

The Analyst Brief
The Cyber Hut
"The Analyst Brief" is focused on providing expert and impartial commentary and analysis on the global identity security market. Hosts Simon Moffatt (Founder at The Cyber Hut) and David Mahdi (ex-Gartner Analyst and CISO Advisor) provide deep dive comment and opinion on some of the most exciting trends within the identity security, IAM and cyber sectors.
For more information on The Cyber Hut visit https://www.thecyberhut.com/
For more information on The Cyber Hut visit https://www.thecyberhut.com/
Episodes
Mentioned books

Oct 21, 2025 • 52min
E64 - The Growing Impact of Digital Dependency
KeywordsAWS outage, digital dependency, business continuity, FIDO, authentication, passkeys, digital certificates, threat informed defense, false positives, cyber resilienceSummaryIn this episode of the Analyst Brief Podcast, Simon Moffatt and David Mahdi discuss the recent AWS outage and its implications on digital dependency and business continuity. They explore the importance of disaster recovery plans and the evolving landscape of authentication technologies, particularly focusing on the FIDO Authenticate Conference. The conversation delves into the lifecycle of passkeys and digital certificates, emphasizing the need for threat-informed defense strategies and the challenges of managing false positives in security. The episode concludes with a call for better integration of systems and shared intelligence across the industry.Chapters00:00 Introduction and Global Outage Discussion03:01 The Impact of Digital Dependency06:00 Business Continuity and Disaster Recovery09:10 FIDO Authenticate Conference Overview16:09 Evolution of Authentication Technologies21:45 The Lifecycle of Passkeys and Digital Certificates29:59 Threat Informed Defense and False Positives39:55 Conclusion and Future Considerations

Oct 10, 2025 • 49min
E63 - Are Identity Platforms Legacy? The Rise of Identity Information Flows
KeywordsPAM, IGA, CyberArk, Palo Alto, identity security, AI, machine identity, cybersecurity, information flows, behavioral analysisSummaryIn this episode of the Analyst Brief Podcast, Simon Moffatt and David Mahdi discuss the significant changes in the cybersecurity landscape, particularly focusing on Privileged Access Management (PAM) and Identity Governance and Administration (IGA). They explore the recent acquisition of CyberArk by Palo Alto, the evolution of identity security, and the convergence of various identity management solutions. The conversation highlights the importance of information flows, and the need for a mindset shift in the industry to effectively address identity security challenges. TakeawaysThe cybersecurity landscape is rapidly changing due to AI.PAM and IGA are evolving but remain siloed.The acquisition of CyberArk by Palo Alto signifies a shift in identity security.Organizations struggle with integrating disparate identity technologies.Behavioral analysis is crucial for identifying security threats.AI will play a significant role in optimizing identity security.Defensive acquisitions are common in the cybersecurity industry.The future of identity security relies on understanding information flows.Chapters00:00 Welcome Back and Industry Changes02:01 The Evolution of Privileged Access Management (PAM)10:41 The Convergence of Cybersecurity and Identity16:13 The Future of Identity Management Platforms24:23 Understanding Information Flows in Cybersecurity28:12 The Role of AI in Identity Management33:42 Navigating Mergers and Acquisitions in Tech39:50 The Future of Identity Security and AI Integration

May 14, 2025 • 57min
E62 - Analyst Mashup Episode with Francis Odum, Dave Mahdi and Simon Moffatt
Francis Odum, founder of Software Analyst Cyber Research and a global cyber thought leader, joins the conversation. They delve into key insights from the RSA Conference 2025, where the hype around AI meets the reality of cybersecurity challenges. Topics include the critical role of identity security in mitigating risks and the emerging necessity for new identity types in AI. The discussion also covers how AI can enhance security processes, the evolving landscape of data security, and the importance of 'secure by design' principles for future-proofing measures.

Apr 25, 2025 • 48min
E61 - RSA Conference 2025 Predictions / Security for AI / Funding Rounds for AuthMind, Push Security & UnoSecur
KeywordsRSA Conference, Identity Security, AI in Cybersecurity, Cybersecurity Trends, Identity Management, Funding in Cybersecurity, Observability, AI Security, Cyber Threats, Identity Protection, cybersecurity, identity protection, AI trends, discovery, observability, response strategies, browser security, identity security, ITDR, innovationChapters00:00 Introduction to RSA Conf 2025 and Anticipation03:01 The Importance of Identity at RSA05:55 AI's Role in Cybersecurity08:55 Challenges in AI Security11:58 Funding Trends in Identity Protection15:04 Observability in Identity Management25:31 The Importance of Discovery in Cybersecurity28:02 Innovative Approaches to Identity Protection35:12 Emerging Trends in AI and Identity Security41:03 The Future of AI in CybersecurityLinksAuthMind Funding RoundPush Security Funding RoundUnosecur Funding Round

Feb 18, 2025 • 50min
E60 - SGNL $30m Raise / What is Identity Security / IAM Standards / Behaviour Monitoring
SummaryThis episode explores the importance of standards, the role of identity in cybersecurity, and the challenges faced by organizations in managing identity security effectively. The conversation highlights the need for innovation and collaboration in the identity space, as well as the critical nature of identity being an attack surface - especially vendors in the JML firing line. How can behaviour monitoring help?Keywordsidentity security, funding news, leadership changes, market trends, cybersecurity, access management, identity governance, AI in security, standards in identity, identity as a service, identity management, security controls, behavioral analysis, customer experience, identity standards, identity security, digital identity, identity governance, cybersecurity, identity threatsChapters00:00 Introduction 03:12 Market News: Funding and Innovations12:37 Leadership Changes in Identity Security14:04 The Evolution of Identity Security24:11 Identity as a Strategic Business Element25:57 The Security Landscape and Vendor Commitments28:00 Evolving Security Controls in Identity Management30:11 Behavioral Analysis: The Missing Piece32:00 The Strategic Importance of Identity Management34:03 Identity as a Brand and Customer Experience35:58 The Maturity of Identity Solutions37:56 Decoupling User Experience from Identity Security39:49 Complexity in Identity Standards and Security44:07 Emerging Threats and the Need for Standards

Feb 4, 2025 • 41min
E59 - Token Security Funding / Jumpcloud + Stack Identity / Identity Data Management
Summary
In this episode of the Analyst Brief Podcast, Simon and Dave return to discuss the latest funding trends in identity security, the rise of non-human identity (NHI), and the importance of governance and data management in identity solutions.
Useful Links:
Token Security raise $20 million
Jumpcloud acquires Stack Identity
AI Prompt Engineering Protection
Keywords
identity security, funding, non-human identity, governance, AI, identity management, chief data officer, AI, identity security, prompt engineering, content authenticity, digital transformation, business opportunities
Chapters
00:00 Introduction and Podcast Evolution
03:04 Funding Trends in Identity Security
08:43 The Rise of Non-Human Identity (NHI)
15:03 Governance and Identity Data Management
23:38 Emerging Trends in Data Technology
26:20 The Role of Chief Data Officers
30:12 AI's Impact on Identity and Security
32:38 Navigating the Challenges of AI and Data Authenticity

Oct 8, 2024 • 41min
E58 - Microsoft SFI / Okta SIC / Funding for Apono, Hydden and P0 Security
Summary
In this episode, Simon and David Mardy discuss the rapidly evolving landscape of identity security, highlighting significant trends, initiatives from major tech companies, and the importance of cyber resilience. They explore the recent funding rounds for startups in the identity space, emphasizing the need for innovative solutions to address ongoing challenges in identity governance and access management. The conversation underscores the critical role of identity security in today's digital business environment and the necessity for organizations to adapt to emerging threats.
Keywords
identity security, access management, cyber resilience, Microsoft, Okta, funding rounds, identity governance, PAM, IGA, cybersecurity
Links
Microsoft Secure Future Initiative
Okta Secure Identity Commitment
Apono $15m funding
Hydden $4m funding
P0 Security $15m funding

Sep 17, 2024 • 31min
E57 - Back to School 2024 Episode
Summary
In this episode of the Week in Identity podcast, Simon and David discuss the latest trends and developments in identity security, including market activity, funding rounds, and significant acquisitions. They delve into the importance of NIST guidelines, the rise of non-human identity (NHI), and the implications of recent acquisitions by MasterCard and Salesforce. The conversation highlights the evolving landscape of identity management and the critical need for organizations to adapt to new challenges in cybersecurity.
Chapters
00:00 Introduction to the Week in Identity Podcast
03:52 NIST Guidelines and Identity Assurance
06:30 Aembit Funding Rounds and Non-Human Identity
13:42 Acquisitions in Identity: IndyKite and 3Edges
20:17 MasterCard and Recorded Future
26:39 Salesforce and Own Data

Jul 19, 2024 • 43min
E56 - Emergency Episode Discussing the Global Crowdstrike Issue
Simon and David convene for a special episode to discuss the ongoing global IT outages caused by a Crowdstrike update. Note this was released Friday 19th July 9am PST / 5pm BST

Jun 19, 2024 • 36min
E55 - Identiverse, Identity Week Europe and Gartner SRM
Summary
In this episode, Simon and David discuss the recent identity conferences they attended, including Identiverse and Identity Week. They highlight the growing interest in identity across various industries and the need for resilience and security in identity management. They also delve into the topics of decentralized identity and generative AI, emphasizing the importance of tying security investment to business outcomes and altering the way we think about data and technology. They conclude by mentioning future episodes dedicated to decentralized identity and generative AI.
Keywords
identity conferences, Identiverse, Identity Week, resilience, security, decentralized identity, generative AI, security investment, business outcomes
Takeaways
Identity conferences have seen a surge in interest from various industries, indicating the growing importance of identity management.
Resilience and security are crucial in identity management, especially in the face of evolving threats and attacks.
Decentralized identity and generative AI are emerging topics that require careful consideration and alignment with business goals.
Security investment should be tied to business outcomes and the specific needs of the organization.
The identity and security industry is still relatively young and evolving, requiring a shift in thinking and approach.
Links
Identiverse
Identity Week Europe
Gartner Security & Risk


