversations that Jeff had with fellow identity professionals at the FIDO Alliance Authenticate 2021 conference. Jeff talks with Bob Lord, former CSO for the Democratic National Committee, about the role identity plays in security strategy. Connect with Bob Lord: https://www.linkedin.com/in/lordbob/ Learn more about the FIDO Alliance: https://fidoalliance.org/ Connect with us on LinkedIn: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show at www.IdentityAtTheCenter.comand follow @IDACPodcast on Twitter. Have a question for Jim and Jeff? Ask us here: https://anchor.fm/identity-at-the-center/message

27 Loka 202141min

#118 - Authenticate 2021 - FIDO Developer Challenge

#118 - Authenticate 2021 - FIDO Developer Challenge

This is the second in a five-part series of conversations that Jeff had with fellow identity professionals at the FIDO Alliance Authenticate 2021 conference. Jeff talks with Andrew Shikiar, Executive Director of the FIDO Alliance, Joon Hyuk Lee, Head of the FIDO Developer Challenge, Bhaskar Deo, CEO & Co-Founder of Trillbit, and Aaron Brighton, Founder of Lockdrop about the FIDO Developer challenge and how application developers like Bhaskar and Aaron leveraged FIDO authentication for their submissions. Connect with Andrew Shikiar: https://www.linkedin.com/in/andrewshikiar/ Connect with Joon Hyuk Lee: https://www.linkedin.com/in/jnhklee/ Connect with Bhaskar Deo: https://www.linkedin.com/in/bhaskar-deo-b2300711/ Connect with Aaron Brighton: https://www.linkedin.com/in/aaronbrighton/ Learn more about the FIDO Alliance: https://fidoalliance.org/ Learn more about Trillbit: https://www.trillbit.com/ Learn more about Lockdrop: https://lockdrop.com/ Connect with us on LinkedIn: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show at www.IdentityAtTheCenter.comand follow @IDACPodcast on Twitter. Have a question for Jim and Jeff? Ask us here: https://anchor.fm/identity-at-the-center/message

26 Loka 202135min

#117 - Authenticate 2021 - IAM's Accessibility Problem with Arynn Crow

#117 - Authenticate 2021 - IAM's Accessibility Problem with Arynn Crow

This is the first in a five-part series of conversations that Jeff had with fellow identity professionals at the FIDO Alliance Authenticate 2021 conference. Jeff talks with Arryn Crow, Senior Technical Program Manager for AWS Identity about how to make the IAM field more inclusive and accessible. Connect with Arryn Crow: https://www.linkedin.com/in/arynn-crow-821761103/ Learn more about the FIDO Alliance: https://fidoalliance.org/ Connect with us on LinkedIn: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show at www.IdentityAtTheCenter.comand follow @IDACPodcast on Twitter. Have a question for Jim and Jeff? Ask us here: https://anchor.fm/identity-at-the-center/message

25 Loka 202124min

#116 - The 2021 ForgeRock Consumer Identity Breach Report with Eve Maler

#116 - The 2021 ForgeRock Consumer Identity Breach Report with Eve Maler

Jim and Jeff talk with Eve Maler, ForgeRock's Chief Technology Officer and Chief UMAanitarian, about the 2021 ForgeRock Consumer Identity Breach Report and discuss some of the key findings including why the Healthcare sector continues to be targeted. Connect with Eve on LinkedIn: https://www.linkedin.com/in/evemaler/ Eve's Twitter: https://twitter.com/xmlgrrl ForgeRock 2021 Consumer Identity Breach Report: https://www.forgerock.com/resources/2021-consumer-identity-breach-report NIST 800-207 Zero Trust: https://csrc.nist.gov/publications/detail/sp/800-207/final Identity Unlocked Podcast: https://identityunlocked.auth0.com/public/49/Identity%2C-Unlocked.--bed7fada Connect with Jim and Jeff on LinkedIn here: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show at www.IdentityAtTheCenter.comand follow @IDACPodcast on Twitter. Have a question for Jim and Jeff? Ask us here: https://anchor.fm/identity-at-the-center/message

18 Loka 202158min

#115 - The Cloud is Different with John Morton

#115 - The Cloud is Different with John Morton

Jim and Jeff talk with John Morton, Director of Solutions Engineering at Britive, about why managing IAM for the cloud is different and the challenges it brings to IAM programs. Connect with John on LinkedIn: https://www.linkedin.com/in/johnmortonnotromnhoj/ Learn more about Britive: https://www.britive.com/ Protiviti Webinar "Why IAM Fails: How to Develop an IAM Program That Works": https://gateway.on24.com/wcc/eh/783829/lp/3384356/why-iam-fails-how-to-develop-an-iam-program-that-works/?isSocialSharing=Y&partnerref=emailShareFromGateway Authenticate 2021: https://authenticatecon.com/event/authenticate-2021-conference/ Connect with Jim and Jeff on LinkedIn here: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show at www.IdentityAtTheCenter.comand follow @IDACPodcast on Twitter. Have a question for Jim and Jeff? Ask us here: https://anchor.fm/identity-at-the-center/message

11 Loka 202155min

#114 - Getting into IAM with Andrew Chanthaphone

#114 - Getting into IAM with Andrew Chanthaphone

Jim and Jeff talk with Andrew Chanthaphone, Manager with Edgile's Identity Service Line, about getting into the IAM space and things to consider for running successful IAM projects. Connect with Andrew on LinkedIn: https://www.linkedin.com/in/andrewchanthaphone/ Check out Andrew's YouTube "All Things IAM": https://www.youtube.com/channel/UCQt1akSIv5b8GW6yp2sQzjw Andrew's Identity and Access Management 101 Webinar for CSNP: https://youtu.be/vI-vTE4TB3s Connect with Jim and Jeff on LinkedIn here: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show at www.IdentityAtTheCenter.comand follow @IDACPodcast on Twitter. Have a question for Jim and Jeff? Ask us here: https://anchor.fm/identity-at-the-center/message

4 Loka 202151min

#113 - Third-Party Risk with Jen Kraxner

#113 - Third-Party Risk with Jen Kraxner

Jim and Jeff talk with Jennifer Kraxner, Director of Strategic Advisory at SecZetta, about the convergence of third-party risk and identity and the importance of having accurate and always up-to-date authoritative sources for all identities in the organization. Connect with Jennifer Kraxner on LinkedIn: https://www.linkedin.com/in/jenkraxner/ IAM Best Practices Blog Series: The Importance of an Authoritative Identity Source: https://www.idsalliance.org/blog/2020/09/11/iam-best-practices-blog-series-the-importance-of-an-authoritative-identity-source/ Learn more about SecZetta: https://www.seczetta.com/ Connect with Jim and Jeff on LinkedIn here: Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/ Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/ Visit the show at www.IdentityAtTheCenter.comand follow @IDACPodcast on Twitter. Have a question for Jim and Jeff? Ask us here: https://anchor.fm/identity-at-the-center/message

27 Syys 202152min