The Employee Left. The Access Did Not.
Disabling Active Directory is no longer enough. Effective offboarding must revoke distributed human access, long-lived secrets and machine credentials before they become orphaned trust.
Read article →Articles and practical perspectives from Jaiz Anuar on Identity Security, cybersecurity, governance, and digital trust.
Disabling Active Directory is no longer enough. Effective offboarding must revoke distributed human access, long-lived secrets and machine credentials before they become orphaned trust.
Read article →API authentication should match the trust scenario: delegated user access, managed workload identity, mutual TLS, short-lived pipeline tokens and tightly scoped third-party credentials are not interchangeable.
Read article →MFA remains essential, but session tokens, recovery processes, help-desk verification, device trust and step-up controls determine whether authenticated access should remain trusted.
Read article →AI agents are becoming non-human privileged identities. Their authority must be governed as carefully as any privileged user.
Read article →The security perimeter has moved from network location to identity, permissions and continuously evaluated trust.
Read article →