🔐

Identity & Access Management

Deep dives into OAuth, SAML, Zero Trust, and enterprise IAM architecture — practical guides and lessons from the field.

21 posts
Series

IAM for the Agentic Era

5 parts

AI agents are reshaping every assumption IAM was built on. This series picks up where First Principles left off — covering what agentic identity actually is, why existing tools were not built for i...

Start Series →
Series

IAM from First Principles

12 parts

If you are new to IAM, here is a suggested reading path for this series-1

Start Series →

All Posts

NHI Governance at Scale — Discovery, Ownership, and Policy for the 90:1 World

Governing AI agents the way we govern service accounts is a patch, not a solution — and we already know service account governance is broken in most organisations. Agents are no...

iam nhi agentic-ai governance sailpoint saviynt discovery ownership service-accounts agent-lifecycle iga access-reviews authorization-models b2b b2b2c

Building Secure AI Agent Systems — A Practical Architecture Guide

Most agentic security failures are identity failures. A misconfigured grant, a long-lived token, an unreviewed agent registration, a confused deputy attack — these are IAM probl...

iam agentic-ai zero-trust ztna oauth mcp security-architecture vendor-comparison governance confused-deputy token-security nist ipsie least-privilege lifecycle-management