Skip to content

Identerati Office Hours

Identerati Office Hours episodes

A livestream about identity standards and the people who write them. Every episode is archived here.

  • November 27, 2024 · 1 min read

    Episode 47: Is IAM asleep at the wheel?

    In the past year AI has hit center stage – the tech world is talking about the future potential and organizations are implementing first projects. But the identity world…crickets! In this chat we…

  • September 20, 2024 · 1 min read

    Episode 46: Multi-layer authz? Yes please!

    Q: Where should you enforce your authorization policy? A: Everywhere you can! There are four common scenarios and enforcement points for a defense-in-depth strategy: ⚡ during the authentication…

  • September 20, 2024 · 1 min read

    Episode 45: Intro to the Cedarling

    Cedar is a policy syntax invented by Amazon. It’s used by the AWS Verified Permissions, Authz-as-a-Service offering. Gluu is working on a new product at the Janssen Project called the…

  • September 20, 2024 · 1 min read

    Episode 44: Securing identity and context in microservices

    Defending against privileged user compromise and software supply chain attacks requires newer standards that can reduce the trust in non-human (or machine) identities used by services to communicate…

  • September 20, 2024 · 1 min read

    Episode 43: Intersection of IAM with cloud

    Managing IAM for your own users and employees is hard enough, and with the adoption of cloud (including SaaS) it’s only getting harder. Especially when you consider the addition of 3rd parties into…

  • September 20, 2024 · 1 min read

    Episode 41: National ID Challenges

    What are the priorities and tradeoffs of certain approaches to building a national identity infrastructure? How can you build a system that enables people to assert their identity and claims, and…

  • September 20, 2024 · 1 min read

    Episode 40: You got the JWT… now what?

    Once you have obtained a JSON Web Token (JWT), the next steps involve understanding, securely storing, and effectively using it for authentication and communication within your web application. A JWT…

  • September 20, 2024 · 1 min read

    Episode 38: Immortal passwords versus vulnerable humans

    Immortal Passwords refers to the concept of password practices and protocols that are designed to be incredibly secure and resistant to various forms of cyber-attacks, essentially making them…

  • September 20, 2024 · 1 min read

    Episode 37: The Rise of Browser Identity APIs

    In the last few years, there have been a number of new browser APIs proposed and implemented that assist developers to authenticate people or establish identity. This talk will discuss a few of…

  • September 20, 2024 · 1 min read

    Episode 36: Deepfakes II: BioID’s Combat Strategy

    The applications for Deepfake Detection are numerous, especially as generative AI has advanced significantly. The question arises: can online media and identity verification processes still be deemed…