Home / Insights
Insights
Notes From the Identity Security Frontier.
Field notes on zero standing privilege, Zero Trust architecture, and what actually changes when access decisions move from "decide-once" to runtime.
Latest
February 9, 2024
Challenges and Solutions in Adopting Zero Standing Privileges
What actually gets in the way when enterprises move from standing privileged access to a just-in-time, zero-standing-privilege model — and how to work through it in practice, not just in theory.
Read the articleMore From the Blog
February 7, 2024
Navigating Compliance with Zero Trust Security for GDPR, HIPAA, and PCI DSS
How a Zero Trust posture maps onto the access-control requirements inside three of the standards enterprise security teams get audited against most.
February 6, 2024
Zero Standing Privileges vs. Traditional PAM: What's the Difference?
Vaulting a credential and granting it broadly is not the same as never letting standing access exist in the first place. Where the two models actually diverge.
December 29, 2023
The Evolution of Privileged Access Management: From Permanent to Zero Standing Privileges
A short history of how PAM got from permanent admin accounts to just-in-time elevation — and why each step happened in response to a real failure mode.
November 28, 2023
Identity Centric ZTNA — The Future of Identity and Access Management
Network-centric access control assumes a perimeter that no longer exists. What changes when identity, not network location, becomes the control point.
November 21, 2023
Enhancing Enterprise Security: The Role of MFA and Zero Standing Privileges
MFA proves who is asking. Zero standing privilege governs what they get once they're in. Why enterprise security needs both, working together.
September 9, 2023
Modern Identity & Access Security
What a modern identity and access security stack actually needs to cover to protect applications and cloud infrastructure today, end to end.
September 9, 2023
Zero Trust Security Posture Is Hard
Not because the principle is complicated — because most enterprises build it out of four or five point solutions that were never designed to share a policy model.