Episode 148.5 - GluuFederation/identerati-office-hours GitHub Wiki
Title: Governing risk in the AI Era
- Host: Mike Schwartz, Founder/CEO Gluu
- Guest: Rohit Khare, Identerati at Large
- Guest: Andor Kesselman, Founder DIF Labs
Channels
Description
Traditional identity governance has failed to keep up with dynamic, distributed systems — Trust Governance unifies federation, formal policy verification, continuous data pipelines and dynamic authorization. Join us to explore how CISOs can move beyond entitlement reviews to provable, automated governance that plays nice with CI/CD, in order to govern with proof.
Homework
- Mike's Medium Article: Trust Governance
- Hobble your AI agents to prevent them from hurting you too badly
Takeaways
- ⚡ For an enterprise, governance is a "process" -- it's an ongoing, disciplined approach to IT security risk mitigation.
- ⚡ Did federation break IGA? Was AI the forcing function for this governance reckoning, which has been there for years?
- ⚡ Permissions, Entitlements, Preferences -- all potential pitfalls when thinking about governance.
- ⚡ If IGA is IT security risk mitigation theater, at what point do enterprises build a new process to govern?