Identity Security

Resolving the AI Agent Identity Crisis: Many Standards, One Direction

When an AI agent calls a payment API, deploys code, or hands work to another agent, a valid access token answers only part of the security question. The harder question is what constitutes that agent’s identity in the first place. Is it the code being executed? The underlying model? The runtime instance? The credential it presents? The person it acts for? The intent of its current task?

Oct 09, 2026
Advancing Secure Software Pipelines: NIST NCCoE DevSecOps Build 2 and Palo Alto Networks Contribution to Identity and Secrets Security

Advancing Secure Software Pipelines: NIST NCCoE DevSecOps Build 2 and Palo ...

The successful completion of Build 2 marks another significant milestone for the NIST National Cybersecurity Center of Excellence (NCCoE) Secure Software Development, Security, and Operations (DevSecOps) Practi...
Oct 05, 2026
Idira Platform Updates (August 2026): What Shipped for Machine and AI Agent Identity

Idira Platform Updates (August 2026): What Shipped for Machine and AI Agent...

A lot ships across the identity platform every month, and most of it lands in the release notes and then quietly disappears. That’s a shame, because s...
Sep 30, 2026
You Do Not Have Three Years

You Do Not Have Three Years

I spend most of my week talking with CISOs and CIOs. When the conversation turns to frontier AI, I notice a troubling pattern. Everyone agrees the capability is real. Everyone agrees identity security is where it lands. And almost everyone...
Sep 21, 2026