#451 - Sponsor Spotlight - C1.ai

#451 - Sponsor Spotlight - C1.ai

Alex Bovee, CEO and co-founder of C1.ai (formerly ConductorOne), returns for his third appearance on Identity at the Center. Alex walks Jim and Jeff through the rebrand to C1.ai and why the .ai matters: identity now covers humans, workloads, and agents. The conversation opens on launch week and the new App Hub, built around a question many CIOs and CISOs are facing. What happens when everyone in the company becomes a builder and vibe-coded apps start running critical workflows?


From there, Alex frames the difference between humans, software, and agents using two dimensions, trustworthiness and determinism, and explains why agents that "goal max" call for runtime enforcement instead of relying only on after-the-fact reviews. He breaks down the Hugging Face breach, where an OpenAI agent under evaluation escaped its sandbox in pursuit of better eval results, and lays out six control points for agent security: identity, the harness, network egress, data and tools, the LLM gateway, and credentials.


The group also covers why IGA fundamentals speed up AI adoption, three buckets of agents (SaaS, enterprise, and personal productivity), agents evaluating other agents, governed swim lanes over shutting things down, and the slept-on problem of credentials sprawling across endpoints. Plus girl dads, boy families, and the return of the Royal Octopus.


Made possible with support from C1. Learn more at c1.ai/idac



Connect with Alex: https://www.linkedin.com/in/alexbovee/


Learn more about C1: https://www.c1.ai/idac


Connect with us on LinkedIn:


Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/


Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/


Visit the show on the web at idacpodcast.com



00:00 Intro

00:33 Welcome back, Alex Bovee

01:28 From ConductorOne to C1 and the .ai rebrand

04:14 Launch week and the App Hub

07:07 Farm-to-table software and the limits of off-the-shelf SaaS

09:56 The real risks of vibe-coded apps

12:52 Humans, software, and agents: trust and determinism

17:10 UARs matter more for agents

17:59 What happened in the Hugging Face breach

21:23 Six control points for securing agents

25:38 Where should teams focus first?

31:33 Meeting customers where they are

33:02 Why IGA basics come before AI adoption

34:27 AI accelerates bad IAM

35:45 Governance versus business speed

37:51 SaaS, enterprise, and personal productivity agents

41:19 Runtime enforcement and agents evaluating agents

44:22 Can you train an agent not to goal max?

47:33 Governed swim lanes, not shutdowns

50:33 Publishing a vibe-coded app through App Hub

53:03 The slept-on credential problem

56:04 Girl dads, boy families, and the Royal Octopus

1:00:54 Wrap-up



IDAC, Identity at the Center, Jeff Steadman, Jim McDonald, Alex Bovee, C1, C1.ai, ConductorOne, Sponsor Spotlight, identity and access management, IAM, identity governance, IGA, AI agents, agentic AI, agentic enterprise, non-human identity, NHI, workload identity, machine identity, vibe coding, App Hub, Hugging Face breach, OpenAI, agent evals, goal maxing, runtime enforcement, runtime security, MCP, MCP gateway, LLM gateway, network egress, agent harness, just-in-time credentials, secrets management, shadow AI, user access reviews, UAR, joiner mover leaver, delegated authorization

Denne episoden er hentet fra en åpen RSS-feed og er ikke publisert av Podme. Den kan derfor inneholde annonser.

Episoder(451)

#450 - New to Identity with Alexis Bernthal

#450 - New to Identity with Alexis Bernthal

Jeff flies solo for episode 450, joined by Alexis Bernthal, an associate on RSM's technology risk consulting team who found her way to the podcast through a corporate-wide email and a contact form sub...

28 Sep 1h 23min

#449 - Decoded - Transaction Tokens with George Fletcher

#449 - Decoded - Transaction Tokens with George Fletcher

George Fletcher joins Jeff Steadman and Sean O'Dell for a Decoded deep dive into transaction tokens (Txn-Tokens), the OAuth Working Group specification designed to secure requests as they move across ...

21 Sep 1h 10min

#448 - Sponsor Spotlight - Opal Security

#448 - Sponsor Spotlight - Opal Security

Howard Ting, CEO of Opal Security, joins Jeff Steadman for a Sponsor Spotlight covering identity governance for both human and non-human identities. Howard traces his path through RSA Security, Micros...

17 Sep 1h 4min

#447 - Authenticate 2026 Preview with Andi Hindle

#447 - Authenticate 2026 Preview with Andi Hindle

Jeff Steadman sits down with Andi Hindle, conference chair for Authenticate 2026, for a preview of this year's event. Making his seventh appearance on the show, Andi walks through how Authenticate has...

14 Sep 1h 16min

#446 - Rethinking Identity for AI Agents with Rick Scot

#446 - Rethinking Identity for AI Agents with Rick Scot

Rick Scot, Global CIO and CISO at Elevate Textiles, joins Jim and Jeff to talk about how he went from leading a data team to holding both the CIO and CISO seats at a global manufacturing company. Rick...

7 Sep 1h 10min

#445 - Sponsor Spotlight - Twine Security

#445 - Sponsor Spotlight - Twine Security

Jim McDonald hosts this Sponsor Spotlight episode of Identity at the Center, made possible with support from Twine Security. Jim is joined by Benny Porat, co-founder and CEO of Twine Security and prev...

2 Sep 52min

#444 - August 2026 Mailbag

#444 - August 2026 Mailbag

Jeff and Jim open with the unavoidable topic of AI agents and the tension between enabling innovation and governing agent permissions, then run through a packed fall conference schedule. The August ma...

31 Aug 49min

Populært innen Teknologi

tomprat-med-gunnar-tjomlid
teknisk-sett
rss-kunstig-intelligens-med-elisabeth-maren-og-morten
nasjonal-sikkerhetsmyndighet-nsm
energi-og-klima
lydartikler-fra-aftenposten
elektropodden
shifter
rss-ai-forklart
hans-petter-og-co
teknologi-og-mennesker
rss-alt-som-gar-pa-strom
rss-ki-praten
smart-forklart
fornybaren
rss-ki-til-kaffen
handlevogna
rss-heis
rss-teknologioptimistene-en-podkast-om-teknologi-og-mennesker
i-loopen