Join our Newsletter — 33% off our NHI Course
NHI & AI Identity Podcast (Ep-15) – Identity Is The 3rd Generation of Security

🎧 Spotify 

🎙️ Apple Podcasts 

The Non-Human & AI Identity Podcast

  • By Humans for Humans, No AI-Generated Content.
  • Mr. NHI hosts the voices shaping the future of Non-Human & Agentic AI Identity.

Hosted by Mr. NHI, the podcast brings together the voices actively shaping the future of Non-Human Identity (NHI) and Agentic AI Identity, from founders and practitioners to security leaders dealing with these challenges in the real world.

Identity security, IAM, and agentic AI are colliding — and the old world of network perimeters and endpoint controls can no longer keep up.

Alex Bovee, CEO and Co-Founder of C1.ai and former security product leader at Okta, joins Lalit Choda (Mr. NHI) on the Non-Human and AI Identity Podcast to map out how we got here — from network-centric perimeters to endpoint security controls to identity as the new security control plane — and what the third generation of cybersecurity actually has to look like when AI agents are non-deterministic, goal-maxing, and completely without a moral compass.

What you’ll learn:

  • Why the first two generations of security — network security and endpoint security — have reached their limits
  • Why identity security is the only control plane that works across human identities, non-human identities (NHIs), and AI agents
  • Why AI agents are non-deterministic and non-trustable — and what that means for IAM and access control
  • Why runtime authorization must replace orchestration-based identity governance and access management
  • Why visibility into your NHI and machine identity estate is not enough without full lifecycle management
  • Why agents evaluating other agents is an inevitable part of agentic AI security at machine speed
  • How to think about the four control points for agentic workloads: harness, data and context, LLM inference endpoints, and credentials

NHI Foundation Level Training

If you work with AI agents, cloud services, APIs, or CI/CD pipelines, securing Non-Human Identities is essential. Take the most comprehensive and only accredited NHI training program in the industry and learn how to manage and secure NHIs, including AI agents.

Enrol Here: https://training.nhimg.org/

Key Moments

  • Introduction & Meet Alex [00:00–01:10]
  • Mr. NHI’s Human Identity in the Hot Seat [01:10–12:14]
  • The 3 Generations of Security: Network, Endpoint, Identity [12:25–17:20]
  • Why Identity is the New Cybersecurity Control Plane [17:20–20:20]
  • From Orchestration to Runtime: The Shift That Changes Everything [20:20–23:05]
  • NHI Technical Debt & Credential Lifecycle Management [23:05–30:25]
  • Agents Evaluating Agents: The Machine-Speed Imperative [30:25–34:45]
  • C1’s Architecture: 4 Control Points for the Agentic Enterprise [34:45–40:10]
  • Enabling AI Builders Without Compromising Zero Trust Security [40:10–43:05]
  • C1 Transform — October 6th, San Francisco [43:05–46:30]
  • Closing Thoughts for CISOs and Security Leaders [46:30–47:28]

NHI & AI Identity Podcast (Ep-14) – Turning an AI Breach into a Case Study

🎧 Spotify 

🎙️ Apple Podcasts 

The Non-Human & AI Identity Podcast

  • By Humans for Humans, No AI Generated Content.
  • Mr. NHI hosts the voices shaping the future of Non-Human & Agentic AI Identity.

Hosted by Mr. NHI, the podcast brings together the voices actively shaping the future of Non-Human Identity (NHI) and Agentic AI Identity, from founders and practitioners to security leaders dealing with these challenges in the real world.

Identity is the common denominator in every breach — and the rise of agentic AI is making that identity challenge even more complex. Organisations have spent decades securing human identities, but AI agents, service accounts, API keys, OAuth tokens and other non-human identities are changing what identity security needs to protect.

In this episode, Henrique Teixeira, SVP of Strategy at Saviynt and former Gartner analyst, joins Mr. NHI to explore what breaches have taught the identity industry, why NHI and agentic AI security aren’t the same thing, and how organisations should rethink identity as autonomous agents become part of the digital workforce.

What you’ll learn:

  • Why identity remains a common denominator throughout the attack chain
  • Why traditional identity controls were built for a world centred around humans
  • Why agentic AI security and NHI security are different — and require different approaches
  • Why AI agents may behave more like employees than software
  • Why AI agents may need the ability to create identities — and eventually be “fired”
  • Why organisations are deploying AI faster than they can govern it
  • Why the attack surface created by thousands of agents may be underestimated
  • Why AI-generated content creates a new validation problem: generating is cheap, validating isn’t
  • Why identity, NHI and AI need to be considered as part of a broader identity programme

Essential listening for CISOs, IAM architects, security leaders, and anyone building or governing AI agents in production.

NHI Foundation Level Training

If you work with AI agents, cloud services, APIs, or CI/CD pipelines, securing Non-Human Identities is essential. Take the most comprehensive and only accredited NHI training program in the industry and learn how to manage and secure NHIs, including AI agents.

Enrol Here: https://training.nhimg.org/

Key Moments

  • Introduction & Meet Henrique Teixeira [00:00–03:11]
  • Mr NHI’s Human Identity in the Hot Seat [03:11–09:42]
  • Turning a Breach into a Case Study [09:42–14:35]
  • Why Identity Is the Common Denominator in Every Attack [14:35–19:39]
  • Learning From Breaches: Identity Meets SecOps [19:39–20:15]
  • If I Had $1 to Spend on Security, It Would Be Identity [21:54–25:30]
  • Why AI Security Has Become “Goo” [24:00–25:30]
  • Agents, Identity Lifecycle & Runtime Security [27:53–29:22]
  • The NHI Technical Debt Problem [29:22–35:02]
  • Zuma: Insights, Access & Governance [35:02–39:19]
  • Runtime Authorization & Intent-Aware Access [41:52–44:05]
  • What the Hugging Face Breach Teaches Us About NHI [45:23–47:06]
  • Final Advice & Closing Thoughts [47:06–47:49]

Human & Now Agents: The NHI Internal Threat Amplified – IDV 2026

🎧 Spotify 

🎙️ Apple Podcasts 

In this Identiverse 2026 keynote, Lalit Choda — founder of the Non-Human Identity Management Group (NHIMG) — explains why non-human identities (NHIs) and autonomous AI agents have become the most dangerous insider threat in cybersecurity today.

Drawing on 30 years running IAM, PAM and NHI programmes in global banking, Lalit shares three real incidents where the intent was harmless, but the damage was huge:

🔹 One misused database credential that spiralled into a 100,000-credential clean-up
🔹 An AI coding assistant that wiped 60% of his data from a single line of SQL
🔹 An AI agent that deleted an entire company’s database — and its backups — in seconds

His message is blunt: as agentic AI spreads, agents reach systems you never intended and inherit the full blast radius of whatever credential they run under. System prompts were never security controls. Traditional insider threat models are now obsolete — and every agent is a non-human identity that must be governed, monitored and audited.

If you work in identity security, IAM or agentic AI, this one’s essential viewing.

The NHI & AI Identity Summit at Identiverse 2026

Our NHI Management Group hosted the biggest ever Non-Human & Agentic AI Identity Summit at Identiverse 2026. The full day summit had over 250 participants and an incredible 26 guest speakers covering 8 panel sessions across the most critical topics in NHI and agentic AI security today.


Opening Remarks

Lalit Choda (Mr NHI), Founder & CEO of the NHI Management Group, opens the Non-Human & Agentic AI Identity Summit, covers how the NHI and agentic AI landscape has shifted, walks through the full summit agenda and closes with a rap.

Full summary here.


Panel Session — The New NHI Risk Reality: When AI Agents Start Making Decisions

Hosted by Shriram Santhanam from Human Managed with:

  • Andrej Safundzic from Lumos
  • Don D’Souza from Fannie Mae
  • Ashay Raut from Amazon

Full summary here.


Panel Session — Where Traditional IAM Breaks: Rethinking Trust for Autonomous Identities

Hosted by Elisa Abedrapo from Epsilon with:

  • Homayun Yaqub from Digital Hands
  • Itamar Apelblat from Token Security
  • Alexis Moyse from Clarity Security

Full summary here.


Panel Session — The CISO Imperative: Quantifying NHI & Agentic AI Risk for the Board


Hosted by Ross Sherman from SailPoint with:

  • Renee Guttmann from CISOHive
  • Troy Wilkinson from Kyber Technology

Full summary here.


Panel Session — Secure by Design: Baking Identity Controls into the AI Agent Development Lifecycle


Hosted by Jesse Minor from KPMG with:

  • David Chan from USC
  • Henrique Teixeira from Saviynt
  • Shashwat Sehgal from P0 Security

Full summary here.


Panel Session — Governing AI: Identity Standards & Frameworks for Agentic AI


Hosted by Rogério Rondini from PwC with:

  • Rahul Godha from LinkedIn
  • Niv Goldenberg from Linx Security
  • David Goldschlag from Aembit

Full summary here.


Panel Session — The Buyer’s Dilemma: Evaluating the NHI & Agentic AI Security Market


Hosted by Amit Masand from IDM Express with:

  • Murad Dikeidek from UI Health
  • Steven Rennick from Ciena

Full summary here.


Panel Session — The Next 24 Months: Predictions on Where NHI & Agentic AI Security Goes Next


Hosted by Lalit Choda (Mr. NHI) with:

  • Amir Ofek from Aizome
  • Eve Maler from Venn Factory
  • John Yeoh from CSA

Full summary here.


Diana Jovin is Mr. NHIs – Human Identity in the Hot Seat

🎧 Spotify

🎙️ Apple Podcasts

Straight from Black Hat, Diana Jovin, CMO of Teleport, takes the hot seat — tackling rapid-fire questions on Agentic AI, Non-Human Identities, and the future of identity security in autonomous environments. Listen to how Diana responded to the questions below:

Are CISOs Ready for the Fleet of Autonomous Agents That Are About to Hit Them?
Diana explains why agents behave differently from both humans and machines — and why their speed and autonomy, colliding with existing environments, creates real risk of them doing things you never intended. Her verdict: teams need to get ready now.

Is IAM for AI More Important Than AI for IAM?
Diana pushes back on the framing itself. From Teleport’s infrastructure-first perspective, the real question isn’t IAM-for-AI versus AI-for-IAM — it’s how you let your first-class actors (agents, humans, machines, workloads) interact securely. She reframes it as an infrastructure question, not an IAM one.

Are Organisations Deploying Agents Into Production Without Appropriate Guardrails?
Diana doesn’t hesitate: “of course.” She explains why the consequences are already visible, and why deployment speed is once again running ahead of governance.

Do AI Agents Behave More Like Employees or Software?
Diana’s answer: neither. She explains why two decades of zero-trust principles built for humans and machines don’t fully transfer — using the example of an agent told to update a database that’s down and choosing to go find another one — and why agents need controls mapped to how they actually behave.

Are the Current Identity Standards Fit for Autonomous Systems?
Diana argues we need a new foundation: no static credentials, no standing privileges, no static digital representations of identity for agents to discover and exploit. She lays out a two-part model — a strong zero-trust base plus governance mapped to agent behaviour.

Does PAM Change Dramatically With Agentic AI?
Diana frames PAM as a concept built for human identity management — and argues we’re now in a new era its assumptions were never designed for.

Will Static Long-Lived Credentials Still Exist in 5 Years?
“I certainly hope not.” Diana makes the case for getting long-lived credentials out of infrastructure altogether.

Do AI Agents Need Proper Background Checks Like Employees?
Diana reframes the question around delegated identity: every agent — and everything it spawns — should carry a strong identity with attestation back to its origin. If the origin was vetted, the agent inherits it; what you should never do is create an agent outside those controls.

Does Agentic AI Security Equal NHI Security?
Diana argues words matter. She explains why “NHI” has come to mean static representations of machine identities that need to disappear, why agents behave differently from machine workloads, and why the field needs a clearer shared vocabulary rather than a single equivalence.

Will the AI Digital Workforce Lead to Mass Unemployment?
A firm “no.” Diana expects AI to redefine how people work rather than replace them wholesale — opening new opportunities for transformation we haven’t uncovered yet, with this just the start of a longer wave of disruption.

NHI Foundation Level Training

If you work with AI agents, cloud services, APIs, or CI/CD pipelines, securing Non-Human Identities is essential.

Take the most comprehensive and only accredited NHI training program in the industry and learn how to manage and secure NHIs, including AI agents.

Enrol here – nhi-training.org

Howard Ting is Mr. NHIs – Human Identity in the Hot Seat

🎧 Spotify

🎙️ Apple Podcasts

Straight from Black Hat, Howard Ting, CEO of Opal Security, takes the hot seat — tackling rapid-fire questions on Agentic AI, Non-Human Identities, and the future of identity security in autonomous environments. Listen to how Howard responded to the questions below:

Are CISOs Ready for the Fleet of Autonomous Agents That Are Coming?
Howard is blunt: most aren’t ready — but readiness isn’t optional. He explains why the onslaught is already underway and why security teams have to get up to speed fast, whether they feel prepared or not.

Is IAM for AI More Important Than AI for IAM?
Howard argues the two are inseparable: you can’t deliver identity for AI without using AI inside identity itself. He unpacks why agents that keep working while humans sleep force both sides of the equation to advance together.

Are AI Agents Being Deployed Into Production Without Guardrails?
A candid look at how agents are reaching production ahead of the controls meant to govern them. Howard explains why powerful productivity tools get adopted by employees regardless of whether the guardrails exist yet — and why it’s already happening.

Do AI Agents Behave More Like Humans or Software?
Howard’s answer is “software — for now.” He explains why today’s agents still look like code, but why increasingly sophisticated, long-running agents handling complex tasks will start to resemble human actors over time.

Are the Current Identity Standards Fit for the Autonomous AI World?
Howard makes the case that existing standards don’t go far enough. He points to early progress on emerging agent-identity standards while arguing the industry needs to move much further, much faster.

Does PAM Change Dramatically With Agentic AI?
Howard predicts privileged access management has to reinvent itself — much like IGA — and that historically separate identity categories will converge as disparate tooling is forced to integrate.

Will Static Long-Lived Credentials Still Exist in 5 Years?
An emphatic “absolutely not.” Howard explains why long-lived, wide-scope credentials are a standing risk, why one-shot tokens and ephemeral access are ready today, and why the destination is the purest form of least privilege.

Do AI Agents Need Background Checks Like Humans?
Howard challenges the premise: background checks look backward over years, but agents are ephemeral — spun up and down in moments. He explains why the concept doesn’t map cleanly onto identities that may not live long enough to check.

Does Agentic AI Security Equal NHI Security?
Howard sees a close correlation but not an equivalence. He explains why agentic security is the broader discipline, and where the two overlap and diverge.

Will the AI Digital Workforce Lead to Mass Unemployment?
Howard separates disruption from doom: some roles will disappear, but new ones will emerge. He uses customer-facing teams as an example of how the mix of work shifts rather than simply shrinks.

NHI Foundation Level Training

If you work with AI agents, cloud services, APIs, or CI/CD pipelines, securing Non-Human Identities is essential.

Take the most comprehensive and only accredited NHI training program in the industry and learn how to manage and secure NHIs, including AI agents.

Enrol here – nhi-training.org

Eve Maler is Mr. NHIs – Human Identity in the Hot Seat

🎧 Spotify

🎙️ Apple Podcasts

Eve Maler, President and Founder of Venn Factory, takes the hot seat — tackling rapid-fire questions on Agentic AI, Non-Human Identities, and the future of identity security in autonomous environments. Listen to how Eve responded to the questions below:

Are You a Fan of Vibe Coding?

Eve shares her perspective on the low-code AI development trend — and what it means for identity security when the barrier to building agents drops to near zero.

Will Static Long-Lived Credentials Still Exist in 5 Years?

A sharp look at whether the industry will finally move past the credential debt that underlies so many NHI vulnerabilities — and what the realistic timeline for change looks like.

Are Organisations Taking NHI Risks Seriously Enough?

Eve gives a direct assessment of whether enterprise security posture has caught up with the scale and complexity of non-human identity exposure.

Is IAM for AI More Important Than AI for IAM?

Eve positions identity governance as the foundational layer for scaling AI safely, and explains why the sequencing of this debate matters.

Will the AI Agent Digital Workforce Cause Mass Unemployment?

Separating hype from operational reality — Eve focuses on how AI is more likely to reshape work than replace it outright.

Are AI Agents Being Deployed Without Security Guardrails Right Now?

A sharp look at whether organisations are once again prioritising deployment speed ahead of governance and visibility.

Will Hackers Be the Biggest Winners From AI?

Eve assesses who stands to gain most from the agentic AI wave — defenders, attackers, or neither — and what that means for how security teams should be repositioning now.

Do Agents Behave More Like Employees or Software?

Unpacking the identity and accountability model for agents: whether the right analogy is a worker, a tool, or something entirely new that existing governance frameworks aren’t built to handle.

Do Agentic AI Identities Need to Be Treated Separately From Legacy NHIs?

Eve unpacks whether agentic AI represents a subcategory of NHI security or something fundamentally different that demands its own governance framework and identity model.

Are Regulators Moving Fast Enough to Keep Up With Agentic AI?

A candid assessment of the regulatory landscape — whether policymakers understand the agent authority gap, and what that means for organisations trying to build compliant agentic systems today.

NHI Foundation Level Training

If you work with AI agents, cloud services, APIs, or CI/CD pipelines, securing Non-Human Identities is essential.

Take the most comprehensive and only accredited NHI training program in the industry and learn how to manage and secure NHIs, including AI agents.

Enrol here – nhi-training.org

Alexis Moyse is Mr. NHIs – Human Identity in the Hot Seat

🎧 Spotify

🎙️ Apple Podcasts

Alexis Moyse, from Clarity Security, takes the hot seat — tackling 10 rapid-fire questions on Agentic AI, Non-Human Identities, and the future of identity security in autonomous environments. Listen to how Alexis responded to the questions below:

Are organisations taking NHI risks seriously enough? Alexis gives a direct assessment of whether enterprise security posture has caught up with the scale and complexity of non-human identity exposure.

Is the recent market activity involving identity vendors a good thing for the industry? A candid look at consolidation, acquisitions, and investment in the identity space — and whether the market momentum is translating into real security improvement.

Do you think IAM for AI is more important than AI for IAM? Alexis positions identity governance as the foundational layer for scaling AI safely, and explains why the sequencing of this debate matters.

Do you think it’s possible to truly govern and control agentic AI agents? A forward-looking discussion on the limits of visibility, control, and governance in increasingly autonomous AI ecosystems.

Do you think AI agents will eventually need to be fired? Alexis explores what accountability, performance, and termination look like when the workforce includes autonomous digital workers.

Do you think traditional IGA platforms can adapt to the new world of identity security with agents? An honest evaluation of whether legacy identity governance tools are built for a world where agents spawn, act, and disappear at machine speed.

Do you think agentic AI security equals NHI security? Alexis unpacks whether agentic AI represents a subcategory of NHI security or something fundamentally different that demands its own framework.

Do you think the agentic AI workforce will lead to mass unemployment? Separating hype from operational reality — Alexis focuses on how AI is more likely to reshape work than replace it outright.

Do you think agents are currently being deployed without security guardrails in production? A sharp look at whether organisations are once again prioritising deployment speed ahead of governance and visibility.

Do you think CISOs are ready for the fleet of autonomous agents that are coming? A direct assessment of whether today’s security leadership is prepared for AI agents operating independently across enterprise systems.

Are you a fan of vibe coding? Alexis shares a personal take on the low-code AI development trend — and what it means for security when the barrier to building agents drops to near zero.

NHI Foundation Level Training

If you work with AI agents, cloud services, APIs, or CI/CD pipelines, securing Non-Human Identities is essential.

Take the most comprehensive and only accredited NHI training program in the industry and learn how to manage and secure NHIs, including AI agents.

Enrol here – nhi-training.org

Oded Hareven is Mr. NHIs – Human Identity in the Hot Seat

🎧 Spotify

🎙️ Apple Podcasts

Oded Hareven, Co-founder and CEO of Akeyless, takes the hot seat — tackling 10 rapid-fire questions on Agentic AI, Non-Human Identities, and the future of identity security in autonomous environments.

Listen to how Oded responded to the questions below:

Should Agentic AI Identities be treated separately to standard Non-Human Identities?
Oded explores whether autonomous AI identities introduce fundamentally different risks compared to traditional machine and service identities.

Are CISOs ready for fleets of autonomous digital employees?
A direct look at whether today’s security leadership is prepared for AI agents operating independently across enterprise systems.

Will AI Agents eventually need proper background checks like humans?
Oded discusses how trust, validation, and accountability could evolve for autonomous digital workers.

Are we repeating the past mistakes of managing NHIs now with AI Agents?
A sharp discussion on whether organisations are once again prioritising deployment speed ahead of governance and visibility.

Do AI Agents behave more like employees or software?
Oded explains why the answer to this question changes how organisations govern access, privileges, and lifecycle management.

Is IAM for AI more important than AI for IAM?
The conversation positions identity governance as the foundational security layer for scaling AI safely.

Will the AI Agent digital workforce lead to mass unemployment?
Oded separates hype from operational reality, focusing on how AI is more likely to reshape work than replace it outright.

Can zero trust work for autonomous AI agents?
An exploration into whether zero trust principles can realistically adapt to autonomous and self-operating identities.

Does PAM change dramatically with the introduction of Agentic AI Agents?
Oded examines how privileged access management must evolve as AI agents begin making independent decisions at scale.

Do you think it is possible to truly govern and control Agentic AI Agents?
A forward-looking discussion on the limits of governance, visibility, and control in increasingly autonomous AI ecosystems.

NHI Foundation Level Training

If you work with AI agents, cloud services, APIs, or CI/CD pipelines, securing Non-Human Identities is essential.

Take the most comprehensive and only accredited NHI training program in the industry and learn how to manage and secure NHIs, including AI agents.

Enrol here – nhi-training.org

Neil McGlennon is Mr. NHIs – Human Identity in the Hot Seat

🎧 Spotify

🎙️ Apple Podcasts

Straight from the EIC Non-Human & AI Identity Pavilion and Workshop, Neil McGlennon, Global Field CTO at SailPoint, takes the hot seat — tackling 10 rapid-fire questions on AI governance, non-human identities, and the identity security challenges enterprises are struggling to contain.

Listen to how Neil responded to the questions below:

When did you personally realise NHIs had become a major cybersecurity concern?
Neil discusses the moment non-human identities became impossible to separate from broader enterprise risk conversations.

Are we repeating the same mistakes with AI agents?
A direct examination of whether organisations are deploying AI faster than they can govern it securely.

Do you personally use AI agents yourself?
Neil reflects on his own interaction with AI systems and what it reveals about operational security realities.

Is IAM for AI more important than AI for IAM?
The discussion explores why identity governance may ultimately become the foundation for secure AI adoption.

Do AI agents behave more like employees or software?
Neil explains why this question fundamentally changes how organisations manage access and accountability.

Will PAM evolve significantly because of AI agents?
A look at how privileged access management must adapt for autonomous systems operating beyond traditional oversight.

Is meaningful AI identity governance truly possible?
Neil tackles whether organisations can realistically maintain governance as AI ecosystems rapidly expand.

Should AI agents require background checks?
An exploration into digital trust frameworks and what responsible onboarding could mean for autonomous identities.

Are enterprises prioritising speed over security with AI deployments?
The balance between innovation and governance — and the consequences when security becomes secondary.

Will AI agents drive large-scale unemployment?
Neil separates fear from reality, focusing on how AI is more likely to redefine roles than eliminate them entirely.

NHI Foundation Level Training

If you work with AI agents, cloud services, APIs, or CI/CD pipelines, securing Non-Human Identities is essential.

Take the most comprehensive and only accredited NHI training program in the industry and learn how to manage and secure NHIs, including AI agents.

Enrol here – nhi-training.org