Join our Newsletter — 33% off our NHI Course

Breakout Session

A breakout session is a smaller, topic-focused presentation within a larger event. It allows attendees to explore a specific problem, control area, or implementation method in more depth than a keynote. In identity security, breakouts are often used to share applied lessons, case studies, and operational guidance.

Expanded Definition

A breakout session is a focused, smaller-format session designed to explore a specific topic in more depth than a plenary talk. In identity security, it is often used to examine one control problem at a time, such as secret rotation, service account governance, or workload identity federation. The format matters because it changes the level of operational detail expected from the speaker and the audience. A keynote may describe a strategy; a breakout should show how the strategy works in practice, including tradeoffs, failure modes, and implementation steps.

Definitions vary across vendors and event organisers, but in NHI and IAM contexts the term usually implies a session with a narrower scope, more interaction, and a practical objective. That makes it a useful vehicle for translating broad guidance from sources such as NIST SP 800-53 Rev 5 Security and Privacy Controls into team-level action. NHI Management Group uses breakout sessions to move from abstract risk language to applied controls, operational patterns, and governance decisions, often drawing on the Ultimate Guide to NHIs as a reference point.

The most common misapplication is treating a breakout session like a second keynote, which occurs when presenters skip concrete controls and only repeat high-level messaging.

Examples and Use Cases

Implementing breakout sessions rigorously often introduces a tradeoff between depth and audience breadth, requiring organisations to weigh concentrated technical value against the fact that only part of the room can engage on a single topic at once.

  • A security conference breakout on API key hygiene walks through rotation schedules, detection gaps, and offboarding workflows for revoked credentials.
  • An internal IAM workshop uses a breakout format to review service account ownership, showing how teams map accounts to NIST control expectations and operational checkpoints.
  • A product launch event hosts a breakout on agentic AI governance, where attendees compare tool access boundaries, approval paths, and exception handling.
  • A practitioner roundtable uses a breakout to discuss lessons from the Ultimate Guide to NHIs, especially where teams struggle to identify hidden secrets and non-human identities.
  • An incident-response briefing runs a breakout after a secrets leak, allowing responders to examine remediation steps rather than covering the issue only at the executive level.

Why It Matters in NHI Security

Breakout sessions matter in NHI security because the subject is usually too operationally specific for broad-stage presentations. Teams need space to discuss how identities are created, governed, rotated, and retired, and that detail is often where real exposure becomes visible. NHI Management Group research shows that only 5.7% of organisations have full visibility into their service accounts, which means many teams are trying to manage risk without a complete inventory. That reality makes breakout sessions especially useful for surfacing implementation gaps that would stay hidden in a general audience setting.

A well-run breakout can also connect policy to practice. It can show how misconfigured vaults, long-lived secrets, or incomplete offboarding processes create persistent risk, and it can tie those issues back to controls in NIST SP 800-53 Rev 5 Security and Privacy Controls and to NHI-focused guidance in the Ultimate Guide to NHIs. Without this format, organisations often leave with general awareness but no execution plan. Organisations typically encounter the need for a breakout after an identity incident exposes how little shared understanding exists across security, platform, and application teams, at which point the session becomes operationally unavoidable to address.

Standards & Framework Alignment

This section maps relevant standards and security frameworks to the operational risks and controls described in this guidance.

OWASP Non-Human Identity Top 10 and CSA MAESTRO address the attack and risk surface, while NIST CSF 2.0, NIST SP 800-63 and NIST Zero Trust (SP 800-207) set the governance and control requirements practitioners need to meet.

Framework Control / Reference Relevance
NIST CSF 2.0 GV.RM-1 Breakout sessions support risk communication and shared understanding across stakeholders.
NIST SP 800-63 Identity assurance discussions often surface in focused sessions on authenticator and lifecycle policy.
NIST Zero Trust (SP 800-207) PR.AC Breakout sessions help teams operationalise least privilege and trust decisions for workloads.
OWASP Non-Human Identity Top 10 NHI-01 Focused sessions are commonly used to explain NHI inventory, ownership, and visibility gaps.
CSA MAESTRO Agentic AI governance topics benefit from smaller sessions that examine tool access and oversight.

Use breakouts to align identity assurance requirements with service account and credential handling.