Episode 167 - GluuFederation/identerati-office-hours GitHub Wiki

Title: Breaking through the IGA visibility wall

Channels

Description

Recent IGA studies find that enterprises only integrate 40% of their target applications. Thus 60% of "target identities" are at risk for the organization. What is the reason? Operational focus? Operational challenges? Complexity of target applications? Can agentic systems reach 100% of target applications? Or is a different approach needed?

Homework

Takeaways

  • ⚡ It takes 2-4 weeks to connect an enterprise application. IGA projects spend a lot of time and money integrating 40% of enterprise applications and then run out of steam.

  • ⚡ Running as a headless API agent, Stackbob can observe by integrating server-side and consuming audit / event logs, SCIM API calls, IDP signals and webhooks. Using a browser agent, the agent can see even more detail, like which web apps are being accessed.

  • ⚡ Even without using the StackBob Agent for dynamic provisioning, it can really increase visbility, regarding who is using which applications and how.

  • ⚡ The agentic browser plugin could also act as a credential vault for non-SSO enabled applications.

Livestream Audio Archive

here