SlideShare a Scribd company logo
heterogeneity and distance 
Mark Diodati 
modern identity:
CIS Survival Guide
99 sessions
48 possible workshops
12 hours of workshops
60 remaining sessions
24 sessions
12 hours of sessions
2 social events
caffeinate
hydrate
take your vitamins
get some rest
take good notes
get outside
make a friend
modern identity
applications 
services 
user constituencies 
devices
heterogeneity
distance
distance: span of control
on-premises 
in the cloud 
applications
self-managed 
partner-managed 
SaaS-managed 
applications
IaaS 
SaaS 
PaaS 
applications
traditional IAM 
IDaaS 
identity bridge 
services
self-managed 
partner-managed 
services
employees 
partners 
contractors 
users 
customers
AD-joined PC/Mac 
COPE devices 
devices 
BYOD devices 
PC/Mac 
mobile devices
authentication: 
what matters
application support 
4 things that matter
identity assurance 
4 things that matter
identity assurance 
cost 
4 things that matter
$10,000 barn 
$5,000 horse
4 things that matter 
usability
eternal truths
first eternal truth 
identity 
assurance 
cost and decreased usability 
your app’s assurance requirement 
“sweet” spot
costs too much
identity 
assurance 
session duration 
second eternal truth
not good enough
reset expectations?
my career in 
heavy metal music
wristwatch
modern authentication 
requires 
adaptive and local biometrics
die 
darwin
adaptive origins
conventional 
primary authentication 
password 
smart card 
one-time 
password (OTP) 
SMS
device ID 
•____ 
•____ 
•____ 
IP blacklist 
•Bill pay $349 
•Bill pay $610 
•EFT $2,000,000 
behavioral 
geolocation 
primary authentication
assurance over time 
identity 
assurance 
session duration 
higher 
assurance
modern adaptive
53 
degree of difficulty 
distance 
modern adaptive
primary 
adaptive 
adaptive server 
resources 
resources 
browser 
adaptive: traditional
adaptive: WAM 
(3) yes/no or risk score 
adaptive server 
(1) primary 
WAM policy 
enforcement point 
WAM policy 
decision point 
browser 
adaptive: WAM
(3) yes/no 
service provider 
identity provider 
adaptive server 
(1) primary 
browser 
adaptive: federation
resource server 
OpenID Provider 
authorization server 
user info endpoint 
client/relying party/app 
API
58 
client/relying party/ 
app 
client registration (admintime) 
OpenID Provider/ 
authorization server 
token refresh (runtime) 
resource server 
token presentation (runtime) 
frequency 
adaptive: API
mobile biometric
biometric reader in every pocket
adaptive enhanced device ID 
A 
privacy 
playlists
eternal truths redux
first new eternal truth 
identity 
assurance 
cost and decreased usability 
app requirement
first new eternal truth 
identity 
assurance 
cost and decreased usability 
app requirement
identity 
assurance 
session duration 
second new eternal truth 
app requirement
identity 
assurance 
session duration 
second new eternal truth 
app requirement
identity 
assurance 
session duration 
continuous: our best aspiration 
continuous 
app requirement
heterogeneous, distant, continuous authentication?
monitor 
adaptive 
developments
layer authentication techniques to raise assurance
plan for multiple authentication types
get your proofing right
identity assurance 
password 
mobile 
smart card 
proofing matters 
proofing
tune your engine
Modern Identity: Heterogeneity and Distance (Cloud Identity Summit Keynote)

More Related Content

Similar to Modern Identity: Heterogeneity and Distance (Cloud Identity Summit Keynote)

The Human Chain and Digital Services Toolkit Introduction V3.23 27_04_2016
The Human Chain and Digital Services Toolkit Introduction V3.23 27_04_2016The Human Chain and Digital Services Toolkit Introduction V3.23 27_04_2016
The Human Chain and Digital Services Toolkit Introduction V3.23 27_04_2016
Tim Jefferson
 
Securing The Cloud
Securing The CloudSecuring The Cloud
Securing The Cloud
george.james
 
Radisys Keynote, Gamifying the User’s Journey, Adnan Saleem
Radisys Keynote, Gamifying the User’s Journey, Adnan SaleemRadisys Keynote, Gamifying the User’s Journey, Adnan Saleem
Radisys Keynote, Gamifying the User’s Journey, Adnan Saleem
Alan Quayle
 
Horizon_Brochure
Horizon_BrochureHorizon_Brochure
Horizon_Brochure
Omar Tarish
 

Similar to Modern Identity: Heterogeneity and Distance (Cloud Identity Summit Keynote) (20)

Going beyond MFA(Multi-factor authentication)-Future demands much more
Going beyond MFA(Multi-factor authentication)-Future demands much moreGoing beyond MFA(Multi-factor authentication)-Future demands much more
Going beyond MFA(Multi-factor authentication)-Future demands much more
 
Vinod Rebello
Vinod RebelloVinod Rebello
Vinod Rebello
 
Modern Authentication – Turn a Losing Battle into a Winning Strategy, Robert ...
Modern Authentication – Turn a Losing Battle into a Winning Strategy, Robert ...Modern Authentication – Turn a Losing Battle into a Winning Strategy, Robert ...
Modern Authentication – Turn a Losing Battle into a Winning Strategy, Robert ...
 
ForgeRock and Trusona - Simplifying the Multi-factor User Experience
ForgeRock and Trusona - Simplifying the Multi-factor User ExperienceForgeRock and Trusona - Simplifying the Multi-factor User Experience
ForgeRock and Trusona - Simplifying the Multi-factor User Experience
 
Identity as a Service
Identity as a ServiceIdentity as a Service
Identity as a Service
 
Federation Evolved: How Cloud, Mobile & APIs Change the Way We Broker Identity
Federation Evolved: How Cloud, Mobile & APIs Change the Way We Broker IdentityFederation Evolved: How Cloud, Mobile & APIs Change the Way We Broker Identity
Federation Evolved: How Cloud, Mobile & APIs Change the Way We Broker Identity
 
The Human Chain and Digital Services Toolkit Introduction V3.23 27_04_2016
The Human Chain and Digital Services Toolkit Introduction V3.23 27_04_2016The Human Chain and Digital Services Toolkit Introduction V3.23 27_04_2016
The Human Chain and Digital Services Toolkit Introduction V3.23 27_04_2016
 
IRJET-An Economical and Secured Approach for Continuous and Transparent User ...
IRJET-An Economical and Secured Approach for Continuous and Transparent User ...IRJET-An Economical and Secured Approach for Continuous and Transparent User ...
IRJET-An Economical and Secured Approach for Continuous and Transparent User ...
 
Securing The Cloud
Securing The CloudSecuring The Cloud
Securing The Cloud
 
Identiverse - Microservices Security
Identiverse - Microservices SecurityIdentiverse - Microservices Security
Identiverse - Microservices Security
 
Customer identity and kyc trends
Customer identity and kyc trendsCustomer identity and kyc trends
Customer identity and kyc trends
 
ISS SA le presenta IdentityGuard de Entrust
ISS SA le presenta IdentityGuard de EntrustISS SA le presenta IdentityGuard de Entrust
ISS SA le presenta IdentityGuard de Entrust
 
kicking your enterprise security up a notch with adaptive authentication sa...
kicking your enterprise security up a notch with adaptive authentication   sa...kicking your enterprise security up a notch with adaptive authentication   sa...
kicking your enterprise security up a notch with adaptive authentication sa...
 
[WSO2Con EU 2018] Kicking Your Enterprise Security Up a Notch With Adaptive A...
[WSO2Con EU 2018] Kicking Your Enterprise Security Up a Notch With Adaptive A...[WSO2Con EU 2018] Kicking Your Enterprise Security Up a Notch With Adaptive A...
[WSO2Con EU 2018] Kicking Your Enterprise Security Up a Notch With Adaptive A...
 
Working with external identities: Learn how to enable partners, suppliers and...
Working with external identities: Learn how to enable partners, suppliers and...Working with external identities: Learn how to enable partners, suppliers and...
Working with external identities: Learn how to enable partners, suppliers and...
 
Radisys Keynote, Gamifying the User’s Journey, Adnan Saleem
Radisys Keynote, Gamifying the User’s Journey, Adnan SaleemRadisys Keynote, Gamifying the User’s Journey, Adnan Saleem
Radisys Keynote, Gamifying the User’s Journey, Adnan Saleem
 
Presentation data security solutions certified ibm business partner for ibm...
Presentation   data security solutions certified ibm business partner for ibm...Presentation   data security solutions certified ibm business partner for ibm...
Presentation data security solutions certified ibm business partner for ibm...
 
Security & Seamless CX in User Authentication: How to Achieve Both?
Security & Seamless CX in User Authentication: How to Achieve Both?Security & Seamless CX in User Authentication: How to Achieve Both?
Security & Seamless CX in User Authentication: How to Achieve Both?
 
Smart Identity for the Hybrid Multicloud World
Smart Identity for the Hybrid Multicloud WorldSmart Identity for the Hybrid Multicloud World
Smart Identity for the Hybrid Multicloud World
 
Horizon_Brochure
Horizon_BrochureHorizon_Brochure
Horizon_Brochure
 

Recently uploaded

AI/ML Infra Meetup | Improve Speed and GPU Utilization for Model Training & S...
AI/ML Infra Meetup | Improve Speed and GPU Utilization for Model Training & S...AI/ML Infra Meetup | Improve Speed and GPU Utilization for Model Training & S...
AI/ML Infra Meetup | Improve Speed and GPU Utilization for Model Training & S...
Alluxio, Inc.
 

Recently uploaded (20)

Beyond Event Sourcing - Embracing CRUD for Wix Platform - Java.IL
Beyond Event Sourcing - Embracing CRUD for Wix Platform - Java.ILBeyond Event Sourcing - Embracing CRUD for Wix Platform - Java.IL
Beyond Event Sourcing - Embracing CRUD for Wix Platform - Java.IL
 
Accelerate Enterprise Software Engineering with Platformless
Accelerate Enterprise Software Engineering with PlatformlessAccelerate Enterprise Software Engineering with Platformless
Accelerate Enterprise Software Engineering with Platformless
 
top nidhi software solution freedownload
top nidhi software solution freedownloadtop nidhi software solution freedownload
top nidhi software solution freedownload
 
Cyaniclab : Software Development Agency Portfolio.pdf
Cyaniclab : Software Development Agency Portfolio.pdfCyaniclab : Software Development Agency Portfolio.pdf
Cyaniclab : Software Development Agency Portfolio.pdf
 
Paketo Buildpacks : la meilleure façon de construire des images OCI? DevopsDa...
Paketo Buildpacks : la meilleure façon de construire des images OCI? DevopsDa...Paketo Buildpacks : la meilleure façon de construire des images OCI? DevopsDa...
Paketo Buildpacks : la meilleure façon de construire des images OCI? DevopsDa...
 
Vitthal Shirke Microservices Resume Montevideo
Vitthal Shirke Microservices Resume MontevideoVitthal Shirke Microservices Resume Montevideo
Vitthal Shirke Microservices Resume Montevideo
 
AI/ML Infra Meetup | Perspective on Deep Learning Framework
AI/ML Infra Meetup | Perspective on Deep Learning FrameworkAI/ML Infra Meetup | Perspective on Deep Learning Framework
AI/ML Infra Meetup | Perspective on Deep Learning Framework
 
AI/ML Infra Meetup | ML explainability in Michelangelo
AI/ML Infra Meetup | ML explainability in MichelangeloAI/ML Infra Meetup | ML explainability in Michelangelo
AI/ML Infra Meetup | ML explainability in Michelangelo
 
WSO2Con2024 - WSO2's IAM Vision: Identity-Led Digital Transformation
WSO2Con2024 - WSO2's IAM Vision: Identity-Led Digital TransformationWSO2Con2024 - WSO2's IAM Vision: Identity-Led Digital Transformation
WSO2Con2024 - WSO2's IAM Vision: Identity-Led Digital Transformation
 
Corporate Management | Session 3 of 3 | Tendenci AMS
Corporate Management | Session 3 of 3 | Tendenci AMSCorporate Management | Session 3 of 3 | Tendenci AMS
Corporate Management | Session 3 of 3 | Tendenci AMS
 
Advanced Flow Concepts Every Developer Should Know
Advanced Flow Concepts Every Developer Should KnowAdvanced Flow Concepts Every Developer Should Know
Advanced Flow Concepts Every Developer Should Know
 
TROUBLESHOOTING 9 TYPES OF OUTOFMEMORYERROR
TROUBLESHOOTING 9 TYPES OF OUTOFMEMORYERRORTROUBLESHOOTING 9 TYPES OF OUTOFMEMORYERROR
TROUBLESHOOTING 9 TYPES OF OUTOFMEMORYERROR
 
Field Employee Tracking System| MiTrack App| Best Employee Tracking Solution|...
Field Employee Tracking System| MiTrack App| Best Employee Tracking Solution|...Field Employee Tracking System| MiTrack App| Best Employee Tracking Solution|...
Field Employee Tracking System| MiTrack App| Best Employee Tracking Solution|...
 
OpenFOAM solver for Helmholtz equation, helmholtzFoam / helmholtzBubbleFoam
OpenFOAM solver for Helmholtz equation, helmholtzFoam / helmholtzBubbleFoamOpenFOAM solver for Helmholtz equation, helmholtzFoam / helmholtzBubbleFoam
OpenFOAM solver for Helmholtz equation, helmholtzFoam / helmholtzBubbleFoam
 
A Comprehensive Appium Guide for Hybrid App Automation Testing.pdf
A Comprehensive Appium Guide for Hybrid App Automation Testing.pdfA Comprehensive Appium Guide for Hybrid App Automation Testing.pdf
A Comprehensive Appium Guide for Hybrid App Automation Testing.pdf
 
Studiovity film pre-production and screenwriting software
Studiovity film pre-production and screenwriting softwareStudiovity film pre-production and screenwriting software
Studiovity film pre-production and screenwriting software
 
Into the Box 2024 - Keynote Day 2 Slides.pdf
Into the Box 2024 - Keynote Day 2 Slides.pdfInto the Box 2024 - Keynote Day 2 Slides.pdf
Into the Box 2024 - Keynote Day 2 Slides.pdf
 
AI/ML Infra Meetup | Improve Speed and GPU Utilization for Model Training & S...
AI/ML Infra Meetup | Improve Speed and GPU Utilization for Model Training & S...AI/ML Infra Meetup | Improve Speed and GPU Utilization for Model Training & S...
AI/ML Infra Meetup | Improve Speed and GPU Utilization for Model Training & S...
 
Top Mobile App Development Companies 2024
Top Mobile App Development Companies 2024Top Mobile App Development Companies 2024
Top Mobile App Development Companies 2024
 
A Python-based approach to data loading in TM1 - Using Airflow as an ETL for TM1
A Python-based approach to data loading in TM1 - Using Airflow as an ETL for TM1A Python-based approach to data loading in TM1 - Using Airflow as an ETL for TM1
A Python-based approach to data loading in TM1 - Using Airflow as an ETL for TM1
 

Modern Identity: Heterogeneity and Distance (Cloud Identity Summit Keynote)