

The Analyst Brief
The Cyber Hut
"The Analyst Brief" is focused on providing expert and impartial commentary and analysis on the global identity security market. Hosts Simon Moffatt (Founder at The Cyber Hut) and David Mahdi (ex-Gartner Analyst and CISO Advisor) provide deep dive comment and opinion on some of the most exciting trends within the identity security, IAM and cyber sectors.
For more information on The Cyber Hut visit https://www.thecyberhut.com/
For more information on The Cyber Hut visit https://www.thecyberhut.com/
Episodes
Mentioned books

Nov 13, 2025 • 1h 6min
E65 - ConductorOne funding, Ping + Keyless, JumpCloud + Breez Security, Imprivata + Verosint, Twilio + Stytch
SummaryIn this episode of the Analyst Brief podcast, Simon Moffatt and David Mahdi discuss the latest trends in identity security, including recent funding rounds and acquisitions. They explore the growing importance of identity governance, the intersection of security and identity management, and the role of trust in the age of AI. The conversation also touches on the significance of ITDR and the implications of recent acquisitions for the market. The hosts reflect on the future of identity security and the need for continuous innovation in this evolving landscape.Chapters00:00 Introduction to the Analyst Brief Podcast03:03 Autumn Conference Season Insights06:05 Funding and Acquisitions in Identity Governance08:59 The Growing Complexity of Identity Governance12:01 The Intersection of Security and Identity14:49 The Future of Cybersecurity and Identity Integration17:42 Understanding the Broader Ecosystem of Cybersecurity21:04 The Importance of Protecting All Identities23:53 First Principles in Cybersecurity Strategy29:10 Navigating Resilience and Availability in Security29:56 Funding Trends in Identity Security31:45 The Impact of Acquisitions on Identity Security32:13 Twilio's Acquisition of Stitch: A New Era in Identity36:33 Building Trust in the Age of AI39:21 Zero Trust: Establishing and Maintaining Trust44:14 Ping Identity's Acquisition of Keyless: Innovations in Biometric Authentication55:11 JumpCloud Acquires Breeze Security: Enhancing ITDR Solutions59:54 Improvata's Strategic Moves in Identity SecurityKeywordsidentity security, funding, acquisitions, AI, trust, governance, ITDR, cybersecurity, authentication, market trends

Oct 21, 2025 • 52min
E64 - The Growing Impact of Digital Dependency
KeywordsAWS outage, digital dependency, business continuity, FIDO, authentication, passkeys, digital certificates, threat informed defense, false positives, cyber resilienceSummaryIn this episode of the Analyst Brief Podcast, Simon Moffatt and David Mahdi discuss the recent AWS outage and its implications on digital dependency and business continuity. They explore the importance of disaster recovery plans and the evolving landscape of authentication technologies, particularly focusing on the FIDO Authenticate Conference. The conversation delves into the lifecycle of passkeys and digital certificates, emphasizing the need for threat-informed defense strategies and the challenges of managing false positives in security. The episode concludes with a call for better integration of systems and shared intelligence across the industry.Chapters00:00 Introduction and Global Outage Discussion03:01 The Impact of Digital Dependency06:00 Business Continuity and Disaster Recovery09:10 FIDO Authenticate Conference Overview16:09 Evolution of Authentication Technologies21:45 The Lifecycle of Passkeys and Digital Certificates29:59 Threat Informed Defense and False Positives39:55 Conclusion and Future Considerations

Oct 10, 2025 • 49min
E63 - Are Identity Platforms Legacy? The Rise of Identity Information Flows
KeywordsPAM, IGA, CyberArk, Palo Alto, identity security, AI, machine identity, cybersecurity, information flows, behavioral analysisSummaryIn this episode of the Analyst Brief Podcast, Simon Moffatt and David Mahdi discuss the significant changes in the cybersecurity landscape, particularly focusing on Privileged Access Management (PAM) and Identity Governance and Administration (IGA). They explore the recent acquisition of CyberArk by Palo Alto, the evolution of identity security, and the convergence of various identity management solutions. The conversation highlights the importance of information flows, and the need for a mindset shift in the industry to effectively address identity security challenges. TakeawaysThe cybersecurity landscape is rapidly changing due to AI.PAM and IGA are evolving but remain siloed.The acquisition of CyberArk by Palo Alto signifies a shift in identity security.Organizations struggle with integrating disparate identity technologies.Behavioral analysis is crucial for identifying security threats.AI will play a significant role in optimizing identity security.Defensive acquisitions are common in the cybersecurity industry.The future of identity security relies on understanding information flows.Chapters00:00 Welcome Back and Industry Changes02:01 The Evolution of Privileged Access Management (PAM)10:41 The Convergence of Cybersecurity and Identity16:13 The Future of Identity Management Platforms24:23 Understanding Information Flows in Cybersecurity28:12 The Role of AI in Identity Management33:42 Navigating Mergers and Acquisitions in Tech39:50 The Future of Identity Security and AI Integration

May 14, 2025 • 57min
E62 - Analyst Mashup Episode with Francis Odum, Dave Mahdi and Simon Moffatt
Francis Odum, founder of Software Analyst Cyber Research and a global cyber thought leader, joins the conversation. They delve into key insights from the RSA Conference 2025, where the hype around AI meets the reality of cybersecurity challenges. Topics include the critical role of identity security in mitigating risks and the emerging necessity for new identity types in AI. The discussion also covers how AI can enhance security processes, the evolving landscape of data security, and the importance of 'secure by design' principles for future-proofing measures.

Apr 25, 2025 • 48min
E61 - RSA Conference 2025 Predictions / Security for AI / Funding Rounds for AuthMind, Push Security & UnoSecur
KeywordsRSA Conference, Identity Security, AI in Cybersecurity, Cybersecurity Trends, Identity Management, Funding in Cybersecurity, Observability, AI Security, Cyber Threats, Identity Protection, cybersecurity, identity protection, AI trends, discovery, observability, response strategies, browser security, identity security, ITDR, innovationChapters00:00 Introduction to RSA Conf 2025 and Anticipation03:01 The Importance of Identity at RSA05:55 AI's Role in Cybersecurity08:55 Challenges in AI Security11:58 Funding Trends in Identity Protection15:04 Observability in Identity Management25:31 The Importance of Discovery in Cybersecurity28:02 Innovative Approaches to Identity Protection35:12 Emerging Trends in AI and Identity Security41:03 The Future of AI in CybersecurityLinksAuthMind Funding RoundPush Security Funding RoundUnosecur Funding Round

Feb 18, 2025 • 50min
E60 - SGNL $30m Raise / What is Identity Security / IAM Standards / Behaviour Monitoring
SummaryThis episode explores the importance of standards, the role of identity in cybersecurity, and the challenges faced by organizations in managing identity security effectively. The conversation highlights the need for innovation and collaboration in the identity space, as well as the critical nature of identity being an attack surface - especially vendors in the JML firing line. How can behaviour monitoring help?Keywordsidentity security, funding news, leadership changes, market trends, cybersecurity, access management, identity governance, AI in security, standards in identity, identity as a service, identity management, security controls, behavioral analysis, customer experience, identity standards, identity security, digital identity, identity governance, cybersecurity, identity threatsChapters00:00 Introduction 03:12 Market News: Funding and Innovations12:37 Leadership Changes in Identity Security14:04 The Evolution of Identity Security24:11 Identity as a Strategic Business Element25:57 The Security Landscape and Vendor Commitments28:00 Evolving Security Controls in Identity Management30:11 Behavioral Analysis: The Missing Piece32:00 The Strategic Importance of Identity Management34:03 Identity as a Brand and Customer Experience35:58 The Maturity of Identity Solutions37:56 Decoupling User Experience from Identity Security39:49 Complexity in Identity Standards and Security44:07 Emerging Threats and the Need for Standards

Feb 4, 2025 • 41min
E59 - Token Security Funding / Jumpcloud + Stack Identity / Identity Data Management
Summary
In this episode of the Analyst Brief Podcast, Simon and Dave return to discuss the latest funding trends in identity security, the rise of non-human identity (NHI), and the importance of governance and data management in identity solutions.
Useful Links:
Token Security raise $20 million
Jumpcloud acquires Stack Identity
AI Prompt Engineering Protection
Keywords
identity security, funding, non-human identity, governance, AI, identity management, chief data officer, AI, identity security, prompt engineering, content authenticity, digital transformation, business opportunities
Chapters
00:00 Introduction and Podcast Evolution
03:04 Funding Trends in Identity Security
08:43 The Rise of Non-Human Identity (NHI)
15:03 Governance and Identity Data Management
23:38 Emerging Trends in Data Technology
26:20 The Role of Chief Data Officers
30:12 AI's Impact on Identity and Security
32:38 Navigating the Challenges of AI and Data Authenticity

Oct 8, 2024 • 41min
E58 - Microsoft SFI / Okta SIC / Funding for Apono, Hydden and P0 Security
Summary
In this episode, Simon and David Mardy discuss the rapidly evolving landscape of identity security, highlighting significant trends, initiatives from major tech companies, and the importance of cyber resilience. They explore the recent funding rounds for startups in the identity space, emphasizing the need for innovative solutions to address ongoing challenges in identity governance and access management. The conversation underscores the critical role of identity security in today's digital business environment and the necessity for organizations to adapt to emerging threats.
Keywords
identity security, access management, cyber resilience, Microsoft, Okta, funding rounds, identity governance, PAM, IGA, cybersecurity
Links
Microsoft Secure Future Initiative
Okta Secure Identity Commitment
Apono $15m funding
Hydden $4m funding
P0 Security $15m funding

Sep 17, 2024 • 31min
E57 - Back to School 2024 Episode
Summary
In this episode of the Week in Identity podcast, Simon and David discuss the latest trends and developments in identity security, including market activity, funding rounds, and significant acquisitions. They delve into the importance of NIST guidelines, the rise of non-human identity (NHI), and the implications of recent acquisitions by MasterCard and Salesforce. The conversation highlights the evolving landscape of identity management and the critical need for organizations to adapt to new challenges in cybersecurity.
Chapters
00:00 Introduction to the Week in Identity Podcast
03:52 NIST Guidelines and Identity Assurance
06:30 Aembit Funding Rounds and Non-Human Identity
13:42 Acquisitions in Identity: IndyKite and 3Edges
20:17 MasterCard and Recorded Future
26:39 Salesforce and Own Data

Jul 19, 2024 • 43min
E56 - Emergency Episode Discussing the Global Crowdstrike Issue
Simon and David convene for a special episode to discuss the ongoing global IT outages caused by a Crowdstrike update. Note this was released Friday 19th July 9am PST / 5pm BST


