Subscribe to the Non-Human & AI Identity Journal

Notifications
Clear all

Gartner hype cycle recognition for Nexis: what should IAM teams make of it?


(@nhi-mgmt-group)
Member Moderator
Joined: 1 year ago
Posts: 9016
Topic starter  

TL;DR: Identity governance is moving toward visibility, explainability, and zero-trust decision support, not just workflow automation, according to Nexis, which says it was recognised by Gartner in the 2025 Hype Cycles for Digital Identity and Zero-Trust Technology, including Identity Visibility and Intelligence Platforms and AI for Access Administration, while also citing 130+ enterprise customers and regulatory alignment across GDPR, NIS2, and DORA.

NHIMG editorial — based on content published by Nexis: Analysts Nexis Recognized by Gartner in Two 2025 Hype Cycles

By the numbers:

Questions worth separating out

Q: How should security teams evaluate identity platforms for governance coverage?

A: Security teams should evaluate whether the platform can connect identity inventory, entitlement usage, review evidence, and remediation in one workflow.

Q: Why does identity visibility matter so much in zero-trust programmes?

A: Zero trust depends on knowing what an identity is allowed to do at the moment access is requested.

Q: What do organisations get wrong about AI-assisted access administration?

A: They often treat AI as an efficiency layer and ignore the need for explainability, approval provenance, and challengeable decisions.

Practitioner guidance

  • Map identity visibility across all actor types Inventory where human identities, service accounts, tokens, and delegated access paths are currently managed in separate tools.
  • Require explainability for access decisions If AI assists access administration, require decision provenance, policy references, and reviewable rationale before deployment.
  • Link visibility findings to remediation workflows Do not let identity intelligence stop at dashboards.

What's in the full analysis

Nexis's full article covers the market context and company detail this post intentionally leaves at a higher level:

  • The specific Gartner hype cycle categories and why the vendor says they matter for digital identity buyers.
  • The product framing around identity visibility, intelligence, and AI-assisted access administration.
  • The vendor's positioning on European regulatory alignment across GDPR, NIS2, and DORA.
  • The enterprise customer context and the company's own statement on market relevance.

👉 Read Nexis's analysis of Gartner recognition in digital identity and zero trust →

Gartner hype cycle recognition for Nexis: what should IAM teams make of it?

Explore further

View Full Forum →  |  NHI Foundation Course →



   
Quote
(@mr-nhi)
Member Moderator
Joined: 2 months ago
Posts: 8472
 

Identity visibility is becoming the market's real differentiator. Gartner-style recognition is less about prestige than about where the category is heading: tools are being evaluated on whether they can turn fragmented identity data into governance evidence. That matters because modern identity estates include humans, service accounts, and delegated machine access, all of which create different audit problems. Practitioners should read this as a signal that visibility is no longer a reporting feature, but the foundation for defensible identity control.

A few things that frame the scale:

  • Only 1.5 out of 10 organisations are highly confident in their ability to secure NHIs, compared to nearly 1 in 4 for securing human identities, according to Ultimate Guide to NHIs.
  • 91.6% of secrets remain valid five days after the targeted organisation is notified, showing a critical gap in remediation procedures.

A question worth separating out:

Q: How can IAM teams decide whether to modernise governance or keep current workflows?

A: Teams should modernise when current workflows cannot reliably connect entitlement ownership, usage, and revocation across human and non-human identities. If review outcomes do not flow into policy enforcement, the programme is generating paperwork rather than control. Modernisation should be judged by measurable closure of identity risk, not by feature count.

👉 Read our full editorial: Nexis in Gartner hype cycles: what it means for identity governance



   
ReplyQuote
Share: