KuppingerCole Analysts: Recent Episodes

KuppingerCole Analysts

KuppingerCole Analysts AG is an international, independent analyst organization offering technology research, neutral advice and events in Identity Management, Cybersecurity and Artificial Intelligence.

View Details

Step into the future of travel where digital identity technologies are reshaping cross-border experiences. Explore the rise of innovations like automated verification, while uncovering regional success stories like SITA and India's Digi Yatra. Discover how international collaboration could make cumbersome passport checks a thing of the past. Welcome to the next era of seamless and secure global journeys.

Read the original blog post here: https://www.kuppingercole.com/events/eic2025/blog/the-future-of-digital-travel-credentials-trust-adoption-and-the-eidas-20-framework

View Details

In today's interview, Mirela Ciobanu, Lead Editor at The Paypers, talks with John Erik Setsaas, Director of Innovation at Tietoevry Banking, about the challenges and opportunities in digital identity and fraud prevention at cyberevolution 2024.

🌟 Key topics covered:

• The European Digital Identity Wallet: A game-changer for privacy and security?
• How banks are tackling evolving fraud threats like romance scams and safe account fraud.
• Balancing instant payments, GDPR, and cybersecurity in financial services.
• Leveraging AI and behavior monitoring to stop fraudsters in real-time.
• The importance of user education and consistency in fighting financial crime.

Discover how banks and financial institutions can navigate new regulations, build trust, and enhance digital identity systems to protect consumers and prevent fraud. Whether you’re in banking, tech, or just curious about the future of identity, this interview offers valuable insights.

View Details

In this exclusive interview, Mirela Ciobanu, Lead Editor at The Paypers, sits down with Justin Richer, CTO of UberEther, to explore the latest advancements and challenges in digital identity at cyberevolution 2024.

🌟 Key topics covered:

  • The evolution of digital identity protocols like OAuth and OpenID Connect.
  • The concept of federated bubbles and their applications in financial services.
  • The role of digital wallets in GDPR compliance and data privacy.
  • Challenges in machine identity and securing dynamic systems.
  • The ethical use of AI in cybersecurity and decision-making.

Discover how innovative identity systems and dynamic approaches can help businesses tackle privacy, security, and operational challenges in an interconnected world. Whether you're a tech professional, a financial expert, or simply curious about digital transformation, this interview is packed with valuable insights.

View Details

Stay updated on the future of CIAM: Learn about integrating privacy management, fraud intelligence platforms, and CDPs to enhance security and customer experience.

Read the original blog post here: https://www.kuppingercole.com/blog/tolbert/whats-next-in-customer-identity-and-access-management

View Details

In this exclusive interview, Mirela Ciobanu, Lead Editor at The Paypers, sits down with Max Imbiel, CISO of BitPanda, to discuss the evolving challenges and opportunities in cybersecurity within the crypto space.

🌟 Key topics covered:

  1. Crypto industry maturity and regulatory advancements.
  2. Major cybersecurity challenges in Europe and the US.
  3. Evolving fraud tactics and the role of AI in cyberattacks.
  4. Preventive security strategies to safeguard businesses.
  5. How to position security as a business enabler.

Learn how a preventive, innovative approach to security can protect your organization while enabling growth and innovation in the digital finance landscape. Whether you’re a CISO, crypto enthusiast, or a business owner navigating the complexities of the crypto world, this conversation offers invaluable insights to stay secure and resilient.

View Details

Explore the challenges of EU DORA compliance and why supply chain cybersecurity remains a critical concern. Uncover hidden risks and strategies for building resilience in financial services.

Read the original blog post here: https://www.kuppingercole.com/blog/fisher/eu-dora-compliance-day-arrives-but-supply-chain-cybersecurity-remains-a-major-concern

View Details

In today's interview, Mirela Ciobanu, Lead Editor at The Paypers, talks with Sergej Epp, CISO at Sysdig, about the ever-evolving world of cybersecurity and its impact on industries worldwide.

🌟 Key Topics explored:

  1. Sergej’s journey into cybersecurity: from a young coder to a leading industry expert.
  2. Why understanding organizational risks is crucial—and how oversimplifying cybersecurity can lead to vulnerabilities.
  3. The persistent threat of ransomware and emerging risks in supply chains and open-source software.
  4. The importance of "assume breach" mentality and red teaming to stay ahead of attackers.
  5. Strategies for mitigating risks, including zero trust architectures and prioritizing secure modernization over excessive security add-ons.

Discover how financial institutions, healthcare, and other critical sectors can address escalating challenges while embracing innovative solutions. From nation-state attacks to ransomware groups, Sergej provides actionable insights on navigating modern threats, managing supply chain security, and fostering transparency.

Learn why human expertise and risk-focused approaches remain pivotal alongside cutting-edge technologies like blockchain and zero trust. Whether you’re a cybersecurity professional or a business leader, this interview is packed with practical takeaways to secure your organization in today’s dynamic digital landscape.

View Details

Discover how to rethink Identity Governance and Administration (IGA) to meet the demands of a dynamic workforce, rapid application turnover, and evolving compliance needs. Learn key strategies for modernizing IGA with agility, automation, and policy-driven solutions.

Read the original blog post here: https://www.kuppingercole.com/blog/kuppinger/rethinking-identity-governance-and-administration-iga-in-the-digital-era

View Details

As the world welcomed the New Year, the U.S. Treasury Department was busy investigating a cybersecurity breach.

Read the original blog post here: https://www.kuppingercole.com/blog/leal/new-year-same-threats-hacking-the-treasury

View Details

In this exclusive interview, Mirela Ciobanu, Lead Editor at The Paypers, sits down with Andrzej Kawalec, Head of Cybersecurity for Vodafone Business, to explore the evolving landscape of cybersecurity and its critical role in driving innovation.

🌟 Key topics covered:

  • Why "security is the enabling layer for innovation."
  • Practical advice for small businesses navigating cyber threats.
  • The importance of integrating technology, from AI to digital identity solutions.
  • How to create a human-centered approach to cybersecurity through education and awareness.
  • Industry trends and the future of cybersecurity at scale.

Learn why security is more than just a safeguard - it’s the accelerator for modern businesses, enabling them to adapt and thrive in an increasingly digital world. Whether you’re a CISO or a small business owner, this interview is packed with actionable insights to keep your business secure and innovative.

View Details

Discover how to turn cyber catastrophes into manageable incidents and fortify your business continuity with state-of-the-art backup and recovery strategies.

Read the original blog post here: https://www.kuppingercole.com/blog/balaganski/zero-data-loss-peace-of-mind-in-the-ransomware-era

View Details

As we close another year, join us in reflecting on KuppingerCole’s journey from a niche identity management focus to becoming a leader in the intersection of identity and cybersecurity. Discover exciting new initiatives like our Rising Stars Program and explore the challenges and opportunities shaping the future of the industry. Watch now and hear how we’re empowering the community with insights, innovation, and tools to thrive in a rapidly evolving digital landscape. Wishing you a safe and secure holiday season and a successful 2025!

View Details

This blog addresses the integration of Identity and Access Management (IAM) with Artificial Intelligence ('AIdentity'). It calls for a shift to dynamic identity management for AI agents to mitigate security risks, highlighting KuppingerCole's Identity Fabric as a solution.

Read the original blog post here: https://www.kuppingercole.com/blog/bailey/identity-for-ai-agents

View Details

Join us as we explore the major cybersecurity and IAM trends to keep an eye on in 2025. We’ll discuss the emergence of non-human identities, the hurdles of quantum-safe encryption, and the practical applications of AI and decentralized identity. Get ready to learn how these trends will influence the industry and how you can stay ahead of the curve.

View Details

We sit today with André from Unit 42 as he covers the rapidly changing landscape of cyber threats and points out some key trends in 2025, from increasing sophistication in cyberattacks to state actors gaining a greater upper hand. He provides insight into how organizations can prepare and defend against emerging risks. In this session, learn about the latest challenges and strategies for building cyber resilience in an increasingly complex global environment.

View Details

In this videocast, Tom Bruggeman from DPG Media shares how his team tackled the challenges of user authentication in a fast-changing media landscape. He highlights the role of open standards like OAuth and OIDC and explains how Authlete helped create a seamless and secure user experience. Tom also offers insights into future plans, including efforts to enhance user privacy and explore data wallet solutions.

View Details

Trust in data's power as Cohesity and Veritas unite to dominate the world of cyber resilience and data protection. This merger is more than market consolidation; it's the dawn of a new era in safeguarding digital enterprises.

Read the original blog post here: https://www.kuppingercole.com/blog/small/the-marriage-of-cohesity-and-veritas

View Details

Discover the vital role of Identity and Access Management (IAM) in securing enterprises, especially as we navigate the growing demands of digital transformation and compliance. The blog introduces the KuppingerCole Identity Fabric, a robust framework aimed at bridging the gaps in current IAM strategies across companies. With an update expected in 2025, this Identity Fabric will include advanced conceptual designs and an IAM Reference Architecture.

Read the original blog post here: https://www.kuppingercole.com/blog/reinwarth/the-kuppingercole-identity-fabric-2025

View Details

In this episode of the KuppingerCole Analyst Chat, Matthias Reinwarth is joined by cybersecurity expert John Tolbert to talk about essential tips for personal cyber hygiene. Together, they discuss practical advice for keeping your devices secure, avoiding common threats, and implementing best practices for online safety. Whether you're a tech-savvy professional or just starting to think about your digital security, this episode offers actionable insights to protect yourself and your loved ones in an increasingly connected world.

View Details

Trust in cybersecurity is built on the bedrock of Privileged Access Management. Explore how Syteca's innovative approaches redefine security, addressing today's challenges with precision and foresight.

Read the original blog post here: https://www.kuppingercole.com/blog/fisher/the-role-of-pam-in-modern-cybersecurity

View Details

Matthias Reinwarth and Dr. Phillip Messerschmidt delve into the complexities of Cyber Supply Chain Risk Management (C-SCRM). They discuss the importance of understanding and mitigating risks that arise from external suppliers and the interconnected nature of modern supply chains. The conversation highlights the critical role of Identity and Access Management (IAM) in managing these risks, particularly in the context of federated identities and the challenges that arise from relying on third-party controls. The speakers emphasize the need for organizations to actively assess and manage risks, implement robust onboarding processes, and continuously improve their cybersecurity practices to protect against potential threats.

View Details

As digitalization accelerates in industrial and operational settings, Operational Technology (OT) environments have become more interconnected with enterprise IT and even cloud infrastructures. The increased connectivity often can provide more efficiency and new capabilities, but it also introduces complex security challenges. Protecting OT and IoT environments is critical but complicated due to the differences in functions and approaches to securing IT vs. OT infrastructures.

Read the original blog here: https://www.kuppingercole.com/events/cyberevolution2024/blog/security-in-the-era-of-rapid-digitalization-in-operational-technology-environments

View Details

This Videocast episode explores the complexities and advancements in digital identity standards, focusing on FAPI, OAuth, and OpenID Connect. Martin Kuppinger and Joseph Heenan, CTO of Authlete, discuss the origins and purpose of FAPI, its adoption across various regions, and its significance in enhancing security and interoperability in financial services. They also highlight the role of Authlete in simplifying the implementation of these standards for developers and the emerging trends in decentralized identity and verifiable credentials.

View Details

Join Matthias Reinwarth and Alexei Balaganski as they dive into the changing world of cybersecurity. In this episode, they talk about Cyber Threat Intelligence (CTI) and Attack Surface Management (ASM), exploring how security is moving from old-school models to more proactive, real-time threat detection. They also discuss how AI is shaking things up in cybersecurity and why understanding the dark web is more important than ever. The takeaway? Organizations need to tap into expert CTI and ASM services to stay ahead of today’s complex cyber threats.

View Details

Trust in the digital age is under siege—explore how innovative cybersecurity measures can turn the tide against increasingly sophisticated attacks.

Read the original blog post here: https://www.kuppingercole.com/blog/deshpande/redefining-cybersecurity-facing-the-next-generation-of-threats

View Details

Matthias and Christopher discuss the critical importance of cyber hygiene in the corporate context, especially in light of evolving threats such as AI-driven attacks, deepfakes, and ransomware. They emphasize the need for organizations to train employees on recognizing and responding to these threats, as well as the role of technology in both perpetrating and preventing cybercrime. The discussion also touches on the growing issue of disinformation and the necessity for vigilance in verifying information.

View Details

In this episode, host Matthias welcomes Research Analyst Alejandro Leal to explore the evolving landscape of cyber warfare. Drawing from William Gibson's sci-fi classic "Neuromancer," they discuss how the digital battleground is now a critical arena for nations, corporations, and cyber criminals.

Their conversation covers the economic consequences of cyber attacks, the strategic importance of undersea fiber optic cables, and the role of semiconductor manufacturing in global tensions. Learn how different national perspectives on cyberspace shape security measures and why international cooperation is essential in addressing challenges like AI governance and climate change.

Join Matthias and Alejandro as they dissect the current state of cyber warfare and its implications for global security. Don't forget to leave your comments and questions below!

Alejandro's Blog: https://www.kuppingercole.com/events/cyberevolution2024/blog/us-china-struggle-for-cyberspace

View Details

In this episode, Matthias and Alexei explore the urgent need for organizations to prepare for the coming age of quantum computing and the potential risks it poses to current cryptographic standards. As quantum technology advances, traditional encryption methods may become vulnerable, putting critical data, transactions, and security at risk.

Alexei discusses the concept of crypto agility—the ability to quickly adapt cryptographic infrastructure in response to new threats. He shares practical advice on how to assess and update legacy systems, encryption methods, and workflows, including:

  • Where organizations should begin if they rely heavily on cryptography for critical data and transactions
  • How to evaluate and improve cryptographic infrastructure across digital systems, cloud environments, and hardware
  • The essential role of vendor collaboration and supply chain security in building quantum-safe systems
  • How to prioritize threats like ransomware and crypto-related risks based on industry needs

Alexei also underscores the importance of workforce training, advising that while employees don’t need deep cryptography knowledge, they must understand secure practices and tools approved by their organization’s security policy.

View Details

Burnout, fatigue, depression: This episode is all about the mental health challenges faced by cybersecurity professionals, highlighting the increasing pressures and responsibilities in the field. Matthias invited experts Sarb Sembhi and Dr. Kashyap Thimmaraju to discuss the impact of these challenges on individuals and organizations, emphasizing the need for better support systems, transparency, and proactive strategies to promote mental well-being in the cybersecurity industry.

Mental Health in Cybersecurity Foundation: https://www.virtuallyinformed.com/mhincs

LinkedIn Group: https://www.linkedin.com/groups/12989900/

The Mental Health in Cybersecurity Charter: https://www.virtuallyinformed.com/mhincs-foundation-charter

Contact the Mental Health in Cybersecurity Foundation

Research: research@mhincs-foundation.org

Community of Practice: cop@mhincs-foundation.org

View Details

In this conversation, Matthias and Martin explore the concept of machine identities, discussing their significance in modern IT infrastructures. They discuss the challenges of managing these identities, the importance of lifecycle management, and the impact of regulations on cybersecurity. The conversation emphasizes the need for organizations to understand and properly manage machine identities to ensure security and compliance in an increasingly complex digital landscape.

View Details

Matthias and Alejandro discuss the concept of Zero Trust, emphasizing its importance in modern cybersecurity. They explore the core principles of Zero Trust, including continuous monitoring, data protection, and the common misconceptions surrounding it. The discussion highlights the significance of automation and orchestration in enhancing security measures and provides real-world examples of successful Zero Trust implementations. The conversation concludes with insights into future trends and the evolving nature of cybersecurity threats.

View Details

Matthias discusses the new KuppingerCole Membership program with Vanessa Schweihofer and Alexei Balaganski. They explore the various benefits of the Membership, including access to research, networking opportunities, and personalized insights through inquiry calls and workshops.

The conversation highlights the technological advancements being integrated into the Membership, such as AI capabilities and a passwordless registration process. The importance of community building and continuous improvement in cybersecurity and identity management is emphasized, along with the advantages of Corporate Membership for teams.

View Details

Matthias invited KuppingerCole CEO Berthold Kerl and CISO Christopher SchĂĽtze to discuss the relationship between the CEO and the CISO in integrating cybersecurity into the company's business strategy. They highlight the key challenges faced by CEOs in integrating cybersecurity, the importance of communication between the CISO and the board, and the role of regulatory compliance. They also discuss the need to balance cutting-edge cybersecurity solutions with cost considerations and the trends to look out for in the coming years, such as AI-driven security and supply chain security.

View Details

In this episode, Matthias Reinwarth discusses the updates to the Identity Fabric and IAM reference architecture with Dr. Philipp Messerschmidt and Martin Kuppinger. The Identity Fabric is a holistic concept that provides seamless yet secure access to every type of identity for every type of service. The update to the Identity Fabric is necessary to reflect the developments in the IAM world, such as new trends in authorization and authentication.

The IAM reference architecture provides more detail and functional capabilities for each pillar of IAM. The update also includes the addition of new identity types and the inclusion of architectural concepts like microservice architectures and identity API layers. The Identity Fabric 2025 will be flexible and adaptable to future trends and challenges in IAM.

View Details

How can artificial intelligence be used in cybersecurity? Matthias and Alexei asked ChatGPT exactly this question and it came up with quite a list of use cases. They go through this list and discuss it. They explore the different forms of AI aside from generative AI, such as non-generative AI and traditional machine learning. They highlight the limitations and risks associated with large language models like GPTs and the need for more sustainable and efficient AI solutions.

The conversation covers various AI use cases in cybersecurity, including threat detection, behavioral analytics, cloud security monitoring, and automated incident response. They emphasize the importance of human involvement and decision-making in AI-driven cybersecurity solutions.

Here's ChatGPT's list of AI use cases for cybersecurity:

  1. AI for Threat Detection: AI analyzes large datasets to identify anomalies or suspicious activities that signal potential cyber threats.
  2. Behavioral Analytics: AI tracks user behavior to detect abnormal patterns that may indicate compromised credentials or insider threats.
  3. Cloud Security Monitoring: AI monitors cloud infrastructure, detecting security misconfigurations and policy violations to ensure compliance.
  4. Automated Incident Response: AI helps automate responses to cyber incidents, reducing response time and mitigating damage.
  5. Malware Detection: AI-driven solutions recognize evolving malware signatures and flag zero-day attacks through advanced pattern recognition.
  6. Phishing Detection: AI analyzes communication patterns, spotting phishing emails or fake websites before users fall victim.
  7. Vulnerability Management: AI identifies system vulnerabilities, predicts which flaws are most likely to be exploited, and suggests patch prioritization.
  8. AI-Driven Penetration Testing: AI automates and enhances pen-testing by simulating potential cyberattacks and finding weaknesses in a network.
  9. Anomaly Detection in Network Traffic: AI inspects network traffic for unusual patterns, preventing attacks like Distributed Denial of Service (DDoS).
  10. Cybersecurity Training Simulations: AI-powered platforms create dynamic, realistic simulations for training cybersecurity teams, preparing them for real-world scenarios.
  11. Threat Intelligence: NLP-based AI interprets textual data like threat reports, social media, and news to assess emerging risks.
  12. Predictive Risk Assessment: AI assesses and predicts potential future security risks by evaluating system vulnerabilities and attack likelihood.

View Details

SAP has announced the end of life for its identity management (IDM) system, which is a key component in many traditional SAP environments. This poses a challenge for organizations running on-premises SAP systems. To plan for a smooth transition, organizations should consider key strategies such as taking the time for thorough planning, thinking about the future of their IAM, and analyzing requirements before choosing a new solution.

The cost of implementation projects can be significant, but investing in proper preparation and tools upfront can save time and money in the long run. It is important to take a holistic view and consider the broader picture, including GRC and access governance solutions. Finding the right solution requires support from experts who understand the market and the organization's specific requirements.

View Details

Generative AI is ubiquitous - anyone can use ChatGPT and other tools for free to create text, images, and more. But generative AI also has potential in the professional environment. Businesses should consider how they can leverage the use of AI with prompt engineering etc.

In this episode, Alejandro and Matthias discuss the integration of machine learning and AI into cybersecurity infrastructures, particularly SOARs. The conversation covers the role of generative AI in changing the daily tasks of cybersecurity professionals, the challenges of integrating generative AI into SOAR platforms, the importance of prompt engineering, and the need for a balanced approach to innovation and accountability. It also addresses the security and ethical considerations of using AI in cybersecurity and the general impact of generative AI on different industries.

View Details

What makes a Web Application Firewall (WAF) a Web Application and API Protection (WAAP) solution? How is the landscape of the market changing and does every organization need a WAAP solution?Tune in to this episode of the Analyst Chat with guest Osman Celik and host Matthias Reinwarth to learn more.Dive deeper into the topic: https://www.kuppingercole.com/research/lc80921/web-application-firewalls

View Details

In this episode of the KuppingerCole Analyst Chat, host Matthias Reinwarth is joined by Annie Bailey, Research Strategy Director at KuppingerCole Analysts, to discuss the key trends that will shape the cybersecurity landscape through 2025. The conversation explores the increasing complexity of the attack surface, the growing importance of resilience and recovery in cybersecurity strategies, and the dual role of AI as both a threat and a defensive tool. In addition, the discussion covers the impact of emerging regulations, the need for advanced cybersecurity infrastructure, and how organizations can prepare for the anticipated challenges ahead.

View Details

In this episode of the KuppingerCole Analyst Chat, host Matthias Reinwarth is joined by Martin Kuppinger, Principal Analyst at KuppingerCole Analysts, to discuss the evolving landscape of identity security. They explore the centrality of Identity and Access Management (IAM) in IT security, the rise of Identity Threat Detection and Response (ITDR), and the latest trends in fraud prevention. The conversation delves into the use of generative AI in cyber-attacks, the importance of gamification in cybersecurity, and the anticipated advancements in ITDR solutions. Join us to gain insights into these critical areas shaping the future of cybersecurity.

View Details

Matthias, Martin, John, Alexei, and Mike discuss the recent CrowdStrike incident and its impact on global players. They highlight the need for better software testing and validation processes to prevent such incidents. The conversation also touches on the importance of diversity in software solutions and the role of regulation in ensuring security. The analysts suggest measures such as phased rollout of updates, automated risk scoring, and improved backup and recovery processes. They emphasize the need for organizations to have resilience plans in place and to evaluate the tools and vendors they rely on.

View Details

In this episode, Matthias Reinwarth and John Tolbert discuss the consumer identity and access management (CIAM) market. They cover new entrants in the market, the impact of mergers and acquisitions, new features in CIAM products, deployment models, B2B functionality, decentralized identity, and the role of AI in CIAM.

View Details

In this episode of the KuppingerCole Analyst Chat, Matthias Reinwarth talks to Marina Iantorno, Research Analyst at KuppingerCole Analysts. They explore the concept of digital trust in our AI-driven, interconnected world. The discussion explores the definition and importance of digital trust, the current landscape of AI systems, and examples of successful and failed attempts to build trust. Marina also breaks down key tenets crucial for fostering digital trust, including transparency, data privacy, security, accountability, and more. The episode provides actionable strategies for implementing these tenets and highlights tools and technologies that support digital trust.

View Details

In this episode, Matthias hast three guests: his colleagues Phillip, Warwick and Alejandro. They take a look back at EIC 2024 and discuss the most important topics at the upcoming cyberevolution conference. They reflect on the cybersecurity trends and challenges addressed at EIC, including zero trust, decentralized identity, and AI in security.

They also highlight the importance of regulations like NIS2 and DORA in driving cybersecurity practices, and mention the key topics for cyberevolution, such as zero trust, AI, and trust in an AI-driven world, as well as the focus on leadership and mental health in cybersecurity.

View Details

In this episode, Matthias Reinwarth and Alexei Balaganski discuss the topic of software supply chain security. They explore the different perspectives and challenges surrounding this topic, including the lack of common definitions and the need for practical recommendations. They also discuss the importance of trust in software and the potential solutions, such as software bill of materials and collaboration within the industry. The episode concludes with a call for further discussion and exploration of this complex and evolving topic.

View Details

In this episode of KuppingerCole Analyst Chat, host Matthias Reinwarth discusses the European Identity and Cloud Conference 2024 in Berlin with guests Mike Neuenschwander from KuppingerCole and Adam Callen from Nyedis. They share their first impressions of the conference, highlighting the focus on decentralized identity, regulatory impacts, and future trends in identity management. The conversation also covers the importance of networking at the conference and the evolving landscape of identity technology in Europe. Tune in to gain insights into the latest developments and key topics from EIC 2024.

View Details

Matthias is joined by his colleague Warwick Ashford to discuss the upcoming European Identity and Cloud Conference (EIC) 2024 in Berlin. Warwick, a senior analyst at KuppingerCole and the moderator of the keynote section, shares insights on the speakers and sessions to look forward to, including notable keynotes on digital identity, AI, and cybersecurity. The episode covers the importance of interoperability, privacy, and the impact of regulations like eIDAS 2.0 on global digital identity standards. It also highlights the networking opportunities and workshops available at EIC 2024.

View Details

In this conversation, John Tolbert interviews Josh Gorrell from Tanium about incident response. They discuss common threats that require incident response, such as ransomware, data breaches, and DDoS attacks. They also touch on the importance of incident response in meeting regulatory compliance requirements and how it can be a competitive advantage for organizations. The conversation covers the key players in an incident response team, best practices for incident response, and metrics for measuring success. They also discuss trends in incident response, including automation and AI.

View Details

In this episode of KuppingerCole Analyst Chat, host Matthias Reinwarth talks with Alexei Balaganski, Lead Analyst and CTO at KuppingerCole Analysts, about the current challenges and future direction of cybersecurity. Alexei shares insights from recent industry events, highlighting the persistent issues despite increased investment in cybersecurity solutions.

The discussion delves into the need for a philosophical shift in how security is approached, emphasizing proactive measures over reactive ones. They explore the integration of security into the development of new technologies and stress the importance of collaboration among stakeholders to create secure IT environments. Tune in to gain a deeper understanding of the evolving cybersecurity landscape and the steps necessary to stay ahead.

View Details

In this episode of KuppingerCole Analyst Chat, host Matthias Reinwarth speaks with Marina Iantorno, a Research Analyst at KuppingerCole Analysts, about the latest market trends in Identity and Access Management (IAM) and cybersecurity for 2024. They discuss the significant growth rates in Access Management and ITDR, driven by the increasing complexity and sophistication of cyber threats.

Marina highlights the evolution of Access Management solutions to support remote workforces and the rising importance of ITDR in proactive threat detection and response. The conversation also covers the steady growth of the email security market in response to phishing and ransomware threats, as well as key strategies businesses are adopting to stay competitive in the IAM space. Finally, they explore the impact of regulatory compliance on IAM solutions and predict future trends in identity-centric security.

View Details

In this episode, Matthias Reinwarth and Charlene Spasic continue their discussion on the topic of Zero Trust. They explore the benefits of strong and reliable identities in the context of Zero Trust, including regulatory compliance, business continuity, and resilience. They also discuss the application of Zero Trust to IoT and the role of AI in the implementation of Zero Trust. The conversation concludes with a look at the challenges and future directions of Zero Trust.

View Details

In the first episode of this two-part mini-series, Matthias Reinwarth and Charlene Spasic discuss the integral role of digital identities in the Zero Trust framework. They cover how Zero Trust architectures rely heavily on the continuous verification of identities and the enforcement of dynamic access controls.

The conversation outlines the challenges and strategies involved in managing identity lifecycles, emphasizing the need for robust identity management systems that adapt to evolving security landscapes. This episode sets the stage for understanding how Zero Trust architectures transform traditional security paradigms by centering on the identity of users and devices.

View Details

Matthias Reinwarth and Mike Neuenschwander discuss ITDR (Identity Threat Detection and Response) and its importance in cybersecurity. They explain that attackers are now targeting identities as a vector into enterprise systems, making it critical to have threat detection and response specifically for identity systems. They discuss the key features of ITDR tools, including identity posture, administrative functions, continuous monitoring, and response capabilities. They also highlight the need for collaboration between security operations centers and identity teams. The conversation concludes with a discussion on the evolving trend of identity-centric security and the upcoming European Identity & Cloud Conference (EIC) where ITDR will be a topic of discussion.

View Details

Matthias celebrates the 20th anniversary of KuppingerCole Analysts by interviewing the three of the members of the first hour: Martin Kuppinger, Joerg Resch, and Alexei Balaganski. They discuss the early days of the company, the evolution of their work, and the milestones they have achieved. They also talk about the importance of collaboration, the future of KuppingerCole, and their contributions to the industry.

View Details

Matthias and Annie discuss real-life use cases of decentralized identity. They explore two categories of decentralized identity use cases: those that radically change the relationship between individuals and organizations, and those that solve specific problems using decentralized technology.

They highlight the eIDAS 2.0 regulation in Europe as a driver for decentralized identity adoption and mention the importance of interoperability testing. They also touch on the potential use of decentralized identity in supply chain management and the need for open and interoperable ecosystems.

View Details

In this episode Matthias welcomes Osman Celik, a research analyst with KuppingerCole Analysts, to uncover the daily life and career dynamics within the tech analysis industry. They take a glimpse into Osman’s day-to-day activities, exploring the challenges and highlights of being a tech analyst. They discuss essential pathways for entering the tech analysis field, including the qualifications and experiences that bolster a candidate’s profile.

Osman offers deep insights into the critical skills and attributes necessary for success in this role, addressing common misconceptions and highlighting the aspects that make the job fascinating. Furthermore, the conversation navigates through the evolving landscape of tech analysis, providing listeners with strategic advice for nurturing a long-term career in this ever-changing sector.

View Details

This episode of the Analyst Chat features a discussion with Christie Pugh, who oversees digital services at KuppingerCole Analysts. Christie gives insights into the newest topic release of KC Open Select (KCOS). KCOS is a comparison tool that helps users discover information about identity and access management and cybersecurity solutions. It enables users to make informed business decisions based on their requirements and provides insights into the current market state, direction, use cases, and necessary capabilities.

Tune in to learn more about the tool and the new topics coming up in April!

View Details

Have you ever wondered what a CISO does every day? Christopher SchĂĽtze gives insight into his role as a CISO and the important tasks he performs on a daily basis. He emphasizes the need to build training and awareness with people in the organization and be the go-to person for security-related questions. Christopher also highlights the significance of third-party risk management and the challenges it presents.

View Details

Chris Hallum, the Director of the Tanium Platform and John discuss the concept of autonomous endpoint management (AEM). AEM is a new market category that aims to converge unified endpoint management (UEM), digital experience (DEX), and vulnerability management, using AI to automate endpoint tasks.

The conversation explores the role of automation in endpoint management, the importance of real-time data, and the potential actions that can be automated in AEM. It also highlights the journey towards autonomous endpoint management and the need for gradual adoption of automation.

View Details

Matthias invited Martin to discuss the importance of physical access control in the context of identity and access management (IAM) and cybersecurity. Martin highlights the three layers of access control: physical access, logical access to systems, and authentication and authorization. They also explore the impact of regulations, such as the Digital Operations Resilience Act (DORA), on the requirements for physical security.

The conversation delves into the integration of physical access control with identity management systems and the challenges and opportunities in this area. The need for a stronger governance layer for physical access control is emphasized, along with the convergence of physical and logical access. The episode concludes with a discussion on the restriction of access and the importance of telling the story of limited access to customers and citizens.

View Details

In this episode, Mike Small discusses the history and role of digital signatures. He explains that digital signatures are the modern-day equivalent of indelible ink and are fundamental to the security of everything we do digitally. The foundation of digital signatures lies in the use of public-private key pairs, which allow for secure message exchange and verification.

View Details

Matthias and Annie discuss the basics of digital identity and decentralized identity. They explore the concept of a digital identity as an electronic representation of an individual's identity in the digital world. They also discuss the difference between centralized and decentralized identity and the role of governments in providing reliable legal identities.

The conversation highlights the need for digital identity in accessing services and the benefits of decentralized identity, such as privacy and portability. The episode concludes with a discussion on the challenges organizations face in adopting decentralized identity and the future of identity wallets.

View Details

Alexei and Matthias discuss the impact of generative AI on cybersecurity. They explore the shift in public perception towards generative AI and the practical implications for businesses. They highlight the challenges of integrating generative AI into cybersecurity strategies, including data leaks and the need for acceptable use policies.

The conversation also covers the use cases of generative AI in cybersecurity, such as research and learning, training, and code generation. The limitations and considerations for security analysts using generative AI tools are discussed, emphasizing the importance of data quality and verifying results.

Read Alexei's blog post here: https://www.kuppingercole.com/blog/balaganski/managing-the-risks-of-ai

View Details

In this Analyst Chat episode, Matthias and guest Warwick Ashford explore the shift from traditional to next-gen Security Information and Event Management (SIEM) solutions. Highlighting the limitations of traditional SIEM in the face of evolving cyber threats and complex data landscapes, the discussion emphasizes the need for intelligent, automated, and integrated SIEM solutions.

The conversation focuses on crucial features for modern Security Operations Centers (SOCs) dealing with high costs, skills shortages, and a surge in security alerts, providing insights into navigating today's intricate digital security landscape.

View Details

AI is becoming increasingly common and it appears to be unavoidable. However, is this really the case? Marina and Matthias have a conversation about the convergence of AI, machine learning, and cybersecurity. They highlight the importance of utilizing AI to protect our organizations, as attackers are also employing it.

Marina explains the primary risks associated with AI in cybersecurity, such as automation mistakes, data security and privacy issues, and excessive dependence on AI. They also explore how defenders can safeguard their organizations from AI-generated threats and stress the significance of incorporating AI into a comprehensive cybersecurity strategy.

View Details

Martin Kuppinger was a virtual guest at SailPoint's SAILforward24 and was invited to have a chat with Matthew Mills about the industry and market, trends and his perspectives.

Delve into the future of identity and access management (IAM) as Martin and Matthew discuss the profound impact of AI, decentralized identity, and the regulatory landscape. Gain insights into cybersecurity trends and learn how SailPoint addresses these challenges.

View Details

What a milestone! 200 episodes of the Analyst Chat. Matthias and Martin celebrate the journey of the three years of the podcast. Dive into the evolution of cybersecurity and identity management, industry impact, memorable moments, and key insights.

From this episode, we will come back to a weekly schedule, so stay tuned for the episode next Monday.

View Details

Matthias invited Martin Kuppinger to dissect IAM orchestration and convergence in this episode. Explore their insights on these concepts within identity and access management, from antagonism to coexistence. Stay tuned for upcoming trends and predictions!

View Details

The upcoming EU regulation, NIS2, moves closer and organizations will need to act in order to close gaps. Anders AskĂĄsen from Okta and Martin Kuppinger discuss the impact on critical infrastructure organizations and the implications for identity management, particularly in authentication. Learn more about the key considerations, reporting challenges, liability aspects, and the role of identity in meeting NIS2 requirements.

View Details

Join Matthias with Martin Kuppinger and Mike Neuenschwander in this special year-end episode. They reflect on the significant cybersecurity challenges of 2023.

The conversation delves into persistent issues, innovations, and an outlook on trends for 2024 in the realms of cybersecurity and identity and access management.

View Details

Don’t miss this opportunity to join John Tolbert, Director of Cybersecurity Research and Lead Analyst at KuppingerCole Analysts, for this informative webinar to get an overview of ASM technologies and to find out how the ASM market is evolving, how these tools can be used by security teams, and how they can take your cyber defense capabilities to the next level to stay ahead of cyber attackers.

He will also introduce KC Open Select, the new online tool from KuppingerCole that helps buyers choose the right IT solutions, and explain how this will help you in choosing the ASM solution that is a good fit for your organization.

Attend this webinar to:

  • Discover the latest trends in ASM technologies.
  • Find out what key criteria for evaluating ASM solutions.
  • Learn about KuppingerCole’s Leadership Compass research methodology.
  • Get an introduction to the new KC Open Select tool.
  • See how KC Open Select can help choose the right ASM solution for your organization.

View Details

Join Matthias in this special edition of the KuppingerCole Analyst Chat as he takes a look back at the inaugural cyberevolution cybersecurity conference in Frankfurt. The episode features participants and attendees, including Emilie Van der Lande and Steffen Nagel, as well as Christopher SchĂĽtze and Berthold Kerl from KuppingerCole.

The discussion covers key moments, memorable talks, and insights gained during the event. The guests share their thoughts on the impact of AI, the Cyber Defense Matrix, and the challenges posed by deepfakes. The conversation also explores the need for diversity in discussions and the desire for more community-building aspects in future events.

View Details

Join KuppingerCole’s Lead Analyst Alexei Balaganski talking about the need for robust security strategies, the increasing complexity of API ecosystems, and the importance of holistic protection throughout an API's lifecycle. He will present the results of his recently published Leadership Compass on API Security and Management, covering over 40 vendors and their solutions. Alexei will also introduce KC Open Select, a new interactive tool from KuppingerCole that can help buyers compare security solutions and select the ones that fit their organizations’ security and compliance requirements.

View Details

In this episode, Matthias and Martin explore the evolving role of AIs in business processes. AIs are becoming significant actors, representing human identities in tools like chatbots and even functioning autonomously. Martin underscores the importance of traceability, access management, and the unique need for distinct AI identities - AIdentities.

View Details

Matthias is joined by cybersecurity expert Warwick Ashford to unravel the complexities surrounding Remote Desktop Protocol (RDP) security in the face of rising ransomware attacks. The discussion initiates with an overview of RDP's functionality and its indispensable role in modern businesses. They delve into the reasons behind RDP's susceptibility to cyber-attacks, accentuated by the remote work surge during the pandemic. The conversation takes a critical turn as it explores the precarious balance of remote accessibility and security, highlighting frequent oversights in RDP implementation.

Warwick sheds light on the alarming trend of RDP credential sales on the dark web, outlining the severe repercussions for lax security measures. The dialogue then shifts to pragmatic strategies, emphasizing the non-negotiables in RDP security protocols that companies must adopt. Reinforcing the concept of Zero Trust, Warwick advocates for its integration to enhance RDP security frameworks. The episode concludes with a forward-looking perspective, contemplating the evolution of remote access technologies and preemptive measures businesses must consider to thwart emerging cyber threats.

View Details

Matthias Canisius von SentinelOne und Martin Kuppinger erkunden die Verschmelzung von XDR (Extended Detection and Response) und Identity Security. Erfahren Sie, warum diese Verbindung die Zukunft der Cybersecurity gestaltet und wie sie Angriffe in ihren frĂĽhesten Stadien vereiteln kann.

View Details

In part two of "Cybersecurity Fact or Fiction," our esteemed analysts, Matthias Reinwarth, Alexei Balaganski, Marina Iantorno, and Paul Fisher, continue their thrilling quest to distinguish between cybersecurity myths and realities. As they delve into more questions and statements, the suspense escalates, demonstrating that cybersecurity education can be both informative and exciting. Join us for another captivating conversation that will challenge your cybersecurity beliefs and provide valuable insights during Cybersecurity Awareness Month 2023.

View Details

In this episode, Marina discusses the intricacies of synthetic data, AI-generated datasets that mimic real data without revealing personal information. Marina and Matthias explore its significant role in cybersecurity, emphasizing its benefits in model training and realistic threat simulations. Marina points out how industries, especially healthcare, utilize synthetic data to meet privacy regulations. The conversation also covers the potential risks of generative AI, such as deep fakes. Companies like Zalando and OpenAI's application of synthetic data are highlighted.

View Details

To commemorate Cybersecurity Awareness Month 2023, Matthias Reinwarth, Alexei Balaganski, Marina Iantorno, and Paul Fisher came together to play "Cybersecurity Fact or Fiction". This captivating two-part endeavor serves as a valuable opportunity for individuals to refresh their understanding of security concepts.

Throughout the session, the analysts take turns presenting cybersecurity related questions or statements, while their colleagues make informed guesses on whether these statements are accurate or false. This lighthearted, riveting conversation promises to both educate and captivate, as our skilled analysts skillfully discern between truth and fallacy.

View Details

Matthias is joined by experts John Tolbert and Osman Celik to unpack the concept of Attack Surface Management (ASM) and its growing relevance in cybersecurity. They discuss the challenges posed by the ever-evolving nature of attack surfaces and the role of ASM solutions in managing these changes.

The three discuss cutting-edge trends such as Cloud, IoT, and Dark Web monitoring, underscoring their influence on ASM's future. The role of automation in enhancing ASM efficiency is discussed, alongside the significance of ASM in navigating regulatory compliance and making informed choices in the diverse vendor landscape.

View Details

Anirudh Sen, VP Products at Saviynt joins Nitish Deshpande, Research Analyst at KuppingerCole Analysts to explore the realm of Third Party Access Governance and its key distinctions from Identity Governance and Administration (IGA). Discover the evolving landscape of corporate Access Governance, the challenges of securing third-party relationships, and the benefits organizations can gain from effective third-party governance. Learn about the crucial role of AI and automation and gain valuable insights to help your organization stay ahead in managing third-party risks and access.

View Details

Join Matthias Reinwarth and Senior Analyst Mike Small in a quick chat on the evolution of Cloud Security Posture Management (CSPM). They discuss its proactive approach, the challenges in implementation, and the role of overarching platforms like Cloud Native Application Protection Platforms (CNAPP). Mike shares insights for smaller organizations and highlights the impact of geopolitics and AI on cybersecurity. Don't miss cyberevolution in Frankfurt this November for deeper insights.

View Details

Mike Neuenschwander, Vice President at KuppingerCole in the U.S. and Global Head of Research Strategy, recently had some thoughts about passwordless authentication and wrote a blog about it. Today, he joined Matthias for further discussion about that topic, delving deeper into entropy and how it applies to passwords, and his 2nd Law of AuthN Dynamics.

Read the blog here: https://www.kuppingercole.com/blog/neuenschwander/the-second-law-of-authn-dynamics

View Details

In this episode, host Matthias and guest Warwick Ashford dive into the EU's Digital Operational Resilience Act (DORA). They discuss its impact on the financial sector's cybersecurity and operational resilience, focusing on key objectives and challenges. The conversation also covers practical aspects like ICT Risk Management, third-party risks, operational resilience testing, and cyber threat intelligence sharing. A must-listen for IT professionals navigating DORA's complexities.

View Details

In this episode, host Matthias Reinwarth is joined by guest Alexei Balaganski to discuss the implications of quantum computing for cybersecurity. The conversation covers the fundamentals of quantum computing and its distinction from classical computing. They also address the immediate and potential threats that quantum computing poses to existing cryptographic systems. The episode further explores the state of quantum-resistant encryption methods and the concept of cryptographic agility. The advancements in quantum cryptography are also discussed.

View Details

Today, host Matthias and expert Alejandro Leal discuss the dynamic realm of Access Management. They'll touch on its evolution beyond traditional capabilities, the intertwined nature of Access Management and Identity Federation, and the industry-wide shift driven by Covid-19 towards modern solutions. As passwordless authentication and decentralized identities rise, the duo will highlight the potential for innovation and cost-saving in this space.

View Details

In this episode, Matthias sits down with Nitish Deshpande to cover the intricacies of 'Securing the Autonomous World by Reinforcing Cybersecurity.' From understanding the challenges posed by automation to the cybersecurity landscape, to the pivotal role of humans amidst rising automation, Nitish offers invaluable insights. They discuss the complexities of training data for ML models, the verification of these models, and the ever-evolving nature of cybersecurity. Nitish also sheds light on the significance of contextual understanding in automation and shares his vision for the future of cybersecurity in an increasingly autonomous world. Finally, Nitish provides his top recommendations for fortifying cybersecurity infrastructure in this dynamic era.

Read Nitish's Blog Post: https://www.kuppingercole.com/events/cyberevolution2023/blog/securing-the-autonomous-world-by-reinforcing-cybersecurity

View Details

Dive into the world of Privileged Access Management (PAM) and its significance in today's rapidly evolving security landscape with Lead Analyst Paul Fisher and Saviynt's Chris Owen. They explore the challenges organizations face, customer expectations, and the need to reset aspirational goals. Discover the shift towards zero standing privilege, just-in-time access, and the convergence of identity and PAM solutions. Learn about the future of PAM, the role of cloud infrastructure entitlement management, and how user experience is becoming a critical factor in PAM adoption.

View Details

In the latest episode of Kuppinger Analyst Chat, host Matthias sits down with KuppingerCole's CEO Berthold Kerl and the Director of the Practice Cybersecurity Christopher SchĂĽtze to discuss the upcoming cyberevolution event.

Berthold Kerl highlights the event's unique positioning, emphasizing its blend of evolutionary continuity with revolutionary tech disruptions. Set in the heart of Europe, cyberevolution focuses on future predictions, current innovations, and the essence of collaboration. Berthold also mentions a diverse attendee list, from over 30 CISOs to students, spanning continents from Europe to Africa.

Christopher SchĂĽtze touches on AI as the event's central theme and describes various formats, including keynotes, panels, and interactive workshops. He also introduces the Capture the Flag segment, providing insights into its competitive nature. Berthold spotlights the Pitch Night and its competitive spirit, while Christopher highlights workshop topics like ChatGPT and Ransomware Simulation.

In conclusion, Berthold articulates cyberevolution's vision: to complement global conferences like RSA by converging innovation, business resilience, and policy in Europe.

View Details

Alexei Balaganski and Matthias discuss the current state and future of AI in cybersecurity. The conversation explores the role of AI, machine learning, and deep learning in bolstering cybersecurity defenses against evolving threats like malware, ransomware, and phishing attacks. Discover the practical applications of AI, its limitations, and the cautious optimism surrounding its potential impact on the cybersecurity landscape.

Read Alexei's blog here: https://www.kuppingercole.com/events/cyberevolution2023/blog/ai-and-cybersecurity-a-new-hope-for-cyber-defenders

View Details

Join John Tolbert, Director of Cybersecurity Research at KuppingerCole, in this insightful episode featuring George Tarasov, Product Manager at Qrator Labs. Explore the world of multi-vector DDoS attacks and bot detection as they shed light on the increasing complexities and challenges faced by organizations. Learn about the evolution of multi-vector attacks, the rise of bad bots, and the strategies used by attackers to overwhelm target companies. Discover key insights and mitigation techniques to fortify your defenses against these sophisticated threats.

View Details

In this episode of the Analyst Chat podcast, host Matthias Reinwarth invites cybersecurity expert Martin Kuppinger to discuss access control tools for business application environments. They focus on two Leadership Compasses authored by Martin, which provide a comprehensive overview of the market for access control solutions centered around SAP and non-SAP systems.

Martin shares insights on market segments, vendors, product functionality within the access control landscape. They explore innovative approaches to enhancing security, such as access restriction and controlling break-glass access. Furthermore, Martin and Matthias also explore the organizational aspects of access governance in dynamic LoB application environments. They discuss the challenges that arise when transitioning between new vendors, adopting SaaS solutions, and managing access control in multicloud environments.

View Details

Join Matthias as he delves into the world of deep fakes with Research Analyst Alejandro Leal. Deep fakes are manipulated media that can be difficult to distinguish from real footage, posing threats in remote identity proofing attacks and disinformation campaigns.

Alejandro discusses the challenges of detecting and countering deep fakes, emphasizing the need for a multifaceted approach involving media forensics, machine learning, public awareness, and policy developments to mitigate the associated risks.

View Details

In this episode of the KuppingerCole Analyst Chat, host Matthias Reinwarth continues his conversation with guest research analyst Marina Iantorno to discuss the evolving landscape of artificial intelligence (AI) in cybersecurity. They delve into how attackers are leveraging AI to exploit system vulnerabilities and execute targeted attacks.

The conversation also covers the risks associated with AI manipulation by cybercriminals, including the creation of deepfakes. The duo explores the potential of AI in cyber defense, highlighting its role in threat identification, incident response, and predictive threat intelligence.

They also discuss the challenges in implementing AI-based cybersecurity solutions, emphasizing the importance of human expertise in this domain. Regulatory and legal implications of using AI in cybersecurity are also addressed. Finally, they provide practical advice on how businesses and individuals can protect themselves from AI-driven threats.

View Details

In this episode, Matthias engages in a conversation with Senior Analyst Warwick Ashford about the future cybersecurity landscape and threats. They discuss the notion that there's "nothing new under the sun" in cybersecurity, exploring how attackers use familiar tools and techniques in new ways. They emphasize the importance of understanding the evolving technology landscape and expanding attack surfaces.

The discussion also covers strategies for organizations to protect themselves, achieve cyber resilience, and foster collaboration within communities. Attendees of the upcoming cyberevolution event in Frankfurt will have the opportunity to delve deeper into these topics and gain valuable insights into securing emerging technologies. Don't miss this engaging conversation on future cybersecurity threats and the need for a collective approach to defense.

View Details

In this episode of the KuppingerCole Analyst Chat, host Matthias and guest Marina Iantorno discuss the risks of deepfakes and the ethical challenges and biases in AI-driven cybersecurity.

They explore AI ethics, which includes the importance of fairness, explainability, robustness, transparency and privacy in AI systems. They look at issues of algorithmic bias in AI and the cybersecurity threats posed by deepfakes. Beyond the fundamentals, they discuss mitigation strategies, which are techniques to reduce bias and counter deepfakes, including diverse datasets and adversarial training.

They highlight the role of industry, academia, society and regulators in addressing these challenges and promoting ethical AI practices. The episode emphasizes the need for a multi-pronged approach to create a safe and inclusive cybersecurity environment.

Read Marina's blog: https://www.kuppingercole.com/events/cyberevolution2023/blog/the-triple-threat-ai-ethics-bias-and-deepfakes-in-cybersecurity

View Details

In this podcast episode, Christopher SchĂĽtze and Matthias explore the Strategy Navigator by KuppingerCole Analysts, a lean and efficient advisory service designed to tackle common challenges faced by cybersecurity leaders.

Learn how it can help optimize your cybersecurity portfolio, increase IAM efficiency, and guide your organization towards a modern Target Operating Model. We discuss the benefits of expert-led workshops, targeted information, and personalized coaching, all aimed at driving impactful action and ensuring robust protection for your organization. Leverage the strategy navigator to discover how to navigate the path towards Zero Trust or to modernize your infrastructure in a multi-hybrid world.

Learn more about our Advisory Services here: https://www.kuppingercole.com/advisory

View Details

In the episode of the KuppingerCole Analyst Chat series, Martin Kuppinger and host Matthias engage in a detailed discussion about the challenges associated with the integration of Identity Governance and Administration (IGA) into identity management systems based on on-premises Active Directories.

They dissect the structural and deployment aspects of Active Directories, highlighting how these often conflict with contemporary access governance paradigms. Martin explains why these contradictions can make the overlay of IGA on Active Directories extremely challenging, if not entirely unfeasible.

View Details

Join host Matthias and expert guest Alexei Balaganski in this episode of the KuppingerCole Analyst Chat. They discuss the recently updated Open Web Application Security Project (OWASP) API Security Top 10 guidelines and the shifting landscape of web security, highlighting the critical role of APIs.

In addition, they emphasize the importance of Identity and Access Management (IAM) in securing APIs effectively. Tune in for valuable insights into API security, web security, and the significance of IAM.

Find the OWASP API Security Top 10 list here: https://owasp.org/API-Security/editions/2023/en/0x11-t10/

View Details

This episode's guest is Marina Iantorno, Research Analyst at KuppingerCole, who is talking about the highlights and key topics discussed at the European Identity and Cloud Conference (EIC) 2023.

Matthias and Marina discuss subjects such as identity and cybersecurity, trust and protocols, privacy and data protection, ethics in identity and machine learning, and the role of generative AI. Marina shares her experience as a speaker and panel moderator at the conference and provides insights into the trends and future of identity access management, cyber insurance, and decentralized identity.

EIC 2023 Agenda with on-demand sessions: https://www.kuppingercole.com/events/eic2023/agenda

Join the cyberevolution: https://www.kuppingercole.com/events/cyberevolution2023

View Details

Entdecken Sie die Bedeutung von IT Service Management und wie es Ihr Unternehmen voranbringen kann. In diesem Video teilen Bert Kondruß von der USU AG und Martin Kuppinger wertvolle Einblicke über die Lösungen von USU und den Mehrwert von Software as a Service (SaaS). Optimieren Sie Ihre IT-Services und erreichen Sie Ihre Unternehmensziele schneller.

View Details

Matthias invites John Tolbert to discuss Fraud Reduction Intelligence Platforms (FRIP) with him. Discover the evolving landscape of fraud prevention and detection, the key technologies used in FRIPs, and their broader applications beyond fraud reduction.

Gain valuable insights from the latest edition of KuppingerCole's Leadership Compass and explore how these platforms are shaping the future of identity assurance and security: https://www.kuppingercole.com/research/lc81108/fraud-reduction-intelligence-platforms-frip

View Details

Join Matthias Reinwarth, Director of Identity and Access Management, and Nitish Deshpande, Research Analyst, as they delve into one of the most critical challenges faced by organizations today: visibility. Discover why organizations struggle with understanding user access and the potential risks of this lack of visibility.

In this episode, they explore the key capabilities of access governance, such as access review, certification, risk management, request management, and analytics, and how these capabilities enable organizations to gain comprehensive visibility into their assigned accesses. Don't miss this insightful discussion on enhancing control and mitigating risks through effective access governance.

Read Nitish's Leadership Compass here: https://www.kuppingercole.com/research/lc81118/access-governance

View Details

Graham Williamson, Fellow Analyst with KuppingerCole, shares his insights and expertise with our host Matthias Reinwarth as they discuss the lessons learned from Graham's research on secrets management. They also explore the concept of "Machine Identity" and why it's important for businesses to understand. Finally, they discuss how companies can best utilize the information presented in Graham's research to improve their secrets management strategies.

View Details

In this episode, Martin Kuppinger and Matthias are discussing the business case for decentralized identity, and why it is finally gaining traction in the enterprise world.

They are exploring the benefits of using decentralized identity for employee onboarding, especially in the context of remote work. They look at the importance of trust and the full lifecycle management in the decentralized identity ecosystem, and how it can lead to more secure and efficient business processes.

This topic is particularly relevant for the upcoming EIC, where experts and thought leaders will be gathering to discuss the latest trends and developments in digital identity. Join KuppingerCole as we explore the world of decentralized identity and its impact on the future of business.

View Details

In this video, Anders AskĂĄsen of Okta and Martin Kuppinger, Principal Analyst at KuppingerCole Analysts, discuss the lessons that organizations can learn from the financial services industry on compliance and multi-factor authentication (MFA). They focus on DORA and NIS, upcoming regulations that will impact the financial services industry and other organizations. They discuss the need for strong MFA and the importance of context in authentication. They also explore what other industries can learn from the financial services sector's experience.

View Details

Graham Williamson and Matthias explore the world of authentication strategies and the impact of FIDO2. They are discussing why shifting left in our authentication strategy is essential and how FIDO2 can help achieve this. They also delve into the impact that FIDO2 holds for enterprise authentication environments and give their predictions for FIDO2 authenticator devices.

View Details

Matthias is joined by Marina Iantorno in this episode to discuss the trends and predictions for IGA beyond 2023. Marina sheds light on the diverse market segment through KuppingerCole's analysis of the market and provides valuable insights into its evolution.

View Details

In a world where data breaches are becoming more and more frequent, keeping data secure has become an increasingly challenging task. Join Matthias and Alexei Balaganski in this episode as they delve into the current market trends and existing vendors in the data security industry. The discussion delves into a crucial aspect of enterprise data security architecture, including the best alternatives for safeguarding data, covering everything from security control over stored data to the fundamental network infrastructure. Tune in to learn more about keeping your data secure in 2023.

Read Alexei’s Leadership Compass here: https://www.kuppingercole.com/research/lc80907/data-security-platforms

View Details

In this episode, Matthias is joined by Paul Fisher to delve deeper into the sub-series on Trends and Predictions for 2023 and beyond. The world is constantly evolving and a lot has changed and is still changing in the PAM market, which is expanding and undergoing significant transformation. Paul offers insights on the current trends for Privileged Access Management, the significance of CIEM, and the impact of mergers and new players in this crucial market segment.

All things PAM:

Leadership Compass: https://www.kuppingercole.com/research/lc81111/privileged-access-management

Webinar: https://www.kuppingercole.com/events/2023/04/welcome-to-pamocracy

Paul’s Session at EIC: https://www.kuppingercole.com/sessions/5334/1

View Details

Protecting data is a responsibility for any company, regardless of whether it is considered their most valuable asset or not. Data loss can occur due to human error or malicious intent, emphasizing the need for comprehensive protection measures. In this episode of the Analyst Chat, Warwick shares insights into effective Data Leakage Prevention systems and highlights key methods for safeguarding data.

View Details

The topic of passwordless authentication holds immense significance in today's digital landscape. Security experts believe that passwords comprise a significant weakness in security and advocate for their elimination. However, does the elimination of passwords guarantee the ultimate solution?

André Durand states that passwordless authentication is not the Holy Grail but the next evolution in the user experience of authentication. Join André and Martin in their thought-provoking discourse about the next steps after passwordless authentication.

View Details

In the ongoing Analyst Chat sub-series, Matthias and Martin delve deeper into the topic of Trends and Predictions for 2023 and beyond, focusing on the critical concept of Policy Based Access Control (PBAC). Martin highlights the significance of well-defined policies for ensuring robust cybersecurity and access control, laying the groundwork for a robust zero trust approach. 

View Details

Get ready to hear a new take on generative pre-trained transformers! This week, Matthias sat down with Jörg Resch, Co-founder of KuppingerCole Analysts, to discuss the exciting possibilities of ChatGPT. Unlike Alexei, Jörg is an avid user and firm believer in the positive impact that these technologies can have on our daily lives and work. While acknowledging the risks involved, Jörg advocates for a balanced and creative approach to the potential of generative AIs. Brace yourself for a thought-provoking conversation that may just change the way you view the future.

View Details

Matthias and Martin continue their sub-series of the Analyst Chat about Trends and Predictions in 2023 and beyond. This time, it’s about Passwordless Authentication. Martin elaborates on the importance of Passwordless Authentication for the whole Access Management process. Companies should implement a passwordless authentication solution soon to get rid of poor user experience and security risks.

View Details

Everything we do in the digital world, is done by our digital representation of the physical world. Asanka Abeysinghe of WSO2 invented the idea of the "digital double" - a replication of people and things in a digital ecosystem.

He is a guest on our videocast and discusses with Martin Kuppinger how the digital double can become a reality, its benefits and how it relates to consumer identity management.

View Details

In this podcast episode, Alexei Balaganski and Matthias discuss the increasing use of ChatGPT and other machine learning-based technologies in research and the potential risks associated with their use. Alexei offers a strong opinion on the topic, describing the risks of plagiarism and lack of originality that can result from over-reliance on automated tools. He argues that human analysts provide invaluable opinions and genuine research that cannot be replicated by machines. He strongly discourages their use and reliance, and encourages the creativity and innovation of human researchers.

The book by Stanisław Lem: https://en.wikipedia.org/wiki/Summa_Technologiae

View Details

In this podcast episode, Martin Kuppinger and Matthias explore the upcoming trend of IGA (Identity Governance and Administration) solutions to have an increasing level of integration with Data Governance and Software Security products.

The integration of these solutions will provide a comprehensive coverage of ownership not only of systems and authorization objects, but also of data and code, ensuring a complete chain of custody. They delve into the importance of this integration, the benefits it offers, and how it will help organizations manage their identities and data more efficiently and securely. They also discuss the potential challenges and considerations that organizations need to be aware of while integration these solutions.

View Details

With the rapid expansion of IT environments, adoption of the cloud, and the ongoing Digital Transformation, the need to provide secure access to organizational resources has become paramount. Secure Access Service Edge (SASE) solutions are designed to consolidate network and security components, simplify management and licensing, and improve usability.

SASE is the union of a number of different networking and security technologies designed to improve security posture as well as connectivity for remote offices, cloud services, contractors, and remote employees, while driving down the cost of connectivity. John Tolbert is a guest in the Analyst Chat again and will give us some insight into this topic.

View Details

Cyberattacks have been intensifying over the past few years as cybercriminals continue to devise new strategies to launch sophisticated attacks and gain unauthorized access. The tactics, techniques, and procedures (TTPs) that were once only used by well-funded state actors are being commoditized by cybercriminals. As a result, some vendors realized that the traditional approaches and tools of cybersecurity have failed to keep up.

Parallel to SIEM solutions, a class of incident investigation and response platforms has emerged focusing on creating more streamlined and automated workflows for dealing with security incidents. Security Orchestration, Automation, and Response (SOAR) products are the latest iteration of this evolution. SOAR vendors provide solutions that offer centralized coordination, collaboration, and management for forensic analysis and incident response.

KC Open Select will launch tomorrow on February 14, 2023! Stay tuned - this free online tool will kickstart your tools choice to a new level. Learn more: https://go.kuppingercole.com/open-select

View Details

Sometimes a company comes to a point where new software or a new tool is required. This is never an easy decision to make quickly.

Dr. Phillip Messerschmidt has worked with many different clients who have found themselves in this situation. He will explain five of the most common misconceptions and problems he has encountered in his experience - and offer some recommendations on how to avoid them.

View Details

Is digital data really every organization's most precious possession, its "crown jewels"? Alexei Balaganski takes a different perspective towards a widely accepted opinion. He instead claims that data is not your most valuable asset. In fact, it can be a toxic liability without intrinsic value, since business value is only created when data is moving or transforming, producing insights, analytics, etc.

Read Martin's Leadership Compass here: https://www.kuppingercole.com/research/lc81120/data-quality-and-integration-solutions

Learn more about KC Open Select: https://go.kuppingercole.com/open-select

View Details

Who has not heard of the statement that "Data is the new Oil". But oil needs to be refined and so does data. The challenge of gathering, integrating, cleansing, improving, and enriching data across the complete range of data sources in an organization, for enabling use of that data as well as enabling data governance and supporting data security initiatives, that is the topic of this episode. Martin Kuppinger joins Matthias and explains this market segment and its relevance on the occasion of the publishing of a new Leadership compass covering "Data Quality and Integration Solutions".

View Details

The PAM market is changing and expanding. Paul Fisher talks about the latest trends for Privileged Access Management, the role of CIEM, mergers and newcomers in this important market segment.

View Details

A new year brings along a new service from KuppingerCole Analysts. Our host Matthias sits down with Christie Pugh, Digital Products Manager to discuss KC Open Select, our new interactive shortlisting service, the concept behind it, how it helps you prepare for the future, how it compares to our Leadership Compasses, and more.

The landscape of solutions in a market segment can be overwhelming. KC Open Select helps you to get a clearer overview of the market for free.

Check it out now: https://go.kuppingercole.com/open-select

View Details

Trust no one, always verify. We know that Zero Trust phrase already. But this principle is rather abstract - how and where exactly should we do that? Martin sits down with Jackson Shaw, Chief Strategy Officer at Clear Skye to discuss one very important part of Zero Trust: Identity and Access Management. Because you can only verify what or who you know - they need an identity to get access.

View Details

Another year gone already! It's time to take a look back at 2022. Martin Kuppinger and Matthias talk about what happened in the past year and identify top trends in IAM and Cybersecurity. They go beyond technology but also look at processes and business models. By this, they also provide an outlook to what to expect in 2023.

With this episode, the Analyst Chat goes into a short Christmas break. We'll return on January 16th.

View Details

The application landscape in organizations is getting more and more complex. Applications from vendors are more plentiful - or they differ very much from each other - and the combination of on-prem and cloud applications is no longer unusual. It's easy to lose track of all the different risks that are coming with that. Application access governance helps in unifying the different security perspectives. Martin sat down with Keri Bowman from Saviynt to take a deeper look into this topic.

View Details

Alejandro and Matthias continue their conversation about passwordless authentication. This time, the topic is the use of biometrics (and possible security and privacy concerns related to their use) as an authentication factor.

View Details

Research Analyst Marina Iantorno works on determining market sizing data as a service for vendors, service providers, but especially for investors. She joins Matthias to explain key terms and metrics and how this information can be leveraged for a variety of decision-making processes.

View Details

Identity Governance and Administration (IGA) combines the traditional User Access Provisioning (UAP) and Identity and Access Governance (IAG) markets. Nitish Deshpande joins Matthias for the first time on the occasion of the publication of the Leadership Compass IGA 2022, which he has created. They both have a look at this evolving and fascinating market segment.

Leadership Compass Identity Governance and Administration: https://www.kuppingercole.com/research/lc81107/identity-governance-and-administration-2022

View Details

Only a week has passed since John Tolbert, our Cybersecurity Research Director, spoke at CSLS about ransomware and how to combat it. Today, he reports on specific threats posed by ransomware attacks to the healthcare industry, particularly in the US. But in the end, these are just examples of the threats against any user of IT.

Links to the mentioned ransomware attacks:

  • Medibank
  • Common Spirit
  • Lake Charles Health System (US)

Helpful documents for cybersecurity in healthcare:

  • CISA - Stop ransomware
  • MITRE - MEDICAL DEVICE CYBERSECURITY

View Details

Deep Fakes, AI as friend and foe, Business Resilience, Mis-, Dis- and Malinformation: The Cybersecurity Leadership Summit has taken place in Berlin and covered all of this and much more. Martin Kuppinger and Matthias look back on the event and identify their Top 5 Trends from CSLS2022 in Cybersecurity and beyond.

View Details

"Passwordless authentication" has become a popular and catchy term recently. It comes with the promise of getting rid of the risk associated with passwords, however, organizations will add a significant layer to the overall security of their IT infrastructure. Research analyst Alejandro Leal rejoins Matthias to explain how this can be achieved in reality with today's products and services. He gives an overview of the market, the technologies and recent developments in this area.

View Details

CIAM solutions are designed to address specific technical requirements that consumer-facing organizations have that differ from traditional “workforce” or Business-to-Employee (B2E) use cases. John Tolbert has revisited this market segments for the updated Leadership Compass CIAM and provides an update to the analyst chat episode 58 from December 2020.

Cybersecurity Leadership Summit takes place on November 8 – 10 in Berlin and online. Join us there.

View Details

Virtual Private Networks (VPNs) are increasingly being promoted as an essential security tool for end users. This is not about the traditional access to corporate resources from insecure environments, but rather about privacy and security protection, but also about concealing one's actual location on the Internet. Alexei analyzes the operation and effectiveness of these tools and explains his view on the question of whether VPNs are really needed for security and privacy.

Cybersecurity Leadership Summit takes place on November 8 – 10 in Berlin and online. Join us there.

View Details

The question whether using a cloud service alters risk is not simple to answer. Mike Small sits down with Matthias and explains, that every organization has its own set of circumstances, and the answer needs to take these into account. He explains the important factors to look at, and what organizations should understand when assessing their risks in a cloud and hybrid world.

Cybersecurity Leadership Summit takes place on November 8 – 10 in Berlin and online. Join us there: https://www.kuppingercole.com/events/csls2022

Find more on our website: https://www.kuppingercole.com/

Feel free to contact us with questions! mr@kuppingercole.com

View Details

Cybersecurity often seems like a dry subject. And as long as it is practiced successfully, its benefits can only be seen in the absence of damage. However, Marina Iantorno, who is taking part in the Analyst Chat for the first time, will discuss the actual risks associated with inadequate IT security and how they affect organizations specifically.

Cybersecurity Leadership Summit takes place on November 8 – 10 in Berlin and online. Join us there: https://www.kuppingercole.com/events/csls2022

View Details

Sometimes Vulnerability Management has to take care of current threats very quickly: Christopher SchĂĽtze is today's guest in this episode and explains which processes are necessary when a system needs to be updated very quickly, for example because there is a current threat, e.g. a "zero day" attack actively being exploited or a vendor recommends an update....

View Details

A key issue for many companies beyond technical cybersecurity is cyber resilience. This refers to the ability to protect data and systems in organizations from cyber attacks and to quickly resume business operations in the event of a successful attack. Martin Kuppinger, Mike Small, and John Tolbert will explore this important topic at the Cybersecurity Leadership Summit in Berlin. For this special episode of Analyst Chat, they join Matthias for a virtual panel discussion to identify key actions on the path to a cyber resilient enterprise.

Meet us at Cybersecurity Leadership Summit: https://www.kuppingercole.com/events/csls2022

Find more on our website: https://www.kuppingercole.com/

Feel free to contact us with questions! Matthias: mr@kuppingercole.com

View Details

How do you implement modern cybersecurity leadership between compliance, threat protection, privacy and business enablement? To answer this question, Matthias invited the CEO of KuppingerCole Analysts, Berthold Kerl, who was and is active in various roles as a leader in cybersecurity. Together they explore questions such as how important the knowledge of basic cybersecurity technologies is and what the necessary management tasks are in an organization?

View Details

It is always easy to blame people, i.e. users, for data breaches and ransomware attacks. But is that really still true today? Martin Kuppinger and Matthias discuss this cybersecurity myth and finally defend users against unjustified accusations.

Meet us at the Cybersecurity Leadership Summit!

View Details

Verified identity refers to digital identities that have been verified to describe a real-world identity in digital form. A growing range of service providers support organizations to achieve this for customers, citizens and employees alike. Annie Bailey rejoins Matthias and gives an overview of what "Providers of verified identity" are and which types of services and benefits beyond mere verification should be considered.

The Leadership Compass will be available here once published.

View Details

Zero Trust is rapidly gaining popularity as a modern alternative to traditional perimeter-based security. While it is (rightfully) mainly considered a concept rather than a product, a new market segment has developed. Those solutions apply this concept to network-based access to existing applications and other systems by creating a logical identity- and context-based overlay over existing (and presumed hostile) networks. Alexei Balaganski has examined this new market for KuppingerCole Analysts research and talks to Matthias about how this can speed up ZT deployments. 

View Details

Customer Data Platforms (CDP) are a fairly new addition to the pool of consumer identity centric management solutions. KuppingerCole Fellow Analyst Roland BĂĽhler joins Matthias for the first time and he explains the full picture of consumer identity and detail what differentiates CDPs from other solutions, such as DMP, CRM or Marketing Automation Solutions.

Here are the links to the documents that Matthias and Roland are talking about: Customer Data Platforms, Machine Customers - The Impact of Customer Bots on Customer Journeys

View Details

Microservices are increasingly becoming the new normal for enterprise architectures, no matter where they are deployed. Alexei Balaganski and Matthias discuss why doing this properly is essential and which aspects need to be considered, way beyond just talking about transport encryption or API security.

View Details

The IT environments have become complex, and this will not stop as more technologies such as Edge Computing start to take hold. Paul Fisher looks at the full scope of entitlements across today's multi-hybrid environments. He explains how this new market segment between the cloud, on-premises, privileged accounts, and DevOps has developed and what DREAM means in this context.

View Details

Europe is on a "Path to a Digital Decade", which envisions 80% of EU citizens using a digital ID card by 2030. A part of that journey will be self-sovereign identities. Research Analyst Alejandro Leal joins Matthias to continue their discussion on the digital transformation in public services. Self-sovereign identities, the new eIDAS regulation, and the impact of both on how interactions between citizens and the state will change, are a controversial topic in the public discussion as well.

View Details

Web Application Firewalls (WAF) have been around for quite some time to protect web applications through the inspection of HTTP traffic. But with a changing nature of web applications and the ever changing threats landscape they nee to evolve constantly. Richard Hill sits down with Matthias to explain newest developments in the market of WAFs, that is demanding increasingly for intelligent solutions.

View Details

With CYFIRMA's products, you can take a look at your business through the eyes of a cybercriminal. But to know what they know, they need to take steps into the dark side of the World Wide Web. Osman interviews Kumar Ritesh from CYFIRMA about their work on the Dark Web.

View Details

Imagine paying your taxes digitally on your mobile phone by using your digital ID that is also used for easily applying for a parking permit online. Sounds like the future? In Estonia, this has been a reality for 20 years. Research Analyst Alejandro Leal joins Matthias for the first time for the Analyst Chat. They talk about the changing landscape of citizen-facing government processes and the impact of the digital transformation on the public sector, how Estonia can be a role model and what we can learn from their limitations.

View Details

Do you know what information about your company is out there and can be used by cybercriminals? What are they interested in? Are they actually targeting your company and planning to exploit it? These are many questions that you may want to consider answering. After all, part of a good defense strategy is knowing your enemy. Kumar Ritesh wanted to solve this challenge and founded CYFIRMA to help others with a complete, comprehensive view, on one platform. Learn more about how they help you look through the eyes of cybercriminals.

View Details

Graham Williamson has teamed up with John Tolbert to research the current state of the Operational Technology (OT) and Industrial Control Systems (ICS) sectors. They documented the ability of the main industry players to support a coordinated approach to detecting, responding to, and recovering from, cybersecurity attacks and intrusions. Graham joins Matthias to provide insight into this market on the occasion of the publication of the Market Compass Cybersecurity for Industrial Control Systems.

For feedback, please reach out to Matthias at mr@kuppingercole.com.

View Details

The previously distinct but now converged fields and product lines of Endpoint Protection (EPP) and Endpoint Detection & Response (EDR) are covered in the brand new KuppingerCole Analysts Leadership Compass on EPDR (Endpoint Protection Detection & Response). Lead Analyst John Tolbert joins Matthias to give a sneak peek into this market segment and shares some results of the evaluation as well.

View Details

Secure Collaboration solutions focus on enabling data-centric security to facilitate virtual collaboration. Annie Bailey talks with Matthias about this market segment that provides increasingly flexible, interoperable, and therefore even more secure solutions.

View Details

Consumer Identity and Access Management (CIAM) is an emerging market with a strong demand for solutions. Especially with the increasing digitization of the workplace, the market is growing and there are more and more vendors entering this market. Our analyst John met with Sadrick Widmann from cidaas, one of the leading IAM solutions in Europe, to talk about the importance and relevance of CIAM.

View Details

Martin Kuppinger and Matthias conclude their conversation about the opening keynote Martin held at EIC 2022 in Berlin. They look at how future IT will look like and how the overall transformation towards this future state can be managed.

View Details

Martin Kuppinger and Matthias discuss topics from the opening keynote Martin held at EIC 2022 in Berlin. They start with the role of leaders and decision makers in a consistently changing global environment.

View Details

The Identity Fabric paradigm manifests an important cornerstone of the KuppingerCole Analysts AG research and advisory. Products in that area cover a wider range of capabilities including Access Management and IGA, and beyond. Martin Kuppinger joins Matthias to provide more details about this evolving market sector, and on which vendors and which products/services to watch.

View Details

Access Management refers to the group of capabilities targeted at supporting an organization's access management requirements traditionally found within Web Access Management & Identity Federation solutions, such as Authentication, Authorization, Single Sign-On, Identity Federation. Richard Hill joins Matthias for the first time to talk about this topic and the recent developments in that area as reflected in his Leadership Compass on Access Management.

View Details

Shortly before EIC, Graham Williamson and Matthias sat together virtually and discussed the recent publication of the Market Compass on "Policy Based Access Management". In this episode Graham gives a great introduction in this evolved market segment and talks about hybrid and cloud-native use cases. They hint at several sessions on policy-based and cloud-native access control at EIC as well, so for those interested in learning even more on modern authorization, either the Market Compass itself or the EIC recordings are perfect starting points after listening to/watching this episode.

View Details

SOCaaS (Security Operations Center as a Service) is a growing trend in cybersecurity, where core security functions are uniformly delivered to enterprises from the cloud. Warwick Ashford explored this in a recently published Market Compass and provides an overview of his findings.

View Details

John Tolbert and Matthias discuss the question of whether companies in retail, finance, healthcare, insurance, etc. are really able to keep up with the scale and sophistication of attacks aimed at committing fraud? Are they considering FRIP solutions for specific use cases?

View Details

A recently published study shows that the use of strong authentication in enterprise environments is at a very low level. John Tolbert explains this finding to Matthias and together they discuss how to find a way out of this situation.

View Details

Securing containers along their lifecycle and wherever they are deployed is a cybersecurity challenge. And it is a new topic for KuppingerCole Analysts. Alexei Balaganski joins Matthias to talk about the just recently completed Leadership Compass on Container Security.

View Details

Martin Kuppinger gives Matthias one of these rare insights into the process of creating and delivering the next great opening keynote of an event. With EIC 2022 being already in sight in May 2022 in Berlin, they talk about the composable enterprise and more perceived or actual buzzwords, and how to make sense of this in a business context.

View Details

On March 25th, 2022 the European Commission and the US government announced a new agreement governing the transfer of data between the EU and the US. Mike Small and Annie Bailey join Matthias to have a first look as analysts (not lawyers) at this potential milestone for data privacy between the European and the US regions.

View Details

This time Alexei Balaganski and Matthias look at practical approaches to actually implementing Zero Trust for specific, real-life use cases. On this occasion, they also finally unveil the connections between Zero Trust and Feng Shui.

View Details

GAIN (the Global Assured Identities Network) is entering a new phase. On March 2, the technical proof-of-concept group was launched to actually test the concepts. Annie Bailey and Matthias have a look at the list of participants, the agenda, and the potential outcomes of this PoC. And provide a sneak peek at more about GAIN at the upcoming EIC 2022 in Berlin in May.

View Details

Online tracking is a highly visible privacy issue that a lot of people care about. Third-party cookies are most notorious for being used in cross-site tracking, retargeting, and ad-serving. Annie Bailey and Matthias sit down to discuss the most recently proposed approach called „Topics API“.

View Details

Access control tools for application environments, which include SAP in particular, but also a growing number of other business applications, are becoming increasingly important for compliance and cybersecurity. They also serve as a basis for granting proper access to employees efficiently. Martin Kuppinger and Matthias look at this market segment and at new, innovative solutions, on the occasion of very recent research that has just been published.

View Details

Data catalogs and metadata management solutions help capture and manage data from all enterprise data sources to enable the use of that data and support data governance and data security initiatives. This interesting and growing market segment is the topic this week when Martin Kuppinger and Matthias sit down for the Analyst Chat podcast.

View Details

The conclusion of a tool choice process is usually the consideration of commercial aspects, i.e. software costs and licensing. Martin Kuppinger and Matthias look at this central aspect and discuss different approaches to make different offers comparable, but also give recommendations to vendors on how they can make decisions easier for their potential customers.

View Details

A comprehensive cybersecurity strategy typically includes the use of modern, intelligent Security Information and Event Management (SIEM) platforms. These go far beyond simply aggregating and analyzing log files. Alexei Balaganski outlines the latest market developments based on his recently published Leadership Compass on "Intelligent SIEM Platforms" and explains the differences to other market segments together with Matthias.

View Details

The importance of efficient and secure cloud backup and recovery is often underestimated. Mike Small explains these two disciplines to Matthias and looks at the market of available solutions on the occasion of his recently published Leadership Compass. He also provides valuable guidance on what a strategy and its successful implementation can look like in this area.

View Details

The three biggest threats to business resilience are IT Risk, Compliance Risk, and Vendor Risk. Integrated Risk Management Platforms address these risks. KuppingerCole's Lead Analyst Paul Fisher has analyzed this market segment recently and he joins Matthias to talk about recent developments and the market in general.

View Details

"Privacy and Consent Management" is an exciting topic in a continuously changing market. Annie Bailey has just completed her latest Leadership Compass, which researches this market segment. To mark the release of this document, she joined Matthias for an Analyst Chat episode where she talks about the innovations and current developments.

View Details

A new year, and 2022, like 2021, again begins with a look back at a far-reaching security incident. Cybersecurity Analyst Alexei Balaganski and Matthias take the topic of Log4j as an opportunity to look at code quality and cyber supply chain risk management. They also mention Mike Small's excellent blog post, which can be read here: https://www.kuppingercole.com/blog/small/log4j-how-well-did-you-perform

View Details

Paul Fisher and Matthias present their very subjective summary of a really special and, in particular, especially challenging past year, 2021. They cannot do without the word 'pandemic' after all, but they also try to reach a first perspective on the year 2022 from the past 12 months.

View Details

The announcement of the GAIN initiative for the secure distribution of verified and assured identity data has been made at EIC in September. While the core concepts of this initiative have been discussed in earlier episodes, Martin and Anni sit down with Matthias to do a deeper dive into further aspects of GAIN, including the use beyond customer-related IAM and the challenge of privacy in such a hyper-connected network for PII.

View Details

Senior Analyst Graham Williamson joins Matthias from down under to talk about edge computing. Starting from the definition and relevant use cases, they focus on where the edge brings value. They discuss what the key criteria for a successful deployment are and what needs to be looked at to do edge computing while preserving security and privacy.

View Details

Lead analyst Alexei Balaganski joins Matthias for an episode on Data-Centric Security. Starting with a definition behind that term, they look at relevant technologies and market segments and discuss adequate ways of adding Data-Centric Security to an organization's cybersecurity strategy.

View Details

From November 9th to 11th, the Cybersecurity Leadership Summit 2021 took place in Berlin and virtually online. The Monday after, Martin Kuppinger and Matthias sat together to talk about some first impressions and insights from this event.

The recordings and slide decks are available for participants and those interested at https://www.kuppingercole.com/events/csls2021/

View Details

In the past, servers and applications were rather static, and entitlements too were static. But this has changed. Organizations must deal with a multi-cloud, multi-hybrid IT. Entitlements and access in today’s cloud environments are dynamic, just like workloads. Martin Kuppinger joins Martin to explore the area of Dynamic Resource Entitlement and Access Management (DREAM). Together they look at policies and automation as one key building block for managing today's volatile IT.

View Details

No big celebration, but at least a mention: this is the 100th episode of the KuppingerCole analyst chat. Martin Kuppinger joins Matthias to discuss the increasingly important topic of "everything as code" and how to define proper strategies for approaching this, especially in the context of the BASIS concept. For more on this, both recommend revisiting Martin's opening keynote from this year's EIC.

View Details

John Tolbert sits down with Matthias and shares his insights into current approaches for protecting and defending essential enterprise systems beyond traditional, often office-focused cybersecurity. Safeguarding Operational Technology (OT), Industrial Control Systems (ICS), and the Industrial Internet of Things (IIoT) is getting increasingly important. John explains that modern approaches like Network Detection and Response (NDR) and especially Distributed Deception Platforms (DDP) can be valuable building blocks in an overall strategy for defending, for example, the factory floor or critical clinical systems.

View Details

Annie Bailey and Matthias take a deeper look at the emerging concept of the Global Assured Identities Network (GAIN) and also seek a broader perspective on the benefits and challenges of reusable identities in general.

View Details

The idea of low-code/no-code (LC/NC) application development is for end users to create their own custom applications, perhaps using a graphical design tool, selecting from a library of existing building blocks, or perhaps even with the assistance of artificial intelligence. Alexei Balaganski explains the concepts behind this new development, takes a look at the current market and, finally, highlights the challenges and security issues that may be hidden behind the use of such application development.

View Details

While moderating and speaking at KuppingerCole's flagship EIC 2021 event in Munich, Matthias also took the opportunity to sit down one-on-one with his fellow analysts in the conference studio for some EIC special analyst chat episodes. In the third and final special episode, Martin Kuppinger and Matthias look at how current technologies and concepts complement each other to improve security and convenience for users of modern technologies at the same time.

View Details

KuppingerCole's flagship event EIC 2021 took place very successfully in Munich and online in September. Of course, Matthias took the opportunity to sit down with his fellow analysts in person for some EIC Special Analyst Chat episodes. Building on the themes of his Opening Keynote, Martin Kuppinger explains the concepts behind "Deconstructing the User Journey".

View Details

EIC 2021 finally took place in Munich in a hybrid format between on-site and online. Of course, Matthias took the opportunity to sit down with his analyst colleagues in person for some EIC special analyst chat episodes. In the first of three specials, Christopher SchĂĽtze talks to him about the findings from his pre-conference workshop on defending against ransomware, and they also turn their attention to a promising new approach to creating globally secured identities.

View Details

Martin Kuppinger and Matthias discuss the high-priority topic of how to achieve automation of management and security across the entire multi-hybrid, multi-cloud IT infrastructure based on well-defined policies.

View Details

Cybersecurity is one of the areas where virtually every business will need to invest because of ever-growing cyber risks and ever-tightening regulations, and in the post-Covid era, the cybsersecurity market continues to evolve and grow, having gained even greater importance. Warwick Ashford joins Matthias to discuss the factors driving the trends in this market and what businesses should be considering when making cybersecurity investments.

View Details

Christopher SchĂĽtze provides the fundamentals for a pivotal topic in cybersecurity, namely how to create processes and systems for comprehensive and continuously improving vulnerability management. Together with Matthias, he provides an overview of elementary aspects that need to be considered.

View Details

The market segment of products and services that are designed to manage and secure APIs as essential resources in a multitude of different environments is constantly evolving. On the occasion of the publication of the latest edition of his Leadership Compass "API Management and Security", Alexei Balaganski explains the fundamentals and current developments of these products and services.

View Details

Business Intelligence is the discipline of deriving business insights from raw enterprise data to inform decision making. Although this is a mature market, new trends are stirring up this market sector. Annie Bailey joins Matthias to explain what is changing and what 'Next-generation BI platforms' are.

View Details

XDR (eXtended Detection & Response) solutions are an emerging category of security tools that are designed to consolidate and replace multiple point solutions. John Tolbert and Alexei Balaganski join Matthias and share their views on this market, the existing offerings, and how it might evolve.

View Details

Paul Fisher has researched the topic of Data Governance Platforms extensively, and he published a Market Compass on this topic at KuppingerCole Analysts just a few weeks ago. In the current episode of Analyst Chat, he explains this market segment to Matthias and provides insight into current developments.

View Details

The path toward a Zero Trust architecture to improve cybersecurity for modern enterprises in a hybrid IT landscape often seems overly complex and burdensome. Alexei Balaganski is this week's chat partner for Matthias and he draws attention to an often overlooked benefit of such an infrastructure. One key idea of Zero Trust is to actually reduce complexity and unnecessary effort and instead focus on what really needs to be protected.

View Details

This episode concludes the four-part series on hybrid IT. To wrap things up, Mike Small and Matthias focus on the latest developments in hybrid infrastructures, between containers, hyperconverged, edge and cloud in a box.

View Details

Part three of the four-part series on hybrid IT looks at approaches to appropriately manage and evolve hybrid architectures. Mike Small and Matthias put the focus not only on technical management, but also on appropriate governance in particular.

View Details

Mike Small and Matthias continue their four-part series on hybrid IT, looking at the increasing complexity: they look at multiple dimensions of the challenges that come with deploying and operating hybrid IT architectures.

View Details

This is the kickoff of a four-part series of podcast episodes around hybrid IT. Mike Small and Matthias explore the fundamentals of modern architectures between the cloud and the traditional data center.

View Details

In episode seven of this podcast, John Tolbert and Matthias first looked at Fraud Reduction Intelligence Platforms more than a year ago. Much has happened in this market segment since then, and on the occasion of the release of the updated Leadership Compass, they look at the latest innovations.

View Details

Anne Bailey has just completed extensive research into the new market segment of AI Service Clouds. In this episode, she explains this innovative concept, which aims to overcome the lack of qualified personnel and bring artificial intelligence and machine learning to more companies.

View Details

Your DNS server knows what websites you use, what the name of your mail server is, and which corporate services you use while working from your home office. And there are even broader challenges when it comes to protecting sensitive personal data in that context. Alexei Balaganski and Matthias continue their conversation about a fundamental Internet resource, the Domain Name System, this time walking the fine line between technology and trust.

View Details

Some internet services are so deeply woven into the core infrastructure, that they are just taken for granted or even ignored in our daily digital life. One example is the Domain Name System. Alexei and Matthias discuss the basics of DNS, look at current cybersecurity threats targeted at it, and explain how they can be mitigated.

View Details

Maintaining finer grained access by administering AD groups through dedicated and delegated application administrators is the reality in many organizations. Martin Kuppinger and Matthias discuss these types of indirect authorization management and why they are no good choice, even more when AD becomes legacy.

View Details

CIEM is one of the latest entries to the set of 3- and 4-letter acronyms in IAM technology. Martin Kuppinger and Matthias take a look at the functionality behind it and its role within an Identity Fabric.

View Details

Martin Kuppinger joins Matthias for a first hybrid audio plus video episode of the Analyst Chat. They talk about horizontal (capabilities like AM, IGA, and PAM) and vertical siloes (identities like things, robots, customers, partners, or employees). And they lay out a proper approach to strategically get rid of these siloes in the long run.

View Details

Building on the first three podcast episodes of this series with Annie and Shikha, Paul Fisher and Matthias turn their attention to the Privileged Access Management aspect in the context of WfH and its Cybersecurity Threat Landscape. They look at the role PAM plays in the particular WfH use cases for administrators, as well as for business users. And they look at the potential changes that this will bring for the further development of PAM in the future.

View Details

The Internet of Things is everywhere around us. Almost every device we use is connected to the internet. But are they really smart or intelligent? An most important – what are we and will we be doing about their security?

Join Thom from SentinelOne and Alexei as they discuss what AI and IoT really are to learn how many IoT devices Alexei has at home and how long we have to wait until "The Terminator" will be al real thing.

View Details

Shikha Porwal and Matthias Reinwarth have a coffee conversation over the security risks of working remotely. They talk through the vulnerabilities of a home network, and touch base with the pandemic related end point security threats, employee behavior and finally, Zero trust.

View Details

Annie and Matthias continue their conversation on the COVID-related trends in 2021. They conversate about different technology and internet usage trends, and also mention some potential topics that will become more prominent in the future as a learning from these trends.

View Details

Join Martin with Jackson and TJ from Clear Skye as they talk about how Clear Skye accelerates your Identity's digital transformation.

View Details

While the world tries to cope up with the on-going pandemic, cybercriminals have got their hands on a gold mine. Annie and Matthias sit down again to chat about the overall picture of cyberattacks, including COVID-related lures.

View Details

Annie Bailey and Matthias continue their conversation around privacy, targeted marketing and the end of the era of the 3rd party cookie, that they started two weeks ago. They discuss the characteristics and the pros and cons of upcoming approaches, while this technology area is still continuing to evolve.

View Details

Dr. Phillip Messerschmidt is an experienced practitioner with extensive background knowledge in all things IAM. He helps us to take a step back and look at IAM in daily life. Drawing on simple, understandable definitions, he provides practical recommendations for successful and efficient identity and access management.

View Details

Tracking of users via 3rd party cookies has been a constant issue regarding compliance and user privacy. This is about to change, as 3rd party cookies are being more and more blocked in browsers like Firefox and Safari. And Google has announced the same step for Chrome in upcoming versions. What does this mean for the ad business, what are new approaches for addressing targeted marketing in a potentially more privacy preserving manner? Annie Bailey joins Matthias to discuss recent developments in this field.

View Details

How can PAM technologies fit into a Zero Trust architecture and model? How could a PAM technology help us sleep better at night, as many are anxious about falling victim to an attack similar to the Solar Winds attack? Is there a future in deploying PAM in DevOps environments? And how can PAM technologies help to address regulatory compliance? Join Paul and Jim as they talk about different current topics around PAM - Privileged Access Management.

View Details

As organizations go through digital transformation, they increasingly turn to using cloud services. One aspect of the digital transformation plan that is often forgotten is ensuring business continuity. Mike Small joins Matthias to explain why business continuity is essential for cloud services, especially in light of current events.

View Details

John Tolbert has just recently completed an updated Leadership Compass research document in the market segment of Enterprise Authentication. He joins Matthias for this episode to talk about recent developments and trends in that important area of the Identity Fabric for both IAM and CIAM.

View Details

Alexei Balaganski covers a broad range of security-related topics: from database, application and API security to information protection, cryptography and AI-based security automation. He joins Matthias to give a first insight into a fascinating new approach towards access encrypted data "in use", while maintaining privacy and security of data and processing. He explains the concepts behind homomorphic encryption, the current status, the technology required and he talks about first pioneering use cases.

View Details

Martin Kuppinger is one of the founders and the principal analyst of KuppingerCole and he is steering the overall development of the topics covered in KC's research, events and advisory. He joins Matthias to talk about the importance of extending Zero Trust to cover software security, for software in any form (embedded, COTS, as-a-service) and regardless of whether it’s home-grown or externally procured.

View Details

Many enterprises are nowadays dealing with the modernization of their Identity & Access Management. Modernizing Identity Governance and Administration (IGA) and well as Access Management at the same time can become too complex.

In this video blog post, Martin gives practical advice on how enterprises can get their priorities straight.

View Details

Privileged user accounts are significant targets for attacks as they have elevated permission, access to confidential data and the ability to change settings. And if compromised, the amount of damage to an organization can be disastrous. No wonder that this is on the mind of our chief information security officers. Join our CEO Berthold and Rob Edmondson, Technology Strategist at Thycotic in this conversation!

View Details

The press, security vendors, politicians and analysts alike currently often focus only on the recent SolarWinds security incident and its exceptional features and effects. While this is in fact an extremely important topic to learn from and to clean up, the shadow of this hype causes that at the same time it is often neglected that even very basic cybersecurity aspects are poorly addressed in many organizations. Alexei and Matthias look beyond the hype and discuss the need for new initiatives to achieve an actual adoption of proper measures to improve basic cybersecurity hygiene in essentially all organizations.

View Details

The Security Operations Center-as-a-Service (SOCaaS) market has emerged and continues to develop in response to demand for security monitoring, analysis, detection, response, and improvement recommendations either instead of or as a supplement to permanent on-premises SOCs. KuppingerCole Analyst Warwick Ashford joins Matthias for this week's episode and shares some insights into this evolving market segment he gained during his recent research.

View Details

More than a month into the post-SolarWinds-incident era Alexei joins Matthias to discuss further lessons learned and strategic approaches towards improving security in organizations depending on diverse cyber supply chains and their imminent threats. But they go beyond and look at the necessary changes between management awareness and software development security.

View Details

Join Simon Keates (Head of Strategy and Payment Security at Thales) and Dr. Udo Milkau (Fellow Analyst at KuppingerCole) talking about Security Issues in the FinTec Industry!

View Details

Although not really brand new, there are still a lot of interesting developments around DevOps when it comes to cybersecurity and more. Paul Fisher shares some trends and insights with Matthias and tells us what to expect in this rapidly evolving segment.

View Details

The SolarWinds incident made the news in December 2020 and continues to impact many organizations. John Tolbert joins Matthias to give a short introduction of what decision makers need to know at this stage and which measures to look at first.

View Details

Watch this Videocast with our Analyst Alexei and Todd Moore from Thales to learn why and how to encrypt everything!

View Details

John Tolbert joins Matthias and shares insights about the results from the just recently published Leadership Compass CIAM. They talk about the overall maturing of the market and the areas of innovation in products, standards and integration scenarios.

View Details

Annie joins Matthias to talk about the topic of Verified Digital Identity. They explore what these are, why they are becoming increasingly important and where they add new aspects to the concept of digital identity. A special focus is put on existing and emerging use cases, where verified digital identities can be beneficial to all types of real life entities in their day by day interaction.

View Details

Join our Analyst Mike Small and Paul Hampton, Product Manager at Thales Security as they talk about the importance of securing data in the cloud.

View Details

This podcast has already looked at the Zero Trust concept as a challenging architectural paradigm for security and an important component of modern and future-oriented security architectures from various angles. This time Christopher and Matthias focus on a phased project approach towards implementing Zero Trust in a well-paced, phased, "one-bite-at-a-time" manner.

View Details

The Zero Trust concept comes with the promise to adequately secure our modern, hybrid IT world at any time and any place. Manufacturers, consultants and even analysts agree as rarely as they do that this changed architectural paradigm is an important component of modern and future-oriented security architectures. Alexei and Matthias address the question why in practice only a few powerful zero trust architectures deliver on this promise. They try to answer the question what organizations need to consider in order to get off to a good start.

View Details

Martin Kuppinger and Danna Bethlehem, Director of Product Marketing at Thales discuss their perspectives on the interplay of Zero Trust and Identity and Access Management.

View Details

The PAM market continues to evolve and many organizations are adopting the DevOps paradigm where critical access and sensitive accounts are required in fast moving and agile environments. Paul Fisher meets Matthias for this episode and shares his research on PAM for DevOps. They talk about the challenges of this area of application, but also about the differences and similarities with "classic" PAM. And about the opportunities on a path towards a hybrid approach to PAM in today's organizations, in the midst of the Digital Transformation.

View Details

In this second of two episodes, Annie Bailey and Matthias Reinwarth look at use cases of emerging technologies in healthcare. The use of AI, and machine learning to facilitate self-diagnosis chatbots is just one of many fascinating areas of application that are discussed and analyzed.

View Details

John Tolbert has just taken a close look at the market for SOAR tools (Security Orchestration, Automation and Response) to prepare a Leadership Compass. This has just been published and this gives John and Matthias the opportunity to take a closer look at this market segment of security infrastructures.

View Details

In this first of two episodes, Annie Bailey and Matthias Reinwarth lay the foundations for the topic "Emerging Technologies in Healthcare". Beyond hype and half-knowledge, they look at the use of AI, machine learning, block chain, and modern digital identities for the comprehensive improvement of processes and systems in healthcare.

View Details

This analyst chat episode is the 50th and therefore a bit different. This time Matthias talks to two experienced analysts, Martin Kuppinger and Alexei Balaganski, about the ECSM, the European Cyber Security Month, which is to provide information and awareness on cyber security in October 2020. The particular aim they pursue is to go beyond awareness to arrive at specific measures that can benefit individuals and organizations alike.

View Details

When asked to describe IAM processes, managers tend to think first of traditional lifecycle management processes such as Joiner, Mover and Leaver (JML). While these are clearly essential for identity governance in interplay with authoritative sources, a comprehensive process framework for IAM and beyond encompasses many other areas. Martin Kuppinger and Matthias Reinwarth explore some of these additional areas between convenience and compliance.

View Details

Dynamic, risk-based, attribute- and context-related authorizations are becoming increasingly important for many enterprises. Graham Williamson and Matthias Reinwarth take a look at the market sector for dynamic authorization management and policy-based permissions in light of the recent publication of a Market Compass on this topic.

View Details

Access management and access governance in many companies are still largely based on traditional authorization concepts. Thus defining and thinking access management is often rooted in a rather one-dimensional paradigm. Martin and Matthias talk about access policies as a common language for defining and maintaining rules for access, independent of the actual implementation of access control.

View Details

Warwick Ashford and Matthias Reinwarth talk about business resilience again, focusing on cyber supply chain risk management.

View Details

Alexei Balaganski and Matthias Reinwarth look at the citizen development movement and discuss the potential risks of letting business users create their applications without proper governance and security.

View Details

Warwick Ashford and Matthias Reinwarth discuss the prerequisites and challenges of making a business able to adapt quickly to risks and disruptions.

View Details

Anne Bailey and Matthias Reinwarth discuss the findings of the recently published Leadership Compass on Privacy and Consent Management.

View Details

Alexei Balaganski and Matthias Reinwarth discuss the concept of ephemeral credentials and its benefits for privilege management, DevOps and beyond.

View Details

John Tolbert and Matthias Reinwarth look at SP 800-207, the NIST special publication on Zero Trust architecture and discuss how it aligns with KuppingerCole's own vision of this topic (spoiler: it does align very well!)

View Details

Alexei Balaganski and Matthias Reinwarth try to make sense of the current state of quantum computing and talk about the risks it poses for information security.

View Details

John Tolbert and Matthias Reinwarth discuss benefits and limitations of agentless security solutions.

View Details

Christopher SchĂĽtze and Matthias Reinwarth discuss Enterprise Risk Management. What is it all about? What large and small companies should be focusing on? What role do IT and cybersecurity play here?

View Details

Anne Bailey and Matthias Reinwarth discuss how decentralized identities and verifiable credentials help respond to the pandemic by powering contact tracing applications, immunity passports and other important use cases.

View Details

Alexei Balaganski and Matthias Reinwarth discuss the security challenges for enterprises moving to the cloud and explain why security in the cloud is still your responsibility.

View Details

Anne Bailey and Matthias Reinwarth talk about the technologies that enable employees working remotely or from home access sensible corporate information from personal devices without compromises between productivity and security.

View Details

Matthias Reinwarth and Martin Kuppinger discuss the challenges of integrating IT service management with identity governance within an enterprise.

View Details

Matthias Reinwarth and Jonh Tolbert discuss the ongoing consolidation of the cybersecurity market and talk about its reasons and potential consequences.

View Details

Matthias Reinwarth and Martin Kuppinger talk about governance and security of data across a variety of sources and formats and the need for maintaining data lineage across its complete life cycle.

View Details

Christopher Schuetze and Matthias Reinwarth discuss a security architecture blueprint that implements the concept of Security Fabric.

View Details

Graham Williamson and Matthias Reinwarth talk about consent: what does it mean for identity professionals, service providers or lawyers and how to reconcile all those different views in modern IAM environments.

View Details

Warwick Ashford and Matthias Reinwarth discuss the standards, technologies and organizational changes needed to finally get rid of the password-based authentication once and for all.

View Details

Christopher Schuetze and Matthias Reinwarth introduce Security Fabric - a new architectural approach towards cybersecurity with the goal to achieve consistent and fully managed security across the whole corporate IT.

View Details

John Tolbert and Matthias Reinwarth talk about network detection and response solutions: what are the threats they are looking for and how they complement endpoint protection tools to ensure consistent protection against advanced attacks.

View Details

Paul Fisher and Matthias Reinwarth continue talking about privileged access management, discussing the core capabilities of modern PAM solutions.

View Details

Matthias Reinwarth and Alexei Balaganski talk about the reasons many companies are still failing to protect themselves from cyberattacks and data breaches even after spending so much on security tools.

View Details

In a follow-up to an earlier episode, Matthias Reinwarth and Anne Bailey discuss practical approaches and recommendations for applying AI governance in your organization.

View Details

Matthias Reinwarth and John Tolbert talk about profound implications of security products not having their administrative interfaces sufficiently secured with technologies like multi-factor authentication.

View Details

Matthias Reinwarth and Anne Bailey talk about Artificial Intelligence and various issues and challenges of its governance and regulation.

View Details

Matthias Reinwarth and Christopher SchĂĽtze talk about the importance of processes to make your IAM projects successful.

View Details

Matthias Reinwarth and Paul Fisher launch a new series of talks about privileged access management.

View Details

Matthias Reinwarth and John Tolbert discuss the latest "innovations" fraudsters are using during the pandemic crisis and the methods to mitigate them.

View Details

Matthias Reinwarth and Alexei Balaganski look at the potential alternatives to VPNs and security gateways.

View Details

Matthias Reinwarth and Martin Kuppinger explain how to protect your users from phishing attacks when they're all working from home...

View Details

Matthias Reinwarth and Alexei Balaganski talk about making the right choice of a database engine to power your next cloud project.

View Details

Matthias Reinwarth and Martin Kuppinger dispel a few myths about Zero Trust.

View Details

Matthias Reinwarth and Alexei Balaganski discuss the plethora of acronyms for security analytics solutions: from SOC and SIEM to UEBA and SOAR.

View Details

Matthias Reinwarth and Christopher SchĂĽtze talk about how to efficiently identify and rate your investments into Cybersecurity.

View Details

Beyond security and technology: Matthias Reinwarth leverages the experiences of KuppingerCole Analysts in doing advisory via electronic collaboration platforms and shares 5+1 golden rules for jumpstarting efficient cooperation.

View Details

Christopher SchĂĽtze and Matthias Reinwarth explain the importance of having an incident response plan.

View Details

Matthias Reinwarth and Martin Kuppinger discuss the measures necessary for securing your favorite online communication platform.

View Details

Matthias Reinwarth and Graham Williamson are talking about managing IAM projects properly.

View Details

Matthias Reinwarth and Alexei Balaganski discuss the challenges of explosive API growth without proper security controls in place.

View Details

Martin Kuppinger explains the benefits of Identity and Access Management delivered from the cloud.

View Details

Matthias Reinwarth and Graham Williamson are talking about designing an IAM project architecture.

View Details

Kuppingercole's Principal Analyst Martin Kuppinger gives his opinion on problems and arguments surrounding various apps for tracking the spread of the virus. And privacy is not the biggest challenge here...

View Details

Matthias Reinwarth and John Tolbert explain the meaning behind the term and talk about various factors that help identify fraudulent transactions in different industries.

View Details

Martin Kuppinger explains the meaning behind the popular buzzword.

View Details

Matthias Reinwarth and Martin Kuppinger identify the key topics for cybersecurity in the times of crisis.

View Details

Matthias Reinwarth and Christopher SchĂĽtze are taking a look at five different phases of cyber security.

View Details

Martin Kuppinger explains adaptive authentication.

View Details

Matthias Reinwarth and Martin Kuppinger explain what you could be doing wrong with regards to cybersecurity priorities.

View Details

Matthias Reinwarth and Alexei Balaganski discuss the history of ransomware and the measures needed to protect yourself against it.

View Details

Martin Kuppinger explains the reasons why so many Identity and Access Management projects can stall or even fail.

View Details

Matthias Reinwarth and Martin Kuppinger are discussing the security challenges enterprises are now facing with the majority of employees working from home.

View Details

Martin Kuppinger explains the reasons why so many Identity and Access Management projects can stall or even fail.

View Details

Matthias Reinwarth and John Tolbert are talking about the challenges of data protection in modern times.

View Details

John Tolbert is talking about the current situation with regards the pandemic crisis and the cybersecurity-related things to consider for enterprises.

View Details

Welcome to the pilot issue of the KuppingerCole Analyst Chat - our soon-to-be-regular podcast. Stay tuned for more episodes!