Identity Fabrics: Adaptive, Distributed, and Interconnected
Combined Session
Wednesday, May 20, 2026 11:00—12:00
Location: A 05-06
Log in to download presentations
Wednesday, May 20, 2026 11:00—12:00
Location: A 05-06
Watch the video
When OAuth 1.0 was invented in the mid-2000's, a native application meant something running on a desktop and websites did not always have APIs. And when they did, you could just replay someone's password to authenticate with HTTP Basic like we always had from the web's early days. But OAuth came and showed the world a better way, and OAuth 2.0 refined that model and cemented the protocol family as the core delegation protocol for nearly everything online. Its core model of connecting one website to another for delegated access has served it well, and OAuth has been successfully extended into related fields like identity (with OpenID Connect) and high assurance (with FAPI).
But now we're 20 years past those early days and the has changed drastically along with every part of life that's now connected to it. Today, machine identities and AI agents are questioning the fundamental model of OAuth in ways we've never seen. OAuth has proven to be incredibly flexible in the past, and new extensions are being proposed to bring it into this new world. At the same time, alternatives have been proposed that have started to take root in some spaces. Are we on the verge of a new world?
Come to this talk to learn about how OAuth is changing, and how our views of security are forcing re-evaluation of contexts and assumptions that have served the internet well for decades.
Watch the video
At Schwarz, we are used to large numbers. More than 150 billion revenue, more than 650.000 employees, 32 countries, different divisions, our own hyperscaler cloud and so on and so forth. For our workforce IAM, this means a lot of work. 850.000 identities to manage and govern, 25.000 off- and on-boardings every month, 5 million authentications per day and approximately 150 Million identity related events per day. For years we have been struggling with vendor software, adapting heavy customizing, huge investments into infrastructure and increasing complexity of simple tasks to unmanageable systems. So we asked ourselves - is the way forward just another software, or is a more radical approach needed. At Schwarz, our identities belong to us!
Watch the video
As organisations phase out legacy platforms like SAP IDM, identity is shifting from operational administration to strategic resilience. In an era defined by cloud transformation, non-human identities, regulatory pressure, and AI-driven automation, identity architecture and governance must evolve.
This session explores how to modernise legacy IAM environments into resilient, future-ready identity ecosystems. We will discuss architectural decisions, governance models, and measurable outcomes that matter to both business and technical stakeholders — from reducing risk and improving compliance to enabling agility and innovation.
Attendees will gain practical insights into building identity resilience that supports security, regulatory requirements, and long-term digital strategy.