* [![perspectives](https://www.paloaltonetworks.com/perspectives/wp-content/uploads/2025/02/prespective-icon.png)](https://www.paloaltonetworks.com/perspectives)
* Identity Under Siege: A Leader's Guide to the New Frontline of Security

English

* [English](https://www.paloaltonetworks.com/perspectives/identity-under-siege-a-leaders-guide-to-the-new-frontline-of-security)
* [Français (French)](https://www.paloaltonetworks.fr/perspectives/lidentite-assiegee-guide-a-destination-des-dirigeants-sur-le-nouveau-front-de-la-securite/)
* [日本語 (Japanese)](https://www.paloaltonetworks.jp/perspectives/%e5%9b%9b%e9%9d%a2%e6%a5%9a%e6%ad%8c%e3%81%ae%e3%82%a2%e3%82%a4%e3%83%87%e3%83%b3%e3%83%86%e3%82%a3%e3%83%86%e3%82%a3-%e6%96%b0%e3%81%97%e3%81%84%e3%82%bb%e3%82%ad%e3%83%a5%e3%83%aa%e3%83%86%e3%82%a3/)
* [简体中文 (Chinese -Simplified)](https://www.paloaltonetworks.cn/perspectives/%e8%ba%ab%e4%bb%bd%e5%8f%97%e5%88%b0%e5%a8%81%e8%83%81%ef%bc%9a%e9%a2%86%e5%af%bc%e8%80%85%e7%9a%84%e6%96%b0%e5%ae%89%e5%85%a8%e5%89%8d%e7%ba%bf%e6%8c%87%e5%8d%97/)
* [繁體中文 (Chinese -Traditional)](https://www.paloaltonetworks.tw/perspectives/%e5%8f%97%e5%9c%8d%e5%9b%b0%e7%9a%84%e8%ba%ab%e5%88%86%ef%bc%9a%e9%a0%98%e5%b0%8e%e8%80%85%e7%9a%84%e6%96%b0%e5%ae%89%e5%85%a8%e5%89%8d%e7%b7%9a%e6%8c%87%e5%8d%97/)
* [Deutsch (German)](https://www.paloaltonetworks.de/perspectives/identitaet-unter-beschuss-ein-leitfaden-fuer-fuehrungskraefte-zur-neuen-sicherheitsfront/)
* [한국어 (Korean)](https://www.paloaltonetworks.co.kr/perspectives/%ed%8f%ac%ec%9c%84%eb%90%9c-%ec%8b%a0%ec%9b%90-%eb%b3%b4%ec%95%88%ec%9d%98-%ec%83%88%eb%a1%9c%ec%9a%b4-%ec%b5%9c%ec%a0%84%ec%84%a0%ec%97%90-%eb%8c%80%ed%95%9c-%eb%a6%ac%eb%8d%94%ec%9a%a9-%ea%b0%80/)
* [Español (Spanish)](https://www.paloaltonetworks.es/perspectives/la-identidad-asediada-guia-del-lider-para-la-nueva-primera-linea-de-seguridad/)

# Identity Under Siege: A Leader's Guide to the New Frontline of Security

![Identity Under Siege: A Leader’s Guide to the New Frontline of Security](https://www.paloaltonetworks.com/perspectives/wp-content/uploads/2025/08/identity-under-siege-featured.jpg)  
**By [Jamie Fitz-Gerald](https://www.paloaltonetworks.com/perspectives/author/jamie-fitz-gerald/ "Posts by Jamie Fitz-Gerald")** | **4 min read** |  
![share icon](https://paloaltonetworks.com/content/dam/pan/en_US/cxo-perspectives/images/cxo-share.svg)

* LinkedIn button ![linkedin-icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/microsite/cortex/images/share-linkedin.svg)
* Twitter share button ![twitter-icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/microsite/cortex/images/share-twitter-x-black.svg)
* \[Email share button ![email-icon](https://www.paloaltonetworks.com/content/dam/pan/en_US/microsite/cortex/images/share-email.svg)\](mailto:?subject=Identity Under Siege: A Leader’s Guide to the New Frontline of Security\&body=Check out this article https%3A%2F%2Fwww.paloaltonetworks.com%2Fperspectives%2Fidentity-under-siege-a-leaders-guide-to-the-new-frontline-of-security%2F "Share in Email")
* ![copy-icon](https://www.paloaltonetworks.com/perspectives/wp-content/themes/csp2025/dist/images/icons/icon-share.svg)
  [](https://www.paloaltonetworks.com/perspectives/identity-under-siege-a-leaders-guide-to-the-new-frontline-of-security/?pdf=download&lg=en&_wpnonce=e42e6bc1d6 "Click here to download") MEET THE AUTHOR  
  ![](https://www.paloaltonetworks.com/perspectives/wp-content/uploads/2025/08/jamie-fitz-gerald-1.jpg)  
  Jamie Fitz-Gerald leads the product management team for Access Management, Devices \& Security, where he is responsible for SSO, MFA, FastPass, Device Assurance, Okta Device Access, Threat Insights, Okta Access Gateway, and Okta Identity Threat Protection Prior to that, Jamie was a part of the early product team at Palo Alto Networks. He spent over 10 years at Palo Alto Networks in various product roles, including App-ID, Device-ID, Identity, Threat Prevention, Data Lake, and Centralized Management. He began his career at Raytheon as a software engineer and software section manager. Jamie holds several patents related to security context, policy enforcement, and security enforcement. He holds an MS in Electrical and Computer Engineering focused on computer architecture from the University of California, Santa Barbara....

[Learn more](https://www.paloaltonetworks.com/perspectives/author/jamie-fitz-gerald/)

## IN THIS ARTICLE

Cybersecurity became real for me the day my colleague's laptop vanished from his desk. We were working at a defense contractor, and he had downloaded a government report on cyberthreats. Unbeknownst to him, it was laced with a backdoor. When he returned from a trip, his machine --- along with the only copy of his master's thesis --- were gone, confiscated by our security team. That was the moment the threat landscape moved from an abstract concept to a tangible reality. This pivotal lesson made the abstract tangible: The frontline of cyberespionage ran directly through the desk right next to mine.

## That Was Then; This Is Now

That experience has shaped my perspective ever since. Today, the frontline has expanded from a single desk to every home office, coffee shop and airport lounge in the world. The traditional, brick-and-mortar perimeter has dissolved, rendered obsolete by a fluid borderless ecosystem of cloud applications, third-party vendors and a distributed workforce.

This new reality creates a profound challenge for leaders. When the walls are gone, where does security begin? The answer is identity. Without a clear perimeter, a user's identity is the one constant, single control plane through which every access request must pass. It has become the heart of any modern enterprise security strategy.

## Identity Is the Primary Target

This shift has not gone unnoticed by our adversaries. When employees began working remotely, attackers adjusted their tactics accordingly. They saw with great clarity their new opportunity: Users were at home, often on less secure networks, and with their identity as the weakest link. As a result, identity became the most attacked vector. Credential theft and sophisticated phishing have evolved from fringe threats into the central tactics of the modern adversary.

Security teams can no longer simply block access from unapproved locations when legitimate work is happening everywhere. If a cybercriminal steals legitimate credentials, they gain unfettered access to critical resources with little friction. This is one scenario that keeps CIOs and CISOs [up at night](https://www.paloaltonetworks.ca/perspectives/5-things-that-keep-cios-up-at-night/). As somebody once told me, phishing is the ultimate threat because, if an attacker gets the keys to the kingdom, all other security controls --- network, endpoint and cloud --- become irrelevant. They can simply walk in the front door.

## Security that Serves the User

Confronting this reality requires us to evolve our defenses at the speed of the adversary. A few years ago, the conventional wisdom was that deploying any form of [multifactor authentication](https://www.paloaltonetworks.com/cyberpedia/what-is-the-evolution-of-multi-factor-authentication) (MFA) would solve the problem.^[1](#foot-note)^ A 2019 study famously claimed that MFA could stop 99% of phishing attempts. But in the fast-moving world of cybersecurity, that advice is now dangerously outdated. Today, we know that traditional push- and SMS-based MFA are completely insufficient, because adversaries have developed sophisticated techniques to bypass them.

While MFA remains an essential layer of security, we must now focus on the quality and assurance level of our authentication methods. At [Okta](https://www.okta.com/), we've centered our strategy on a modern approach that is both more intelligent and crucially more seamless. For the first time in my career, I can confidently say that we can significantly raise the security bar and improve the end-user experience simultaneously. The key is to move away from cumbersome, friction-filled authentication methods and embrace the phishing-resistant, biometric technologies that people already use every day.

What many don't realize is that a simple Face ID or Touch ID is, in fact, already multifactor. It combines something you are (your biometric) with something you have (your registered device), providing a high level of trust in a single, frictionless action. The goal is to create an experience where the speed bump of security feels more like a carriage return --- you just do it, and you're in.

## Extending User Security to the Enterprise

For the enterprise, we can take this even further. Beyond just phishing-resistant authentication, we can gather rich, contextual signals from the device itself, asking questions like: Is it a managed device? Does it have the right security posture? Is it integrated with our [XDR solution](https://www.paloaltonetworks.com/cortex/cortex-xdr)? From there, we can build a complete picture of risk and make smarter access decisions behind the scenes. This is the philosophy behind our work at Okta: to provide secure, passwordless authentication that delivers a profound cultural win, transforming security from a blocker into an enabler.

Want to hear more on this topic? Listen to the full, unedited conversation with Jamie on the [Threat Vector Podcast](https://www.paloaltonetworks.sg/resources/podcasts/threat-vector-identity-under-siege-insights-with-okta).

*** ** * ** ***

^1^"[One simple action you can take to prevent 99.9 percent of attacks on your accounts](https://www.microsoft.com/en-us/security/blog/2019/08/20/one-simple-action-you-can-take-to-prevent-99-9-percent-of-account-attacks/)," Microsoft Security, August 20, 2019.

* [AI](https://www.paloaltonetworks.com/perspectives/all-articles/?cat=ai)

## Related Content

![](https://www.paloaltonetworks.com/perspectives/wp-content/uploads/2026/03/Why-Cybersecurity-KPIs-Are-Changing-featured.jpg) BLOG

### AI

**Why Cybersecurity KPIs Are Changing (And What This Means for Security Leaders)**

True cyber resilience is impossible to achieve without strategic and tactic...

[Helmut Reisinger](https://www.paloaltonetworks.com/perspectives/author/helmut-reisinger/ "Posts by Helmut Reisinger")
[](https://www.paloaltonetworks.com/perspectives/why-cybersecurity-kpis-are-changing-and-what-this-means-for-security-leaders/)  
![](https://www.paloaltonetworks.com/perspectives/wp-content/uploads/2026/03/Weaponized-Intelligence-featured.jpg) BLOG

### AI

**Weaponized Intelligence**

We are building the foundation that makes defense possible....

[Nikesh Arora](https://www.paloaltonetworks.com/perspectives/author/nikesh-arora/ "Posts by Nikesh Arora")
[](https://www.paloaltonetworks.com/perspectives/weaponized-intelligence/)  
![](https://www.paloaltonetworks.com/perspectives/wp-content/uploads/2026/03/RFP-Bottleneck-featured.jpg) BLOG

### AI

**From Weeks to Minutes: How We Applied an AI-First Transformation to the RFP Bottleneck**

Understanding why manual efforts burn hundreds of hours and are bottlenecki...

[Sandeep Uttamchandani](https://www.paloaltonetworks.com/perspectives/author/sandeep-uttamchandani/ "Posts by Sandeep Uttamchandani")
[](https://www.paloaltonetworks.com/perspectives/from-weeks-to-minutes-how-we-applied-an-ai-first-transformation-to-the-rfp-bottleneck/)  
STAY CONNECTED

## Connect with our team today

Job Level  
Sign me up to receive news, product updates, sales outreach, event information and special offers about Palo Alto Networks and its partners.  
By submitting this form, I understand my personal data will be processed in accordance with Palo Alto Networks [Privacy Statement](https://www.paloaltonetworks.com/legal-notices/privacy?ts=markdown) and [Terms of Use](https://www.paloaltonetworks.com/legal-notices/terms-of-use?ts=markdown).  
This site is protected by reCAPTCHA and the Google [Privacy Policy](https://policies.google.com/privacy) and [Terms of Service](https://policies.google.com/terms) apply.
Reach out  
{#footer} Products and Services

* [AI-Powered Network Security Platform](https://www.paloaltonetworks.com/network-security?ts=markdown)

* [Secure AI by Design](https://www.paloaltonetworks.com/ai-security?ts=markdown)

* [Prisma AIRS](https://www.paloaltonetworks.com/ai-security/prisma-airs?ts=markdown)

* [AI Access Security](https://www.paloaltonetworks.com/sase/ai-access-security?ts=markdown)

* [Cloud Delivered Security Services](https://www.paloaltonetworks.com/network-security/security-subscriptions?ts=markdown)

* [Advanced Threat Prevention](https://www.paloaltonetworks.com/network-security/advanced-threat-prevention?ts=markdown)

* [Advanced URL Filtering](https://www.paloaltonetworks.com/network-security/advanced-url-filtering?ts=markdown)

* [Advanced WildFire](https://www.paloaltonetworks.com/network-security/advanced-wildfire?ts=markdown)

* [Advanced DNS Security](https://www.paloaltonetworks.com/network-security/advanced-dns-security?ts=markdown)

* [Enterprise Data Loss Prevention](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown)

* [Enterprise IoT Security](https://www.paloaltonetworks.com/network-security/enterprise-device-security?ts=markdown)

* [Medical IoT Security](https://www.paloaltonetworks.com/network-security/medical-device-security?ts=markdown)

* [Industrial OT Security](https://www.paloaltonetworks.com/network-security/ot-security-solution?ts=markdown)

* [SaaS Security](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown)

* [Next-Generation Firewalls](https://www.paloaltonetworks.com/network-security/next-generation-firewall?ts=markdown)

* [Hardware Firewalls](https://www.paloaltonetworks.com/network-security/hardware-firewall-innovations?ts=markdown)

* [Software Firewalls](https://www.paloaltonetworks.com/network-security/software-firewalls?ts=markdown)

* [Strata Cloud Manager](https://www.paloaltonetworks.com/network-security/strata-cloud-manager?ts=markdown)

* [SD-WAN for NGFW](https://www.paloaltonetworks.com/network-security/sd-wan-subscription?ts=markdown)

* [PAN-OS](https://www.paloaltonetworks.com/network-security/pan-os?ts=markdown)

* [Panorama](https://www.paloaltonetworks.com/network-security/panorama?ts=markdown)

* [Secure Access Service Edge](https://www.paloaltonetworks.com/sase?ts=markdown)

* [Prisma SASE](https://www.paloaltonetworks.com/sase?ts=markdown)

* [Application Acceleration](https://www.paloaltonetworks.com/sase/app-acceleration?ts=markdown)

* [Autonomous Digital Experience Management](https://www.paloaltonetworks.com/sase/adem?ts=markdown)

* [Enterprise DLP](https://www.paloaltonetworks.com/sase/enterprise-data-loss-prevention?ts=markdown)

* [Prisma Access](https://www.paloaltonetworks.com/sase/access?ts=markdown)

* [Prisma Browser](https://www.paloaltonetworks.com/sase/prisma-browser?ts=markdown)

* [Prisma SD-WAN](https://www.paloaltonetworks.com/sase/sd-wan?ts=markdown)

* [Remote Browser Isolation](https://www.paloaltonetworks.com/sase/remote-browser-isolation?ts=markdown)

* [SaaS Security](https://www.paloaltonetworks.com/sase/saas-security?ts=markdown)

* [AI-Driven Security Operations Platform](https://www.paloaltonetworks.com/cortex?ts=markdown)

* [Cloud Security](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown)

* [Cortex Cloud](https://www.paloaltonetworks.com/cortex/cloud?ts=markdown)

* [Application Security](https://www.paloaltonetworks.com/cortex/cloud/application-security?ts=markdown)

* [Cloud Posture Security](https://www.paloaltonetworks.com/cortex/cloud/cloud-posture-security?ts=markdown)

* [Cloud Runtime Security](https://www.paloaltonetworks.com/cortex/cloud/runtime-security?ts=markdown)

* [Prisma Cloud](https://www.paloaltonetworks.com/prisma/cloud?ts=markdown)

* [AI-Driven SOC](https://www.paloaltonetworks.com/cortex?ts=markdown)

* [Cortex XSIAM](https://www.paloaltonetworks.com/cortex/cortex-xsiam?ts=markdown)

* [Cortex XDR](https://www.paloaltonetworks.com/cortex/cortex-xdr?ts=markdown)

* [Cortex XSOAR](https://www.paloaltonetworks.com/cortex/cortex-xsoar?ts=markdown)

* [Cortex Xpanse](https://www.paloaltonetworks.com/cortex/cortex-xpanse?ts=markdown)

* [Unit 42 Managed Detection \& Response](https://www.paloaltonetworks.com/unit42/respond/managed-detection-response?ts=markdown)

* [Managed XSIAM](https://www.paloaltonetworks.com/cortex/managed-xsiam?ts=markdown)

* [Next-Generation Identity Security](https://www.paloaltonetworks.com/idira?ts=markdown)

* [Privileged Access Management](https://www.paloaltonetworks.com/idira/human/privileged-access-management?ts=markdown)

* [Identity and Access Management](https://www.paloaltonetworks.com/idira/human/identity-and-access-management?ts=markdown)

* [Endpoint Privilege Manager](https://www.paloaltonetworks.com/idira/human/endpoint-privilege-manager?ts=markdown)

* [Identity Governance](https://www.paloaltonetworks.com/idira/human/identity-governance?ts=markdown)

* [Workforce Password Management](https://www.paloaltonetworks.com/idira/human/workforce-password-management?ts=markdown)

* [Agentic Identities](https://www.paloaltonetworks.com/idira/agentic?ts=markdown)

* [Secrets Management](https://www.paloaltonetworks.com/idira/machine/secrets-management?ts=markdown)

* [Unified Secrets Governance](https://www.paloaltonetworks.com/idira/machine/unified-secrets-governance?ts=markdown)

* [Application Credentials Delivery](https://www.paloaltonetworks.com/idira/machine/application-credentials-delivery?ts=markdown)

* [Vendor Privileged Access](https://www.paloaltonetworks.com/idira/human/vendor-privileged-access?ts=markdown)

* [Threat Intel and Incident Response Services](https://www.paloaltonetworks.com/unit42?ts=markdown)

* [Prepare for Emerging Risks](https://www.paloaltonetworks.com/unit42/prepare-for-emerging-risks/continuous-frontier-ai-defense?ts=markdown)

* [Strengthen Your Defenses](https://www.paloaltonetworks.com/unit42/strengthen-your-defenses?ts=markdown)

* [Build Your Security Strategy](https://www.paloaltonetworks.com/unit42/build-your-security-strategy?ts=markdown)

* [Understand the Adversary](https://www.paloaltonetworks.com/unit42/threat-intelligence?ts=markdown)

* [Respond to a Cyber Attack](https://www.paloaltonetworks.com/unit42/respond?ts=markdown)  
  Company

* [About Us](https://www.paloaltonetworks.com/about-us?ts=markdown)

* [Careers](https://jobs.paloaltonetworks.com/en/)

* [Contact Us](https://www.paloaltonetworks.com/company/contact-sales?ts=markdown)

* [Corporate Responsibility](https://www.paloaltonetworks.com/about-us/corporate-responsibility?ts=markdown)

* [Customers](https://www.paloaltonetworks.com/customers?ts=markdown)

* [Investor Relations](https://investors.paloaltonetworks.com/)

* [Location](https://www.paloaltonetworks.com/about-us/locations?ts=markdown)

* [Newsroom](https://www.paloaltonetworks.com/company/newsroom?ts=markdown)  
  Popular Links

* [Blog](https://www.paloaltonetworks.com/blog/?ts=markdown)

* [Communities](https://www.paloaltonetworks.com/communities?ts=markdown)

* [Content Library](https://www.paloaltonetworks.com/resources?ts=markdown)

* [Cyberpedia](https://www.paloaltonetworks.com/cyberpedia?ts=markdown)

* [Event Center](https://events.paloaltonetworks.com/)

* [Manage Email Preferences](https://start.paloaltonetworks.com/preference-center)

* [Products A-Z](https://www.paloaltonetworks.com/products/products-a-z?ts=markdown)

* [Product Certifications](https://www.paloaltonetworks.com/legal-notices/trust-center/certifications?ts=markdown)

* [Report a Vulnerability](https://www.paloaltonetworks.com/security-disclosure?ts=markdown)

* [Sitemap](https://www.paloaltonetworks.com/sitemap?ts=markdown)

* [Tech Docs](https://docs.paloaltonetworks.com/)

* [Unit 42](https://unit42.paloaltonetworks.com/)

* [Do Not Sell or Share My Personal Information](https://panwedd.exterro.net/portal/dsar.htm?target=panwedd)
  ![Palo Alto Networks Logo](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/pan-logo-dark.svg)

* [Privacy](https://www.paloaltonetworks.com/legal-notices/privacy?ts=markdown)

* [Trust Center](https://www.paloaltonetworks.com/legal-notices/trust-center?ts=markdown)

* [Terms of Use](https://www.paloaltonetworks.com/legal-notices/terms-of-use?ts=markdown)

* [Documents](https://www.paloaltonetworks.com/legal?ts=markdown)

Copyright © 2026 Palo Alto Networks. All Rights Reserved

* [![Youtube](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/youtube-black.svg)](https://www.youtube.com/user/paloaltonetworks)
* [![Podcast](https://www.paloaltonetworks.com/content/dam/pan/en_US/images/icons/podcast.svg)](https://www.paloaltonetworks.com/podcasts/threat-vector?ts=markdown)
* [![Facebook](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/facebook-black.svg)](https://www.facebook.com/PaloAltoNetworks/)
* [![LinkedIn](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/linkedin-black.svg)](https://www.linkedin.com/company/palo-alto-networks)
* [![Twitter](https://www.paloaltonetworks.com/etc/clientlibs/clean/imgs/social/twitter-x-black.svg)](https://twitter.com/PaloAltoNtwks)
* EN  
  Select your language
