
Identity at the Center
Identity at the Center is a weekly podcast all about identity security in the context of identity and access management (IAM). With decades of real-world IAM experience, hosts Jim McDonald and Jeff Steadman bring you conversations with news, topics, and guests from the identity management industry. Do you know who has access to what?
Latest episodes

Jun 24, 2024 • 57min
#291 - Identity Bubbles with Justin Richer
In this lively episode of the Identity at the Center podcast, hosts Jim McDonald and Jeff Steadman kick things off with a humorous mishap involving Jim's tech setup before diving into the latest happenings. They discuss the sweltering summer heat, Jim's recent "Greatest Dad of All Time" award, and their upcoming plans for Identity Week in Washington, DC.
The highlight of the episode is a deep dive into the concept of "Federation Bubbles" with special guest Justin Richer, Security and Standards Architect and Founder of Bespoke Engineering. Justin explains the idea behind federation bubbles, a dynamic system designed to handle identity management in disconnected or disadvantaged environments. They explore real-world applications, such as military operations and disaster recovery scenarios, where traditional identity systems fall short.
Justin also shares updates on his recent work, including the GNAP protocol and HTTP Message Signatures, and his involvement with the IETF's new working group, WIMSE (Workload Identity in Multi-System Environments). The conversation touches on the challenges and potential of these emerging identity standards, as well as the importance of context and trust in identity management.
The episode wraps up on a lighter note with a discussion about Justin's board game project, "Natturuval" and the latest edition of "Cards Against Identity."
Connect with Justin: https://www.linkedin.com/in/justinricher/
Learn more about Bespoke Engineering: https://bspk.io/
Workload Identity in Multi System Environments (WIMSE): https://datatracker.ietf.org/wg/wimse/about/
SPIFFE: https://spiffe.io
Natturuval: https://gamefound.com/en/projects/bespoke-games/natturuval
Cards Against Identity: https://bspk.io/games/cards/
Attending Identity Week in Europe, America, or Asia? Use our discount code IDAC30 for 30% off your registration fee! Learn more at:
Europe: https://www.terrapinn.com/exhibition/identity-week/
America: https://www.terrapinn.com/exhibition/identity-week-america
Asia: https://www.terrapinn.com/exhibition/identity-week-asia/
Connect with us on LinkedIn:
Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/
Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/
Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.
🔑 Episode Keywords
Podcasting Equipment, Identity Management, Conference Recording, Summer Heat, Air Conditioning, Traveling For Work, Hotel Wifi, Father's Day Award, Identity Week Conference, Discount Code, Washington, Dc, Sandwich Shop Potbelly, Holocaust Museum, Uber Ether, Department Of Defense, Federation Bubbles, Workload Identity, Ietf Working Group, Spiffy Protocol, Board Game Natturuval

Jun 17, 2024 • 1h 1min
#290 - Digital Trust with Joni Brennan of DIACC
In this engaging episode of the Identity at the Center podcast, hosts Jim McDonald and Jeff Steadman sit down with special guest Joni Brennan, President at the Digital ID and Authentication Council of Canada (DIACC). They dive deep into the intricacies of digital wallets, the evolving landscape of digital identity, and the importance of choice and trust in identity solutions. Joni shares her insights from the European Identity & Cloud Conference (EIC) and discusses the significance of the Pan-Canadian Trust Framework in de-risking digital identity adoption.
The conversation covers a wide range of topics, including the challenges of standardizing digital wallets, the role of certification in building trust, and the importance of user choice in identity solutions. Joni also provides a fascinating look into her career journey and the evolution of identity standards from the days of the Liberty Alliance to the present.
The episode wraps up with a fun discussion on underrated music acts, highlighting the hosts' and guest's diverse musical tastes.
Connect with Joni: https://www.linkedin.com/in/jonibrennan
Learn more about the Digital Identification and Authentication Council of Canada (DIACC): https://diacc.ca/
Pan-Canadian Trust Framework: https://diacc.ca/trust-framework/
Digital Identity Perspectives Research: https://diacc.ca/2023/04/20/canadians-continue-to-demand-transparency-and-control-over-personal-data/
Our Public Trust Forum Report: https://diacc.ca/2023/10/31/securing-canadas-digital-prosperity-building-trust-in-verification-and-credentials-is-a-shared-imperative/
DIACC's Trust Talks & Digital Dives podcast: https://diacc.ca/podcasts/
Attending Identity Week in America, or Asia? Use our discount code IDAC30 for 30% off your registration fee! Learn more at:
America: https://www.terrapinn.com/exhibition/identity-week-america
Asia: https://www.terrapinn.com/exhibition/identity-week-asia/
Connect with us on LinkedIn:
Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/
Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/
Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.
🔑 Episode Keywords
Digital Identity, Authentication, Authorization, Digital Wallets, Identity Management, Iam, Saml, Federation, Digital Trust, Verifiable Credentials, Identity Verification, Identity Proofing, Digital Economy, Risk Management, Trust Framework, Podcast, Identity Standards, Ai In Identity, Identity Ecosystem, Privacy And Security

Jun 10, 2024 • 1h 5min
#289 - DevOps Insights at Texas A&M University with Adam Mikeal
In this episode of the Identity at the Center podcast, hosts Jeff and Jim return from Identiverse 2024 and share their experiences from the conference held in Las Vegas. They discuss notable moments, including unique conference swag and memorable interactions. Special guest Adam Michael, CISO and adjunct professor at Texas A&M University, joins the conversation to discuss the evolution of identity management to identity security at the university. Adam delves into the complexities of managing identity in a higher education environment and shares insights on implementing DevOps practices. The episode covers topics like AI's impact on teaching, infrastructure as code, ROI of identity security projects, and the challenges and benefits of centralizing IT services.
Connect with Adam: https://www.linkedin.com/in/amikeal/
The Phoenix Project (book): https://www.amazon.com/Phoenix-Project-DevOps-Helping-Business/dp/0988262592
Attending Identity Week in Europe, America, or Asia? Use our discount code IDAC30 for 30% off your registration fee! Learn more at:
Europe: https://www.terrapinn.com/exhibition/identity-week/
America: https://www.terrapinn.com/exhibition/identity-week-america
Asia: https://www.terrapinn.com/exhibition/identity-week-asia/
Connect with us on LinkedIn:
Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/
Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/
Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.
🔑 Episode Keywords
Higher Education, Identity Security, Devops, Iam, Identity Management, Identity Governance, Zero Trust, Texas A&M University, Identity Infrastructure, Digital Identity, Cybersecurity, Cloud Technology, Commercial Identity Systems, Identity Authentication, Federated Identity, Identity Lifecycle, Identity Verification, Identity Apis, Identity And Access Management, Identity Solutions

Jun 7, 2024 • 50min
#288 - Identiverse 2024: Ian Glazer & Alex Bovee & Lance Peterman
In this engaging episode, hosts Jim McDonald and Jeff Steadman wrap up their Identiverse 2024 experience with a thought-provoking panel discussion. Joined by Alex Bovee, CEO and Co-Founder of ConductorOne; Ian Glazer, Founder and President of Weave Identity; and Lance Peterman, Identity Lead at Dick's Sporting Goods and Professor at UNC Charlotte, the conversation dives deep into the future of identity management.
The panel explores the concept of Zero Standing Privileges (ZSP) as the evolution of least privilege, discussing its feasibility, operational challenges, and the maturity curve required for organizations to adopt such a model. Ian shares his perspective on the future of identity governance, while Alex and Lance provide insights into practical implementations and the role of automation in achieving ZSP. The discussion also touches on the importance of context, policy, and the need for better data orchestration to make identity management more effective.
Tune in for an insightful conversation on the next frontier of identity management and the steps needed to get there.
Connect with Alex Bovee - https://www.linkedin.com/in/alexbovee/
Learn about ConductorOne - https://www.conductorone.com/?utm_source=identityatthecenter&utm_medium=podcast&utm_campaign=c1-brand
Connect with Ian: https://www.linkedin.com/in/iglazer/
Learn about Weave Identity - https://weaveidentity.com/
Connect with Lance - https://www.linkedin.com/in/lancepeterman/
Attending Identity Week in Europe, America, or Asia? Use our discount code IDAC30 for 30% off your registration fee! Learn more at:
Europe: https://www.terrapinn.com/exhibition/identity-week/
America: https://www.terrapinn.com/exhibition/identity-week-america
Asia: https://www.terrapinn.com/exhibition/identity-week-asia/
Connect with us on LinkedIn:
Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/
Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/
Visit the show on the web at http://idacpodcast.com and watch at https://www.youtube.com/@idacpodcast
🔑 Episode Keywords
Zero Standing Privileges, Identity Management, Access Control, Automation In Identity, Identity Governance, Privileged Access Management, Cybersecurity, Identity And Security Professionals, Identity Maturity Curve, Identity At The Center, Role-Based Access Control (Rbac), Identity And Access Management (Iam), Identity Protocols, Identity Fabric, Identity Data Orchestration, Ephemeral Access, Identity Automation, Identity Governance And Administration (Iga), Identity Signals, Identity Policy Construction

Jun 6, 2024 • 49min
#287 - Identiverse 2024: Andrew Shikiar from the FIDO Alliance
In this episode, hosts Jim McDonald and Jeff Steadman welcome Andrew Shikiar, Executive Director & CEO at the FIDO Alliance, for his 7th appearance on the Identity at the Center Podcast. They discuss what's new with the FIDO alliance and what to expect from the upcoming Authenticate event. The conversation also includes some yet to be determined topics. Don't miss out on this insightful discussion!
In this episode of Identity at the Center, hosts Jim McDonald and Jeff Steadman sit down with Andrew Shakira, Executive Director of the FIDO Alliance, at Identiverse 2024. They explore the myths and realities of FIDO adoption in the banking sector, discuss the growth and impact of the FIDO Alliance, and delve into the latest developments in passwordless authentication and passkeys.
Andrew shares insights into how FIDO is reducing identity-related fraud and the role of certifications in ensuring security and interoperability. The conversation also covers the importance of usability in multi-factor authentication (MFA) and the challenges and opportunities of implementing FIDO in various environments, from first responders to prisons.
The episode wraps up with a look ahead to the Authenticate conference, emphasizing the collaborative and supportive nature of the identity community. Tune in for a comprehensive discussion on the state of identity authentication and the future of passwordless security.
Connect with Andrew: https://www.linkedin.com/in/andrewshikiar/
Learn more about the FIDO Alliance: https://fidoalliance.org/
Attending Identity Week in Europe, America, or Asia? Use our discount code IDAC30 for 30% off your registration fee! Learn more at:
Europe: https://www.terrapinn.com/exhibition/identity-week/
America: https://www.terrapinn.com/exhibition/identity-week-america
Asia: https://www.terrapinn.com/exhibition/identity-week-asia/
Connect with us on LinkedIn:
Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/
Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/
Visit the show on the web at http://idacpodcast.com and watch at https://www.youtube.com/@idacpodcast
🔑 Episode Keywords
Identity Management, Fido Alliance, Passkeys, Cybersecurity, Biometric Authentication, User Experience, Identity Fraud, Compliance, Multi-Factor Authentication, Identiverse 2024, Certification, Fdic Guidelines, Digital Identity, Authentication Standards, Connected Devices, Security Keys, Identity Verification, Liveness Detection, Technology Adoption, Cyber Risk

Jun 5, 2024 • 38min
#286 - Identiverse 2024: The Kim Cameron Award Winners
In this episode, hosts Jim McDonald and Jeff Steadman are live from Identiverse 2024, where they catch up with old friends and meet new faces. They dive into the highlights of the conference, including the overwhelming support from listeners and the buzz around Jim's infamous jacket.
Joining them are Ian Glazer, Arynn Crow, and Allan Foster from the Digital Identity Advancement Foundation (DIAF), along with Kim Cameron Award winners Sophie Bennani-Taylor and Matthew Spence. The discussion covers the mission of DIAF, the impact of the Kim Cameron Award, and the personal journeys of Sophie and Matthew in the digital identity space.
Listeners get a glimpse into the experiences of the award winners at Identiverse, their thoughts on digital identity, and their favorite moments from the conference. The episode wraps up with fun anecdotes about their time in Las Vegas, including an escape room adventure and culinary highlights.
Learn more about the Digital Identity Advancement Foundation (DIAF) and how you can contribute - https://diaf.link/donate
Ian Glazer - https://www.linkedin.com/in/iglazer/
Arynn Crow - https://www.linkedin.com/in/arynn-crow-821761103/
Allan Foster - https://www.linkedin.com/in/allanfoster/
Kim Cameron award recipients:
Sophie Bennani-Taylor - https://www.linkedin.com/in/0sophie-taylor/
Matthew Spence - https://www.linkedin.com/in/spence-m/
TechCongress - https://www.techcongress.io/congressional-innovation-fellowship
Jim’s Jacket - https://www.amazon.com/dp/B07ZD8NGWZ
Attending Identity Week in Europe, America, or Asia? Use our discount code IDAC30 for 30% off your registration fee! Learn more at:
Europe: https://www.terrapinn.com/exhibition/identity-week/
America: https://www.terrapinn.com/exhibition/identity-week-america
Asia: https://www.terrapinn.com/exhibition/identity-week-asia/
Connect with us on LinkedIn:
Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/
Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/
Visit the show on the web at http://idacpodcast.com and watch at https://www.youtube.com/@idacpodcast
🔑 Episode Keywords
Digital Identity, Iam, Cybersecurity, Diaf, Kim Cameron Award, Digital Identity Advancement Foundation, Identiverse, Rsm Cyber Risk Alliance, Identity Conference, Technology Policy, Cybersecurity Education, Digital Sociology, Tech Congress, Digital Ethics, Identity Enablement, Professional Networking, Digital Identity Standards, Identity Innovation, Digital Id World Conference, Identity Community

Jun 4, 2024 • 55min
#285 - Identiverse 2024: Danny de Vreeze from Thales OneWelcome
In this episode, hosts Jim McDonald and Jeff Steadman are live from Identiverse in Las Vegas, engaging in a lively conversation with Danny de Vreeze, VP of Identity and Access Management at Thales. They dive deep into the transformative potential of AI in identity management, discussing how conversational AI can revolutionize user interactions by enabling non-technical people to ask business questions and get comprehensible answers. Danny shares his extensive 25-year journey in the IAM field, from the early days of enterprise portals to the complexities of managing identities in today's cloud-based environments.
The discussion also touches on the evolution of customer identity and access management (CIAM) and the importance of making access frictionless and secure. Danny explains how Thales integrates various IAM technologies, including biometrics and secure access, to create a comprehensive identity solution. The episode wraps up with a light-hearted debate on whether Las Vegas is overrated or underrated as a conference destination.
Connect with Danny: https://www.linkedin.com/in/dannydevreeze/
Learn more about Thales OneWelcome: https://www6.thalesgroup.com/b2b-identity-management?utm_source=Podcast_center&utm_campaign=B2B_IAM
Attending Identity Week in Europe, America, or Asia? Use our discount code IDAC30 for 30% off your registration fee! Learn more at:
Europe: https://www.terrapinn.com/exhibition/identity-week/
America: https://www.terrapinn.com/exhibition/identity-week-america
Asia: https://www.terrapinn.com/exhibition/identity-week-asia/
Connect with us on LinkedIn:
Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/
Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/
Visit the show on the web at http://idacpodcast.com and watch at https://www.youtube.com/@idacpodcast
🔑 Episode Keywords
Ai In Business, Openai, Chatgpt, Google Ai Gemini, Prompt Engineering, Identity And Access Management, Iam, Zero Trust, Blockchain, Cybersecurity, Digital Identity, Customer Consent, Gdpr Compliance, Cloud-Based Iam, B2B Identity Management, Thales Identity Solutions, Progressive Profiling, Conversational Ai, Data Privacy, Ai-Driven Business Solutions

Jun 3, 2024 • 54min
#284 - Identiverse 2024: George Roberts from McDonald’s
In episode 284 of the Identity at the Center Podcast, hosts Jim McDonald and Jeff Steadman sat down with George Roberts, Global Access & Identity Director at McDonald’s at Identiverse 2024. The discussion started with George's journey into the field of identity, followed by a deep dive into his role at McDonald's, and his previous experiences at Identiverse. The highlight of the episode was his keynote at Identiverse titled “The Future of Authorization.” George also gave insights into his session “One McDonald’s Way: The Global Identity & Access Journey at McDonald's.” Stay tuned for this engaging conversation.
Connect with George: https://www.linkedin.com/in/sirtwist/
Attending Identity Week in Europe, America, or Asia? Use our discount code IDAC30 for 30% off your registration fee! Learn more at:
Europe: https://www.terrapinn.com/exhibition/identity-week/
America: https://www.terrapinn.com/exhibition/identity-week-america
Asia: https://www.terrapinn.com/exhibition/identity-week-asia/
Connect with us on LinkedIn:
Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/
Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/
Visit the show on the web at http://idacpodcast.com and watch at https://www.youtube.com/@idacpodcast

May 27, 2024 • 29min
#283 - Identiverse 2024 Pre-Conference Tailgate
In this episode, hosts Jim and Jeff talk about the Identiverse conference taking place this week in Las Vegas before diving into the Hypr report about the State of Passwordless Identity Assurance. They discuss the alarming statistics that 91% of breached organizations cite credential misuse or authentication weaknesses as a root cause, and the average cost of authentication-related breaches in the last 12 months was $5.48 million.
State of Passwordless Identity Assurance report by HYPR: https://www.hypr.com/resources/report-state-of-passwordless
Identiverse 2024: As an IDAC listener, you can register with 25% off by using code IDV24-IDAC25 at https://events.identiverse.com/identiverse2024/register?code=IDV24-IDAC25
Attending Identity Week in Europe, America, or Asia? Use our discount code IDAC30 for 30% off your registration fee! Learn more at:
Europe: https://www.terrapinn.com/exhibition/identity-week/
America: https://www.terrapinn.com/exhibition/identity-week-america
Asia: https://www.terrapinn.com/exhibition/identity-week-asia/
Connect with us on LinkedIn:
Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/
Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/
Visit the show on the web at http://idacpodcast.com and watch at https://www.youtube.com/@idacpodcast\\
🔑 Episode Keywords
Passwordless Authentication, Identity Access Management (Iam), Identity At The Center Podcast, Cybersecurity, Nist Recommendations, Multi-Factor Authentication (Mfa), Identity-Based Attacks, Azure Authenticator, Okta, Identity Verification, Credential Breaches, Identiverse Conference, Continuous Access Evaluation Profile (Cape), Shared Signals Framework (Ssf), Authentication Weaknesses, Cybercrime, Artificial Intelligence In Security, Identity Proofing, Legacy Applications Security, Identity Breach Costs

May 22, 2024 • 1h 22min
#282 - IDAC Sponsor Spotlight - RSM Digital Identity
On this episode of Identity at the Center, Jim McDonald and Jeff Steadman are joined by Chad Wolcott, Managing Director at RSM US LLP, to peel back the layers of the identity industry. They delve into the complexities of identity consulting, discussing the challenges and triumphs of implementing and managing IAM solutions. From Chad's early days of designing robots to Jim's arcade escapades, the trio shares their most unusual jobs and the lessons learned from their unique experiences.
They also tackle pressing topics like the future of passwordless authentication, the role of AI and analytics in identity, and the evolution of authorization from RBAC to dynamic access models. The conversation takes a turn into the realm of IAM horror stories, highlighting the pitfalls of over-engineering solutions and the importance of aligning with organizational change.
As they gear up for Identiverse, they share their excitement for reconnecting with industry peers, diving into sessions on AI and identity security, and enjoying the Vegas experience. Tune in for an insightful and candid discussion on the state of identity security, the potential of AI, and the power of automation in the ever-evolving IAM landscape.
Connect with Chad: https://www.linkedin.com/in/chad-wolcott/
Meet up with our RSM team at Identiverse 2024! Schedule at https://rsmus.com/events/2024-events/join-rsm-at-identiverse-2024.html
Learn more about RSM Digital Identity consulting: https://rsmus.com/services/risk-fraud-cybersecurity/cybersecurity-business-vulnerability/identity-and-access.html
Connect with us on LinkedIn:
Jim McDonald: https://www.linkedin.com/in/jimmcdonaldpmp/
Jeff Steadman: https://www.linkedin.com/in/jeffsteadman/
Visit the show on the web at idacpodcast.com and follow @IDACPodcast on Twitter.
🔑 Episode Keywords
Identity Security Practitioners, Data Breaches, Identity Access Management (Iam), Digital Identity, Identity At The Center Podcast, Access Control, Security Automation, Identity Governance, Passwordless Authentication, Biometrics, Fido Alliance, Multifactor Authentication (Mfa), Policy-Based Access Control (Pbac), Attribute-Based Access Control (Abac), Role-Based Access Control (Rbac), Ai In Identity Management, Identity Analytics, Identity Consulting, Rsm Us Llp, Identity Program Management