Early-bird Discount
expires in
Register Now

Agenda

Future in Security

Future in Security

Combined Session
Thursday, May 08, 2025 15:35—16:35
Location: B 09
Log in to download presentations

Will PAM, CIEM, Secrets Management, and NHI Management Merge? [Intermediate]
15:35—15:55

Watch the video

 

The convergence of Privileged Access Management (PAM), Cloud Infrastructure Entitlement Management (CIEM), Secrets Management, and Non-Human Identity (NHI) Management feels almost inevitable as the traditional concept of privileged access evolves into something far more dynamic and complex.

With the rise of cloud supremacy, the dominance of DevOps and CI/CD pipelines, and the increasing significance of NHIs, we’ve seen the emergence of CIEM and specialized niche PAM solutions. Organizations are now juggling multiple tools to address their evolving security needs.

But is this fragmented approach sustainable in the long term? Some PAM vendors are already positioning themselves as comprehensive Identity Security platform providers, incorporating CIEM, Secrets Management, and even ITDR (Identity Threat Detection and Response) capabilities to meet the growing demand for unified solutions. At the same time, innovative cloud-native access tools and niche PAM solutions continue to emerge with fresh ideas and capabilities.

So, what does the future hold? Can these solutions coexist, or will we see consolidation? More importantly, should they converge?

In this session, we’ll analyze the market dynamics, highlight key trends in privileged access management, and explore the potential trajectory for the next five years. Key questions include:

  • How will convergence impact our ability to secure both human and non-human identities across hybrid environments?
  • Can a single vendor truly deliver best-in-class solutions across such a broad scope, or is a layered, best-of-breed approach still the better strategy?
  • What will privileged access management mean for businesses in 2030?

Join us to understand how these evolving markets and technologies will shape the future of identity security—and how your organization can stay ahead.

Paul Fisher
Lead Analyst
KuppingerCole Analysts
Paul Fisher is a Lead Analyst who researches primarily on cybersecurity and identity and access management (IAM). He also studies trends in AI, IoT and data governance for different industry...
OWASP NHI Top 10: Diving into OWASP's recent guide on Non-Human Identity Security [Intermediate]
15:55—16:15

Watch the video

 

Let’s demystify the buzz around Non-Human Identities. This session delves into the methodology behind the OWASP NHI (Non-Human Identity) Top 10, examines real-world breach scenarios, and provides actionable strategies to mitigate these risks.

The OWASP Non-Human Identities (NHI) Top 10 project highlights critical risks such as secret leakage, overprivileged accounts, and insecure cloud configurations. Attendees will gain valuable, practical insights into effectively managing and securing non-human identities, aligning with industry best practices to protect modern infrastructures.

Published in January 2025, this project represents six months of collaborative work by security veterans from leading companies, including Microsoft, Google, Tenable, and Snyk, under the OWASP Foundation.

Roni Lichtman
Project Lead
OWASP Foundation
Roni Lichtman is the Project Leader of the OWASP Non-Human Identities (NHI) Top 10 project, an initiative addressing the security challenges of non-human identities. With a background as a senior...
From Good to Great: Elevating Identity Governance for Continuous Compliance Excellence [Intermediate]
16:15—16:35

Watch the video

 

Establishing a successful identity governance program involves more than just automating identity and access management. To go from good to great, organization must move beyond the basics and embrace a proactive approach to identity risk, governance, and security.

In this session, we’ll explore how to break down operational silos, shift from reactive compliance checklists to an integrated, continuous compliance strategy that can empower your organization to reduce risk and audit costs.

Join us and learn how to turn compliance into a competitive advantage.

Jason Gzym
VP Solutions Engineering and Advisory
Pathlock
Jason has over 25 years of experience in the cybersecurity field and currently leads the global solution engineering and advisory teams at Pathlock. He has a rich background that includes senior...
Almost Ready for EIC 2025?
Reach out to our team with any remaining questions

Research Assistant

Hi, I'm Kuppi, your AI-powered research assistant. Ask me about KuppingerCole Analysts' research, events, or analysts.
As an AI assistant, I can make mistakes. Please verify important information.