Enterprise IAM is evolving from a system of record into a core component of security operations. As attackers increasingly exploit identities rather than infrastructure, traditional controls such as authentication, federation, and access policies are no longer sufficient on their own. This track focuses on how organizations are extending IAM into a continuous, intelligence-driven defense layer.
Sessions will explore the rise of Identity Threat Detection and Response (ITDR), where identity signals from across IAM, cloud platforms, endpoints, and applications are combined to detect and contain attacks in real time. Attendees will gain insight into how identity telemetry can reveal early indicators of compromise, from credential misuse to privilege escalation and token abuse, and how these signals can be integrated into broader security operations.
A key theme is the need for continuous visibility. In complex environments, access is often fragmented across multiple systems, leading to over-entitlement and hidden risk. The track will examine emerging approaches that aggregate and analyze identity data across the entire landscape, enabling more accurate, risk-based decisions and supporting true least privilege.
The scope of identity is also expanding rapidly. External users, services, workloads, and automated actors now represent a large and often under-managed attack surface. Sessions will address how to secure these identities, improve monitoring, and respond effectively to threats that move at machine speed.
Finally, the track will look at how advanced analytics can strengthen IAM. By introducing behavioral analysis and adaptive decision-making, organizations can move from static access controls toward dynamic, context-aware identity security.Attendees will leave with a clearer understanding of how to build IAM capabilities that not only manage access but also actively defend it.