#identity-and-access-management

[ follow ]
Information security
fromFortune
7 hours ago

ServiceNow's Amit Zavery explains why the company is buying identity management platform Veza | Fortune

ServiceNow acquired Veza to add identity and access management for humans and AI agents, strengthening customer data access control, security, and governance.
fromZDNET
1 week ago

How Microsoft Entra aims to keep your AI agents from running wild

Buried in that tidal wave was news of something called Entra Agent ID, the main idea of which is to use Microsoft Entra to govern AI agents in the same way that Entra currently governs human users; that is, to give each agent a unique, managed identity and apply familiar Entra identity controls such as conditional access, identity governance, and identity protection. Entra is Microsoft's cloud-based identity access management (IAM) solution.
Information security
#cloud-security
fromComputerworld
1 week ago
Information security

How has cloud flipped the regular security narrative?

In cloud environments, compromised identity credentials and excessive permissions allow attackers to bypass defenses and exfiltrate massive sensitive data across interconnected services.
fromSecuritymagazine
5 months ago
Information security

71% of Organizations Cannot Cover the Cloud Environment With Current Tools

Complex cloud environments challenge organizations' cloud security management.
Despite high confidence in security, significant concerns about unauthorized services and tool coverage exist.
Information security
fromSecuritymagazine
5 months ago

71% of Organizations Cannot Cover the Cloud Environment With Current Tools

Complex cloud environments challenge organizations' cloud security management.
Despite high confidence in security, significant concerns about unauthorized services and tool coverage exist.
#ai-agents
fromZDNET
1 month ago
Artificial intelligence

Enterprises are not prepared for a world of malicious AI agents

fromZDNET
1 month ago
Artificial intelligence

Enterprises are not prepared for a world of malicious AI agents

Information security
fromIT Pro
2 weeks ago

Microsoft opens up Entra Agent ID preview with new AI features

Microsoft expands Entra Agent ID public preview to improve visibility, governance, and controls for AI agents, securing generative-AI access and reducing agent sprawl risks.
#active-directory
fromThe Hacker News
3 weeks ago
Information security

Active Directory Under Siege: Why Critical Infrastructure Needs Stronger Security

Compromising Active Directory grants attackers full enterprise network control, enabling stealthy privilege escalation, lateral movement, and persistent access.
fromComputerWeekly.com
3 months ago
Information security

How to manage Active Directory security | Computer Weekly

Active Directory remains the critical, high-risk identity backbone for enterprises and requires proactive hardening, visibility, automation, and recovery readiness to prevent ransomware compromise.
fromVue.js Jobs
1 month ago

Software Engineer II at Ping Identity - VueJobs

At Ping Identity, we believe in making digital experiences both secure and seamless for all users, without compromise. We call this digital freedom. And it's not just something we provide our customers. It's something that inspires our company. People don't come here to join a culture that's built on digital freedom. They come to cultivate it. Our intelligent, cloud identity platform lets people shop, work, bank, and interact wherever and however they want. Without friction. Without fear.
Information security
fromThe Hacker News
1 month ago

Securing AI to Benefit from AI

Artificial intelligence (AI) holds tremendous promise for improving cyber defense and making the lives of security practitioners easier. It can help teams cut through alert fatigue, spot patterns faster, and bring a level of scale that human analysts alone can't match. But realizing that potential depends on securing the systems that make it possible. Every organization experimenting with AI in security operations is, knowingly or not, expanding its attack surface.
Information security
Information security
fromTechzine Global
1 month ago

Qualys expands ETM security platform with identity security and better insight into threats

Qualys ETM introduces AI-driven ETM Identity, TruLens, and TruConfirm to predict and prevent cyber threats by securing identities, feeding real-time threat intelligence, and automating responses.
Artificial intelligence
fromZDNET
1 month ago

Unchecked AI agents could be disastrous for us all - but OpenID Foundation has a solution

Agentic AI can bypass connectivity barriers and expose sensitive corporate data unless organizations adopt interoperable AI-specific IAM standards and extend governance practices.
fromSecurityWeek
2 months ago

Descope Raises $35 Million in Seed Round Extension

Identity and access management (IAM) provider Descope has announced raising $35 million in a seed funding extension that brings the total raised by the company to $88 million. The cash infusion came from existing investors Cerca Partners, Dell Technologies Capital, Lightspeed Venture Partners, Notable Capital, Triventures, and Unusual Ventures. Founded in 2022, the Los Altos, California-based startup landed a large $53 million seed funding round in 2023, aiming to disrupt the customer identity and authentication market.
Startup companies
#non-human-identities
Information security
fromTechzine Global
2 months ago

Commvault and BeyondTrust strengthen access security

Integration of Commvault Cloud and BeyondTrust Password Safe centralizes privileged credential management, issues temporary credentials, and strengthens security, resilience, and compliance.
fromWIRED
2 months ago

This Microsoft Entra ID Vulnerability Could Have Caused a Digital Catastrophe

Mollema has studied Entra ID security in depth and published multiple studies about weaknesses in the system, which was formerly known as Azure Active Directory. But while preparing to present at the Black Hat security conference in Las Vegas in July, Mollema discovered two vulnerabilities that he realized could be used to gain global administrator privileges-essentially god mode-and compromise every Entra ID directory, or what is known as a "tenant."
Information security
Information security
fromThe Hacker News
3 months ago

Webinar: Discover and Control Shadow AI Agents in Your Enterprise Before Hackers Do

Unidentified AI agents operate within organizations, creating security risks by running without identities, owners, or oversight and enabling rapid compromise and privilege escalation.
[ Load more ]