Early-bird Discount
expires in
Register Now

Agenda

Identity Resilience

Identity Resilience

Combined Session
Thursday, May 08, 2025 11:00—12:00
Location: B 09
Log in to download presentations

Defending Against Identity Breaches: A Comprehensive Taxonomy of Attacker TTPs and How to Stop Them [Intermediate]
11:00—11:10

Watch the video

 

Identity-based attacks represent the most frequent vector for attackers to breach companies. This presentation is a comprehensive taxonomy of attacker tactics, techniques, and procedures (TTPs) specifically related to identity breaches. Through detailed analysis, we categorize and explore prevalent attack vectors and methods of exploitation. Furthermore, we discuss practical and effective defense mechanisms aimed at mitigating these threats.

Vincenzo Iozzo
CEO
SlashID
Vincenzo Iozzo is the CEO and Co-founder of SlashID, a leading identity-security company. Prior to SlashID, he founded Iperlane, a mobile-security company acquired by CrowdStrike in 2017. While...
Cyber Resilience for Identity Management: A Practical Approach [Advanced]
11:10—11:40

Watch the video

 

Moving into the cloud raised expectations to finally leave the on-premises silos and all their problems behind. The complexity of hybrid scenarios, cloud-vendor-lock-in situations and heavy dependencies on centralized cloud services move problems to a next level. This talk will focus on building Cyber Resilience as a new approach to reduce dependencies and complexity focusing on Identity Management (IDM).

Key Topic:

* A practical definition of Cyber Resilience

* Costs and benefits of Cyber Resilience

* Actors and Usecases for Cyber Resilience

* ZT and Cyber Resilience

* Useful building blocks and missing parts for Cyber Resilience for IDM

Eleni Richter
Chief Architect
EnBW
Eleni Richter is working as chief architect of the identity and organizational data management at a large German energy supplier (EnBW AG) and as part-time lecturer in IAM and Cyber Security...
Leadership Compass on Enterprise Secrets Management for Humans, Workloads, and Things [Introductory]
11:40—12:00

Watch the video

 

Secrets—from API tokens to X.509 keys, SSH keys, or passwords—and related objects such as X.509 certificates and SSH certificates are a primary target for attackers. Secrets are used by humans, workloads, and things. The rise of Non-Human Identity (NHI) Management, or what some call “machine identity management,” highlights the need for better management of secrets of all types. New types of secrets, such as FIDO2 tokens and passkeys, add to the challenge.

While there are many specialized solutions available—from password management to NHI management to Certificate Lifecycle Management (CLM) solutions—organizations are increasingly seeking approaches that provide insight into the state of security and governance across all secrets, and that deliver consistency and integration throughout the entire secrets lifecycle.

The LC Enterprise Secrets Management, which has been published recently, analyzes the solutions in this market. Martin Kuppinger, Principal Analyst at KuppingerCole Analysts, will present his perspective on the state of this market segment.

Martin Kuppinger
Principal Analyst
KuppingerCole Analysts
Martin Kuppinger is Founder and Principal Analyst at KuppingerCole, a leading analyst company for identity focused information security, both in classical and in cloud environments. Prior to...
Almost Ready for EIC 2025?
Reach out to our team with any remaining questions

Research Assistant

Hi, I'm Kuppi, your AI-powered research assistant. Ask me about KuppingerCole Analysts' research, events, or analysts.
As an AI assistant, I can make mistakes. Please verify important information.