Marc Kremer is a Partner at EY with more than 13 years of experience in Identity & Access Management (IAM) and Technology Risk. He advises organizations on how to establish effective governance, control frameworks, and regulatory-compliant security architectures in increasingly complex digital environments.
In the context of emerging AI capabilities, Marc focuses on a critical question: how identity, accountability, and control extend to non-human actors. As AI agents evolve from tools to autonomous decision-makers, traditional IAM concepts—designed around human identities—are being fundamentally challenged.
Marc brings a governance-driven perspective to this discussion, shaped by his experience at the intersection of advisory and audit. His focus lies on ensuring traceability, accountability, and control effectiveness in environments where AI agents act with increasing autonomy.
Drawing on cross-industry experience, he highlights the implications for security, regulatory compliance, and internal control systems (ICS), with a particular emphasis on how organizations can adapt identity models, access controls, and oversight mechanisms to manage AI-driven risk.
Marc represents a Technology Risk perspective — grounded in governance, regulation, and the principle: we advise on what we audit.
See All Locations
See All Locations