
Identity at the Center
Identity at the Center is a weekly podcast all about identity security in the context of identity and access management (IAM). With decades of real-world IAM experience, hosts Jim McDonald and Jeff Steadman bring you conversations with news, topics, and guests from the identity management industry. Do you know who has access to what?
Latest episodes

Dec 18, 2023 • 33min
#252 - Wrapping up 2023
In this episode of the Identity at the Center Podcast, hosts Jim McDonald and Jeff Steadman reflect on the past year, highlighting the 59 episodes released and the growth in their listener base. The hosts also share some exciting firsts for the show, including their involvement in conferences such as Gartner, Identiverse, and Authenticate in 2023. Jim and Jeff touch upon the pending non-profit status of the podcast and delve into a speed round, answering questions about their identity heroes, important new technologies in identity, and the impact of AI on identity in the next five years. The episode concludes on a lighter note as they discuss their preferences between Android and iPhone, recommend TV shows to watch over the holiday break, and the “potato” question. Thanks to everyone that guested, listened, subscribed, and shared the show in 2023. See you in 2024!
Connect with us on LinkedIn:
Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/
Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/
Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.

Dec 13, 2023 • 58min
#251 - IDAC Sponsor Spotlight - Sonrai Security with Sandy Bird
In this episode of "Sponsor Spotlight," a special fully sponsored episode of The Identity at the Center podcast, Jim and Jeff introduce a new series that shines a spotlight on specific solutions in the digital identity space. As hosts, they delve into the world of identity security with Sonrai Security and explore their points of view in the digital identity industry. Jim and Jeff, along with their guest Sandy Bird, Co-founder and CTO of Sonrai Security, discuss key topics such as the motivation behind Sonrai Security's inception, their unique positioning in the cybersecurity landscape, and the challenges they aim to address. They also dive into Sonrai Security's approach to securing cloud identities, highlighting the four steps outlined in their blog post linked below. Throughout the episode, Jim, Jeff, and Sandy provide their insights and perspectives on the importance of identity security. Tune in to gain a deeper understanding of Sonrai Security and the broader cybersecurity landscape.
Connect with Sandy on LinkedIn: https://www.linkedin.com/in/sandy-bird-835b5576
Learn more about Sonrai Security: https://sonraisecurity.com/
Cloud Identity Diagnostic: https://sonraisecurity.com/cloud-identity-diagnostic/
4 Steps to Secure Cloud Identities If You’re Stuck: https://sonraisecurity.com/blog/4-steps-to-secure-cloud-identities-if-youre-stuck/
Connect with us on LinkedIn:
Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/
Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/
Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.

Dec 11, 2023 • 1h 7min
#250 - Demystifying Blockchain Identity with Jay Schulman of RSM
In this episode of the Identity at the Center Podcast, Jim and Jeff interview Jay Schulman, Principal and lead for the Blockchain and Cryptocurrencies Practice at RSM US. They delve into various aspects of blockchain technology in the context of identity management. The conversation covers topics such as the fundamentals of blockchain, the importance of the immutable ledger aspect, use cases and limitations in identity, the concept of "THE" blockchain, the building blocks of a blockchain, the relevance of Pretty Good Privacy (PGP) in blockchain identity, the comparison between PGP and blockchain in digital identity, the role of blockchain in validating geographic locations, the availability of blockchain identity management systems, the move towards replacing passwords with private keys, and the challenges of verifying the authenticity of digital content in an AI-generated world. Tune in to explore the potential use cases and implications of blockchain technology in the realm of identity management.
Connect with Jay: https://www.linkedin.com/in/jschulman/
Learn more about RSM US: https://rsmus.com/
Connect with us on LinkedIn:
Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/
Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/
Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.

Dec 4, 2023 • 1h 9min
#249 - Cyber Insurance with Jason Rebholz of Corvus Insurance and YouTube’s Teach Me Cyber
In this episode of the Identity at the Center (IDAC) podcast, hosts Jim McDonald and Jeff Steadman have an in-depth discussion about cyber insurance with guest Jason Rebholz, Chief Information Security Officer at Corvus Insurance. Jason also hosts the popular Teach Me Cyber YouTube channel and shares his journey into security content creation.
Topics covered around cyber insurance include an overview of what it is, what protections it offers, what type of companies need it, as well as best practices for completing applications. They discuss key security controls that insurance carriers look for, with a focus Multi-Factor Authentication (MFA), Endpoint Detection and Response (EDR), and resilient backups.
Jason offers perspective into the evolving role of insurance providers, not just in paying claims, but in coordinating incident response and providing value-added services to policyholders. This includes recommending and connecting customers to vetted vendors, reviewing response costs, and helping plan remediation efforts.
Other discussion areas include common mistakes applicants make on cyber insurance questionnaires and how to provide proper context to underwriters. The group also talks through emerging technologies like Privileged Access Management (PAM) and AI that enterprises should be aware of.
On the lighter side, Jason shares his passion for indoor rock climbing and how the sport connects to his work in security with skills like problem solving, mental mapping, and dealing with constant change.
Connect with Jason: https://www.linkedin.com/in/jrebholz/
Teach Me Cyber on YouTube: https://www.youtube.com/@teachmecyber
Weekend Byte Newsletter: weekendbyte.teachmecyber.com
Learn more about Corvus Insurance: https://www.corvusinsurance.com/
Identiverse Regional Event - Chicago: https://bit.ly/IDVR23-IDAC
Connect with us on LinkedIn:
Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/
Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/
Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.

Nov 27, 2023 • 1h 2min
#248 - Decentralized Identity with the Identity Woman Kaliya Young
In episode #248 of the Identity at the Center Podcast, hosts Jim McDonald and Jeff Steadman welcome special guest Kaliya Young, also known as the Identity Woman. They dive into the fascinating world of decentralized identity and explore its challenges and potential. Kaliya shares her journey into the field of identity, her involvement in founding the Internet Identity Workshop, and her work with the Identosphere newsletter. The conversation covers topics such as the hurdles faced by governments in implementing decentralized identity, the definition of decentralized identity, and the competition between decentralized identity standards. Kaliya also discusses her recent blog post on digital wallets and provides insights on the global nature of identity standards and the politics involved in their development. The conversation wraps up on a lighter note, with Kaliya sharing her best and worst water polo moments as a member of the Canadian national team.
Connect with Kaliya: https://www.linkedin.com/in/kaliya/
Blog “Exploring Approaches to Digital Wallets”: https://medium.com/@identitywoman-in-business/exploring-approaches-to-digital-wallets-c1824c90480a
Learn more about Identity Woman: https://identitywoman.net/
Book “The Domains of Identity: A Framework for Understanding Identity Systems in Contemporary Society (Anthem Ethics of Personal Data Collection)”: https://www.amazon.com/Domains-Identity-Understanding-Contemporary-Collection/dp/1785274910/ref=sr_1_2?crid=190EJVT5Q9G6J&keywords=kaliya+young&qid=1700589700&sprefix=kaliya+young%2Caps%2C114&sr=8-2
Book “A Comprehensive Guide to Self Sovereign Identity”: https://www.amazon.com/Comprehensive-Guide-Self-Sovereign-Identity-ebook/dp/B07Q3TXLDP/ref=sr_1_3?crid=190EJVT5Q9G6J&keywords=kaliya+young&qid=1700589700&sprefix=kaliya+young%2Caps%2C114&sr=8-3
Identosphere newsletter: https://newsletter.identosphere.net/
Internet Identity Workshop (IIW): https://internetidentityworkshop.com/
Register for the free NYC and Chicago Identiverse regional events here: https://bit.ly/IDVR23-IDAC
Connect with us on LinkedIn:
Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/
Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/
Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.

Nov 20, 2023 • 1h 4min
#247 - Big Areas of Identity to Solve with Matt Caulfield of Cisco
In this episode of the Identity at the Center Podcast, hosts Jim McDonald and Jeff Steadman are joined by special guest Matt Caulfield, Founder and CEO of Oort (now part of Cisco). They dive into various topics related to identity and discuss the big areas that need to be addressed in the field. They explore the challenges in Identity Threat Detection & Response (ITDR), the data plane side of identity, machine identity, and entitlement entropy. Matt shares his insights and expertise on these subjects, shedding light on the key issues and potential solutions. The conversation also touches on Matt's journey into the field of identity and how his role at Cisco has evolved with the acquisition. They wrap up the episode on a lighter note, asking Matt about his dream business related to outdoor adventures.
Connect with Matt: https://www.linkedin.com/in/mcaulfie/
Learn more about Oort: https://oort.io/
Register for the free NYC and Chicago Identiverse regional events here: https://bit.ly/IDVR23-IDAC
Connect with us on LinkedIn:
Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/
Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/
Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.

Nov 13, 2023 • 55min
#246 - IDAC Mailbag - Halloween 2023 Edition
In this episode of the Identity at the Center Podcast, hosts Jim McDonald and Jeff Steadman dive into the world of Identity and Access Management (IAM) with their mailbag segment. They answer thought-provoking questions from listeners around the globe, discussing topics such as integrating IAM with legacy systems, emerging trends in IAM, the role of artificial intelligence in IAM, user-friendly IAM solutions, inclusive and accessible IAM, and managing machine identities at scale in microservices and containerized environments.
Jim and Jeff also share interesting experiences from their week, including showcasing the differences in IAM consulting between them and conducting an IAM workshop for those seeking to learn more about IAM. They also touch on the new AI Beatles song and wrap up the episode with a lighthearted discussion on favorite backyard BBQ party games.
Connect with us on LinkedIn:
Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/
Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/
Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.

Nov 6, 2023 • 57min
#245 - Taking IAM to the Bank with Dave Middleton of Bank of America
In this episode of the Identity at the Center Podcast, Jim and Jeff welcome Dave Middleton, Senior Vice President at Bank of America responsible for IAM and Cryptography Product Management. Dave shares his insights on various topics related to identity and access management (IAM). The episode begins with a discussion on how Dave got into the field of identity and the role of a product manager. Dave also talks about his conference experiences and the importance of balancing security and usability in IAM solutions. The conversation then delves into the difference between digital identity and IAM, as well as the evolving landscape of Identity Governance and Administration (IGA). Dave provides his thoughts on risk-based access governance and the role of technologies like Zero Standing Privilege (ZSP) and User Behavior Analytics (UBA). To wrap up the episode on a lighter note, Dave is asked to choose a universe to live in between The Walking Dead, Game of Thrones, and The Matrix.
Connect with Dave: https://www.linkedin.com/in/davidmidd/
Learn more about Year Up: https://www.yearup.org/
Connect with us on LinkedIn:
Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/
Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/
Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.

Nov 3, 2023 • 28min
#244 - Authenticate 2023: Identity at the Center Live
In this special episode of the Identity at the Center podcast, hosts Jim and Jeff take the stage in front of a live audience as part of the opening keynote at Authenticate 2023. Joined by three esteemed identity product managers, Mahendar from Ebay, Daniel from TikTok, and Christiaan from Google, they delve into a captivating discussion on the adoption of FIDO authentication, with a particular focus on passkeys. The hosts and guests share valuable insights into their roles at their respective organizations and provide firsthand experiences with implementing FIDO. The conversation covers a range of topics, from the early adoption of WebAuthN by Ebay to Google's recent transition to passkey by default. The audience gains exclusive access to the guests' perspectives on TikTok's decision to embrace FIDO and the roadblocks encountered during passkey adoption. Additionally, the hosts and guests explore the potential impact of AI on authentication in the future. Amidst the insightful conversation, the hosts also lighten the atmosphere with some lighthearted banter, discussing their hobbies and sharing personal experiences such as hiking Yosemite's half-dome. Tune in to discover which song Daniel would perform to go viral on TikTok and automatically enroll everyone in passkeys, and find out which of the three hosts found it most challenging to learn guitar, play golf, or navigate the world of digital identity.
Christiaan Brand from Google: https://www.linkedin.com/in/christiaan-brand-57373a5/
Daniel Grube from TikTok: https://www.linkedin.com/in/daniel-grube-b5118993/
Mahendar Madhavan from Ebay: https://www.linkedin.com/in/mahendarmadhavan/
Connect with us on LinkedIn:
Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/
Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/
Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.

Nov 1, 2023 • 1h 4min
#243 - Authenticate 2023: UX with Ori Eisen of Trusona
In this episode of the Identity at the Center Podcast, hosts Jim McDonald and Jeff Steadman dive into the world of passkeys with special guest Ori Eisen, Founder & CEO at Trusona. They explore the importance of user experience (UX) in passkeys, Trusona's role in the IAM market, and the significance of FIDO in the industry. Ori also shares insights on his philanthropic initiatives, Thorn and Ball to All. Tune in for a fascinating discussion on passwordless authentication and more.
Connect with Ori: https://www.linkedin.com/in/orieisen/
Learn more about Trusona: https://www.trusona.com/
Thorn: https://www.thorn.org/
Ball to All: https://www.balltoall.org/
Connect with us on LinkedIn:
Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/
Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/
Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.