Category: Identity operations

How Do You Identify AI Agents in an Enterprise Identity Environment?

How Do You Identify AI Agents in an Enterprise Identity Environment?

Enterprise identity environments are built to manage access for human identities. With the growing adoption of autonomous AI agents, however, that may no longer be enough to ensure digital security. In current environments, even if an enterprise can trace which account an action originated from, there may still be ambiguity…

Identity Lifecycle Management: Why Onboarding and Account Recovery Are the Most Important to Secure

Identity Lifecycle Management: Why Onboarding and Account Recovery Are the Most Important to Secure

Phishing-resistant authenticators offer stronger security, but they can still protect the wrong person. When a threat actor defeats identity verification during onboarding, an otherwise strong access management workflow can still grant unauthorized access. If a threat actor bypasses authentication by exploiting account recovery, the system may bind a replacement factor…

Securing Account Recovery from Identity Attacks

Securing Account Recovery from Identity Attacks

Account recovery workflows decide which person and which device an organization will re-trust. That makes recovery a privileged identity lifecycle event. For the most part, account recovery processes are designed to restore access conveniently. That emphasis on convenience can allow attackers to bypass the controls meant to keep them out.

What Is Identity Lifecycle Management?

What Is Identity Lifecycle Management?

Identity lifecycle management is the coordinated process of creating a digital identity, verifying what it represents, granting appropriate access, maintaining data, monitoring its use, recovering control, and retiring it. Managing the entire identity lifecycle is important because an account can be correctly provisioned and still become unsafe later. Devices can…

Risk-Based Authentication for CIAM: Strengthening the Security of Access Decisions

Risk-Based Authentication for CIAM: Strengthening the Security of Access Decisions

A customer logs into their account from a familiar device using the correct password and successfully completes multi-factor authentication (MFA). Minutes later, they change the account recovery phone number, add a new payout destination, and transfer funds. Did the customer authenticate successfully? Yes. Did the organization make the right access…

Understanding and Defending Against Vishing Attacks in 2026

Understanding and Defending Against Vishing Attacks in 2026

Most vishing defenses assume the attacker is after a password. The campaigns causing the most damage in 2026 rarely ask for one. Instead, they persuade a help desk representative to enroll a new phone number or convince a user to approve a connected application. The login that follows appears legitimate…

Governing Agentic AI Agents: What Your Identity Team Needs to Plan for Now

Governing Agentic AI Agents: What Your Identity Team Needs to Plan for Now

When an agentic AI agent acts on a user’s behalf, most current deployments run it with that user’s privileges and record its activity under the user’s identity. The agentic AI agent itself disappears into the session. That design choice creates the core challenge of governing agentic AI. Two distinct principals,…

Designing a Healthcare CIAM Strategy That Balances Patient Access and Identity Security

Designing a Healthcare CIAM Strategy That Balances Patient Access and Identity Security

The Office of the National Coordinator for Health Information Technology (ONC) reports that in 2025, 65% of individuals accessed their health records online, 57% used app-based access, and 51% used proxy or caregiver access. Those numbers mean patient identity infrastructure now serves a population that varies…

Social Engineering Tactics in Cybersecurity: The Enterprise Defense Playbook

Social Engineering Tactics in Cybersecurity: The Enterprise Defense Playbook

Identity weaknesses played a material role in almost 90% of the 750-plus incidents Palo Alto Networks’ Unit 42 investigated in 2025, with 65% of initial access driven by identity-based attacks. This was not solely because those organizations lacked multi-factor authentication (MFA) or security training. Rather, attackers…

Designing a Call Center Fraud Prevention Program: From Agent Training to Automated Controls

Designing a Call Center Fraud Prevention Program: From Agent Training to Automated Controls

Every enterprise call center fraud prevention program faces the same design tradeoff: how much of the identity verification burden should rest on agents, and how much should shift to automated controls? Most organizations still lean heavily toward the agent side. They invest in training, create verification scripts, and assume that…