#305 - Identity Week America with Ryan Galluzzo of NIST

#305 - Identity Week America with Ryan Galluzzo of NIST

In this episode of the Identity at the Center podcast, Jeff and Jim are live at the Identity Week America conference in Washington, DC. Welcoming Ryan Galluzzo, Identity Management Program Lead at NIST, they dive into recent NIST updates, including a mobile driver's license project, changes in public comment and revision processes, and the significance of user-controlled wallets. They also touch on self-sovereign identity, risk management, evolution in identity assurance levels, and the vital role of continuous evaluation and improvement. The episode concludes with a light-hearted discussion on the inquisitive nature of children and the spontaneous, enriching conversations that happen at industry conferences.

00:00 Welcome to Identity at the Center Podcast

01:26 Conference Highlights and Networking

02:47 Panel Discussions and Key Takeaways

05:07 Mobile Driver's License Project

07:09 Public Comment Draft and Feedback

11:40 Self-Sovereign Identity and Trust Issues

16:41 NIST Guidance and Risk Management

28:47 Introduction to RMF and Assurance Levels

29:05 Contextualizing Assurance Levels for Different Users

30:25 Continuous Evaluation and Improvement

34:28 User-Controlled Wallets and Federation

35:59 Account Recovery and Assurance Levels

37:18 Overview of NIST 800-63 Documents

51:25 Existential Questions and Personal Anecdotes

55:25 Conclusion and Final Thoughts

Connect with Ryan: ⁠https://www.linkedin.com/in/ryan-galluzzo-a100563b/⁠

Authenticate Conference - Use code IDAC15 for 15% off: ⁠https://authenticatecon.com/event/authenticate-2024-conference/⁠

Connect with us on LinkedIn:

Jim McDonald: ⁠https://www.linkedin.com/in/jimmcdonaldpmp/⁠

Jeff Steadman: ⁠https://www.linkedin.com/in/jeffsteadman/⁠

Visit the show on the web at ⁠http://idacpodcast.com⁠ and watch at ⁠https://www.youtube.com/@idacpodcast

Episoder(396)

#364 - Building Bridges in Identity with IDPro Joni Brennan

#364 - Building Bridges in Identity with IDPro Joni Brennan

Welcome back to Identity at the Center! Jeff flies solo this week as Jim handles a cross-country move, bringing you an insightful conversation with Joni Brennan, the new Chair of the IDPro Board of Directors.In this episode, Joni shares her vision for IDPro's future, discussing what the organization does well and where improvements are needed. As both IDPro Chair and President of DIACC (Digital ID and Authentication Council of Canada), Joni brings unique insights into the business side of identity management, international perspectives on digital wallets, and the importance of building bridges across different identity ecosystems.Joni also opens up about her work bridging local, national, and international identity initiatives in Canada, and why she believes identity professionals need to think beyond just technical specifications.Plus, stick around for a special bonus segment where we meet Champ, Joni's adorable new German Shepherd-Rottweiler puppy!#idac #identity #cybersecurity #digitalidentity #identitymanagement #iam #idpro #digitalwallets #canada #authenticationConnect with Joni: https://www.linkedin.com/in/jonibrennanLearn more about IDPro: https://idpro.org/Learn more about DIACC: https://diacc.ca/Connect with us on LinkedIn:Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/Visit the show on the web at http://idacpodcast.comTimestamps00:00 - Introduction and Solo Host Setup00:40 - Welcome Joni Brennan, New IDPro Chair01:00 - Official IDPro Podcast Partnership Announcement02:00 - Life Updates: Still in the Trailer on Starlink03:00 - What IDPro Members Should Know05:00 - Open Invitation for Community Feedback07:00 - What IDPro Does Well vs Areas for Improvement10:00 - The Need for More Structure in IDPro12:00 - Defining Identity Professionals Beyond Technical Roles14:00 - The Value of IDPro Slack Community16:00 - Business of IAM: Beyond Technical Implementation18:00 - Case Studies and Success Stories for IDPro20:00 - Learning from Failures and Sharing Knowledge22:00 - Organizational Politics in Identity Management25:00 - Building Bridges Between Identity Ecosystems27:00 - Introduction to DIACC and Canadian Perspective30:00 - Local vs National vs International Identity Initiatives32:00 - Digital Wallets and the Trust Problem35:00 - Centralization vs Decentralization in Identity38:00 - Trust Anchors and Multiple Wallet Ecosystem40:00 - Making Identity Products People Want to Use42:00 - Privacy, Audit Trails, and Government Regulation44:00 - Citizen-Directed Government Data45:00 - International Perspectives on Identity Solutions47:00 - AI, Fraud, and Regulatory Responses in Canada49:00 - Serving Current Needs While Building Future Solutions50:00 - The Challenge of Being an Identity Expert51:00 - Wrapping Up IDPro Discussion52:00 - Bonus: Meet Champ the Puppy54:00 - Dog Stories and Puppy Training56:00 - Closing Remarks and Contact InformationKeywordsIDAC, Identity at the Center, Jeff Steadman, Jim McDonald, Joni Brennan, IDPro, identity management, digital identity, IAM, cybersecurity, authentication, digital wallets, trust frameworks, DIACC, Canada, identity professionals, business of identity, case studies, community feedback, Slack community, certification, CIDPRO, international identity, EU wallets, mobile driver's license, Apple Wallet, Google Wallet, trust anchors, interoperability, fraud prevention, AI in identity, government regulation, citizen directed data, open banking, privacy, audit trails, identity politics, organizational change, professional development, technical skills, non-technical professionals, policy advocacy, governance, standards, specifications, bridge building, ecosystem connectivity, puppy, German Shepherd, Rottweiler

28 Jul 202557min

#363 - Sponsor Spotlight - Natoma

#363 - Sponsor Spotlight - Natoma

This episode is sponsored by Natoma. Visit https://www.natoma.id/ to learn more.Join Jeff from the IDAC Podcast as he dives into a deep conversation with Paresh Bhaya, the co-founder of Natoma. In this sponsored episode, Paresh shares his journey into the identity space, discusses how Natoma helps enterprises accelerate AI adoption without compromising security, and provides insights into the rising importance of MCP and A2A protocols. Learn about the challenges and opportunities at the intersection of AI and security, the importance of dynamic access controls, and the significance of ensuring proper authentication and authorization in the growing world of agentic AI. Paresh also delights us with his memorable hike up Mount Whitney. Don't miss out!00:00 Introduction and Sponsor Announcement00:34 Guest Introduction: Paresh Bhaya from Natoma01:14 Paresh’s Journey into Identity04:04 Natoma's Mission and AI Security06:25 The Story Behind Natoma's Name09:29 Natoma's Unique Approach to AI Security18:32 Understanding MCP and A2A Protocols25:20 Community Development and Adoption25:56 Agent Interactions and Security Challenges27:19 Navigating Product Development29:17 Ensuring Secure Connections36:10 Deploying and Managing MCP Servers42:40 Shadow AI and Governance44:17 Personal Anecdotes and ConclusionConnect with Paresh: https://www.linkedin.com/in/paresh-bhaya/Learn more about Natoma: https://www.natoma.id/Connect with us on LinkedIn:Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/Visit the show on the web at idacpodcast.comKeywords:IDAC, Identity at the Center, Jeff Steadman, Jim McDonald, Natoma, Paresh Bhaya, Artificial Intelligence, AI, AI Security, Identity and Access Management, IAM, Enterprise Security, AI Adoption, Technology, Innovation, Cybersecurity, Machine Learning, AI Risks, Secure AI, #idac

23 Jul 202550min

#362 - Identiverse 2025 - Diane Vicezar, DIAF Kim Cameron Award Winner

#362 - Identiverse 2025 - Diane Vicezar, DIAF Kim Cameron Award Winner

In this episode of Identity at the Center, recorded live from Identiverse 2025 in Las Vegas, Jim McDonald and Jeff Steadman are joined by special guests Diane Vicezar and Arynn Crow. Diane is a recent recipient of the Digital Identity Advancement Foundation's (DIAF) prestigious Kim Cameron Award, and Arynn is the Director of Governance and Transparency for DIAF.Join us for a conversation about breaking into the identity and access management (IAM) industry. Diane shares her journey from a college intern at Microsoft to a full-time employee in the identity space, and what her experience has been like as a first-time attendee at Identiverse. Arynn provides valuable insights into the mission of DIAF, which aims to make professional development in identity more accessible through merit-based awards like the Kim Cameron Award for newcomers and the Victoria O'Connor Award for established professionals.The group discusses the critical question of how the industry can attract new talent. Do people choose a career in identity, or does it choose them? They explore the importance of outreach to universities, the power of social media, and reframing the narrative around identity to focus on its mission-driven impact on society. From career ceilings and the role of AI to favorite conference sessions and hallway conversations, this episode is packed with insights for both seasoned professionals and those just starting their identity journey.Chapter Timestamps00:00:10 - Welcome to Identiverse 202500:02:21 - Introducing Diane Vicezar and Arynn Crow00:03:00 - What is the Digital Identity Advancement Foundation (DIAF)?00:05:33 - Diane's Experience as a Kim Cameron Award Winner00:07:26 - The Legacy of Kim Cameron and Vittorio Bertocci00:10:17 - How Did You Get Into Identity?00:12:08 - How to Attract New Talent to the Identity Industry00:16:51 - Reframing the Conversation Around Identity's Mission00:20:27 - Is There a Career Ceiling in Identity?00:22:34 - Advice for Those Starting Their Career in Identity00:27:10 - The Future of AI in the Identity Industry00:28:32 - Favorite Sessions at Identiverse 202500:34:15 - If You Were a Potato, How Would You Be Prepared?00:36:20 - Closing RemarksConnect with Diana: https://www.linkedin.com/in/dianavicezar/Connect with Arynn: https://www.linkedin.com/in/arynn-crow-821761103/Learn more about the Digital Identity Advancement Foundation: https://digitalidadvancement.org/Connect with us on LinkedIn:Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/Visit the show on the web at http://idacpodcast.comKeywordsIDAC, Identity at the Center, Jeff Steadman, Jim McDonald, Diane Vicezar, Arynn Crow, Digital Identity Advancement Foundation, DIAF, Kim Cameron Award, Identiverse 2025, Identity and Access Management, IAM, Career in Identity, Cybersecurity, Professional Development, Women in Identity, Identity Industry, Microsoft, AI in Identity, FIDO, Passkeys, Verifiable CredentialsHashtags#idac #Identiverse #DigitalIdentity #IAM #Cybersecurity #CareerDevelopment #WomenInTech #DIAF #KimCameronAward

21 Jul 202537min

#361 - Identiverse 2025 - Sean O'Dell on Harnessing CAEP Abilities with Event-Driven Identity

#361 - Identiverse 2025 - Sean O'Dell on Harnessing CAEP Abilities with Event-Driven Identity

In this episode of the Identity at the Center Podcast, hosts Jeff and Jim discuss highlights from Identiverse 2025, featuring special guest Sean O'Dell. They reflect on the importance of continuous identity management, event-driven architecture, and AI in identity and access management (IAM). The conversation covers a range of topics, including insights from the CAEP (continuous access evaluation profile) panel, adoption of the shared signals framework (SSF), and the evolution of identity verification. Tune in for a deep dive into the future of IAM and thoughtful reflections on key industry trends and practices.00:00 Introduction and Greetings00:05 Acknowledgements and Thanks00:23 Conference Highlights and Listener Feedback01:36 Introducing the Guest Speaker: Sean O'Dell01:48 Sean O'Dell's Role and Responsibilities02:35 Panel Discussion Recap: Event-Driven Identity Management03:29 Audience Engagement and Technical Questions04:34 Continuous Identity and Security Paradigms09:19 Federated Policies and Signal Integration19:28 Privacy Sharing and Anonymity20:25 Vendor Adoption and Keynotes21:28 AI and Data Readiness22:26 Non-Human Identities vs. Workload IAM26:25 Continuous Authentication and Identity28:12 Shared Signals Framework and Device Management31:34 Vendor Solutions and Identity Verification34:58 Panel Reflections and Moderation InsightsConnect with Sean: https://www.linkedin.com/in/seanodentity/Learn more about CAEP: https://caep.dev/Connect with us on LinkedIn:Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/Visit the show on the web at http://idacpodcast.com

14 Jul 202537min

#360 - Sponsor Spotlight - Trusona

#360 - Sponsor Spotlight - Trusona

This episode is sponsored by Trusona. Visit trusona.com/idac to learn more.In this episode of the Identity of the Center podcast, Jeff and Jim discuss identity verification challenges with Ori Eisen, the founder and CEO of Trusona. The conversation explores the problems surrounding help desk authentication and how Trusona's new product, ATO Protect, aims to address these issues by confirming caller identities, even in scenarios involving social engineering and advanced AI threats. Ori explains the technology behind document scanning, data triangulation, and geolocation to validate identities. The episode also includes an intriguing hack challenge for listeners to test the robustness of Trusona's solutions. Check out the detailed demo on Trusona's website and join the challenge!Timestamps00:00 Introduction and Episode Excitement01:16 Introducing the Guest: Ori Eisen from Trusona02:11 The Problem with Passwordless Authentication03:53 The Rise of Gen AI and Its Impact on Security04:51 Understanding ATO Protect and Its Importance16:10 How ATO Protect Works: A Step-by-Step Guide27:51 The Puppeteering Scam Unveiled28:24 Fingerprinting the Fraudsters29:11 Real-Time Fraud Detection Demo29:42 Challenges in Penetration Testing30:08 Combating Man-in-the-Middle Attacks30:41 The Ultimate Security Challenge33:44 Verifying Caller Identity41:24 Future Threats in Cybersecurity42:10 AI: The Double-Edged Sword49:08 Issuing the Hack Challenge52:45 Conclusion and Final ThoughtsConnect with Ori: https://www.linkedin.com/in/orieisen/Learn more about Trusona: https://www.trusona.com/idacConnect with us on LinkedIn:Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/Visit the show on the web at idacpodcast.comKeywords:IDAC, Identity at the Center, Jeff Steadman, Jim McDonald, Trusona, Ori Eisen, Identity Verification, Help Desk Security, Service Desk, Passwordless, Authentication, KBA, Knowledge-Based Authentication, Cybersecurity, Identity and Access Management, IAM, Multi-Factor Authentication, MFA, Zero Trust, Identity Proofing#IDAC #Trusona #Passwordless #Cybersecurity #IdentityManagement #HelpDesk #ZeroTrust

9 Jul 202553min

#359 - Identiverse 2025 - Andrew Shikiar’s FIDO Alliance Update

#359 - Identiverse 2025 - Andrew Shikiar’s FIDO Alliance Update

In this episode of the Identity at the Center Podcast, Jeff and Jim broadcast live from Identiverse 2025. Special guest Andrew Shikiar from the FIDO Alliance joins to talk about efforts to push passkey adoption and reduce reliance on passwords. Topics covered include the technicalities of passkeys, their adoption by major banks like Wells Fargo, and initiatives for adding more signals for high assurance scenarios. The episode wraps up with exciting news about the upcoming Authenticate conference and plans for an Authenticate APAC edition in Singapore.00:00 Introduction and Greetings00:16 Podcast Highlights and Recent Activities01:38 Guest Introduction: Andrew Shikiar from FIDO Alliance01:58 FIDO Alliance and Passkey Adoption07:13 Technical Insights on Passkeys14:52 Authenticate Conference and Community20:20 Global Adoption and Regional Differences25:13 Conclusion and Wrap-UpConnect with LinkedIn: https://www.linkedin.com/in/andrewshikiarLearn more about the FIDO Alliance: https://fidoalliance.org/Connect with us on LinkedIn:Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/Visit the show on the web at http://idacpodcast.com

7 Jul 202527min

#358 - Identiverse 2025 - Identi-Squabble

#358 - Identiverse 2025 - Identi-Squabble

Welcome to a special game show edition of 'Identity at the Center,' hosted by Jeff Steadman! Recorded live at Identiverse 2025, this episode features two teams—Team IDPro (Heather Flanagan, Tina Srivastava, and Mike Kiser) and Team IDAC (Jim McDonald, David Mahdi, and Steven Rennick)—competing in a Family Feud-style trivia game focused on Identity and Access Management (IAM). Watch as they answer questions related to common IAM project failures, non-human identities, snacks at conferences, and popular conference swag with a little help from the audience. Stick around to the end for a special IAM-themed rap performance by Tina.Chapters00:00 Introduction and Welcome01:18 Meet the Teams03:10 Explaining the Rules04:20 Round 1: Common Reasons for IAM Project Failure07:52 Round 2: Non-Human Identities in IAM11:33 Introduction and Initial Questions11:55 Fun with Vegas Snacks15:00 Final Round: Common Swag Items18:40 Conclusion and FarewellConnect with the contestants:Heather Flanagan: https://www.linkedin.com/in/hlflanagan/Tina Srivastava: https://www.linkedin.com/in/tina-s-8291438a/Mike Kiser: https://www.linkedin.com/in/mike-kiser/David Mahdi: https://www.linkedin.com/in/dmahdi/Steven Rennick: https://www.linkedin.com/in/steven-rennick/Connect with us on LinkedIn:Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/Visit the show on the web at http://idacpodcast.com

30 Jun 202521min

#357 - Sponsor Spotlight - Silverfort

#357 - Sponsor Spotlight - Silverfort

This episode is sponsored by Silverfort. Visit silverfort.com for more.In this sponsored episode of the Identity at the Center Podcast, Jeff and Jim sit down with Hed Kovetz, CEO and Co-founder at Silverfort. They discuss the rapid evolution in the identity security space, Silverfort's groundbreaking innovations, and the critical role of AI and non-human identities. Learn how Silverfort's inline, real-time enforcement technology is tackling the complexities of identity management at scale. Hed also shares insights on the company's recent expansions and acquisitions, and the growing importance of AI agent security. Don't miss out on this deep dive into the future of identity security!00:00 Introduction and Guest Welcome00:14 Sponsor Spotlight and Industry Insights01:15 Silverfort's Recent Developments02:17 Identity Security Market Trends04:46 Challenges in Identity Governance07:14 Non-Human Identities and AI10:39 Silverfort's Unique Approach18:52 Service Account Security29:59 Reducing Risk with Virtual Fencing30:45 Addressing Human and Non-Human Identity Risks31:34 Overcoming the Fear of Breaking Systems32:35 Simulation Mode for Trust Building35:20 Challenges in Manual Identity Management36:12 AI Agent Security: The New Frontier42:10 The Importance of Inline Security55:50 The Ideal Identity Security Playbook01:00:38 Closing Remarks and ResourcesConnect with Hed: https://www.linkedin.com/in/hed-kovetz-910ba5b9/Learn more about Silverfort: https://www.silverfort.com/Insecurity in the shadows: New data on the hidden risks of non-human identities: https://resources.silverfort.com/insecurity-in-the-shadows/homeThe Identity Security Playbook (eBook): https://www.silverfort.com/resources/the-identity-security-playbook/Connect with us on LinkedIn:Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/Visit the show on the web at idacpodcast.com and watch at https://www.youtube.com/@idacpodcast

25 Jun 20251h 2min

Populært innen Teknologi

romkapsel
lydartikler-fra-aftenposten
rss-avskiltet
smart-forklart
teknisk-sett
energi-og-klima
rss-impressions-2
teknologi-og-mennesker
shifter
hans-petter-og-co
tomprat-med-gunnar-tjomlid
nasjonal-sikkerhetsmyndighet-nsm
rss-alt-vi-kan
fornybaren
rss-polypod
rss-alt-som-gar-pa-strom
i-loopen
elektropodden
kunstig-intelligens-med-morten-goodwin
rss-heis