EPISODE · Nov 4, 2025 · 49 MIN
Ep 15: From Static Keys to Runtime Authorization
from Access Granted · host Britive
Identity is no longer an IT admin task; it’s the security control plane.In this episode of Access Granted, Britive’s Nauman Mustafa sits down with Sriram Santhanam, an experienced identity and security leader, to unpack where identity security is headed and what teams can do now.What we cover:Why static keys, blanket tokens, and over-permissive roles break in cloud + SaaSMoving to runtime authorization: per-action access, short TTLs, ZSP by defaultNon-human identities & agentic AI: on-behalf-of boundaries, tool allowlists, guardrailsCrawl-walk-run vs. run if you can: where to start and how to scale safelyIGA + PAM together: SailPoint governance with runtime enforcement for day-to-day accessPractical steps after SaaS/token incidents: review scopes, remove “full,” revoke fast, instrument audit
What this episode covers
Identity is no longer an IT admin task; it’s the security control plane.In this episode of Access Granted, Britive’s Nauman Mustafa sits down with Sriram Santhanam, an experienced identity and security leader, to unpack where identity security is headed and what teams can do now.What we cover:Why static keys, blanket tokens, and over-permissive roles break in cloud + SaaSMoving to runtime authorization: per-action access, short TTLs, ZSP by defaultNon-human identities & agentic AI: on-behalf-of boundaries, tool allowlists, guardrailsCrawl-walk-run vs. run if you can: where to start and how to scale safelyIGA + PAM together: SailPoint governance with runtime enforcement for day-to-day accessPractical steps after SaaS/token incidents: review scopes, remove “full,” revoke fast, instrument audit
NOW PLAYING
Ep 15: From Static Keys to Runtime Authorization
No transcript for this episode yet
Similar Episodes
No similar episodes found.