
Sign up to save your podcasts
Or


Customer identity and access management is becoming a business strategy as agentic AI reshapes how enterprises secure customers, partners, workforce users, non-human identities, and embedded third-party agents.
In this episode of Identity Unfiltered: CIAM Stories from the Field, Joe Miller of Thales is joined by Nate Zitel, CEO of Next Reason Identity, and James Bonifield, CEO of Appivant Identity, to unpack the biggest identity takeaways from Identiverse, the growing complexity of AI-ready CIAM, and why identity is now a security fabric problem—not just an authentication problem.
Enterprise identity and access management teams are rethinking how to support:
• CIAM strategy across B2B, B2C, partner, vendor, and external user journeys
• Agentic AI, AI agents, bots, and non-human identities in modern access architectures
• OIDC, OAuth, delegated scopes, MCP gateways, identity proofing, passkeys, authenticators, and cross-organizational delegation
What is CIAM in enterprise access management?
CIAM, or customer identity and access management, secures and manages digital identities for customers, partners, vendors, and other external users across business applications.
How does agentic AI change customer identity and access management?
Agentic AI introduces new access patterns for AI agents, bots, non-human identities, and embedded third-party agents that require stronger governance, visibility, and authorization controls.
Why are OIDC and OAuth important for AI-ready CIAM?
OIDC supports authentication and SSO, while OAuth helps govern authorization through scopes, delegated access, and controlled permissions for human and non-human identities.
In this first episode, host Joe Miller, Partner Sales Manager for the Americas on the Thales CIAM team, is joined by identity experts Nate Szytel, CEO of Next Reason, and James Bonifield, co-founder and CEO of Anthropic Identity, for a candid conversation on identity standards for AI: “déjà vu all over again.”
AI is creating a new identity crisis. In the past, major technology shifts pushed the industry toward new identity standards: SAML for enterprise federation, OAuth and OpenID Connect for mobile and cloud, and security event tokens for asynchronous threats. Today, agentic AI is forcing many of the same questions again, only faster.
How should organizations authenticate and authorize autonomous agents? Should agents be treated as their own category of identity, as non-human identities, as workload identities, or as extensions of users? How do teams prevent agents from going rogue, leaving behind unmanaged access, or bypassing governance through side channels?
Joe, Nate, and James discuss SAML, OAuth 2.0, OIDC, token exchange, on-behalf-of flows, delegated access, step-up authentication, MCP gateways, agent governance, privileged access management, identity governance, and the identity fundamentals organizations need before AI adoption accelerates further.
The episode also looks at why CIAM is no longer only a login problem. Customer identity is a security problem, a business problem, a customer experience problem, and increasingly a boardroom conversation. As AI builders emerge across the business, including outside traditional IT departments, organizations need guardrails that help teams innovate without creating unmanaged risk.
You’ll hear practical perspectives on:
• Why AI is pushing identity standards back into a “Wild West” moment
• How existing standards like SAML, OAuth 2.0, OIDC, and token exchange still matter
• Why identity governance, privileged access, and access fundamentals are more important than ever
• How customer, workforce, partner, vendor, and non-human identity are beginning to overlap
• What organizations should ask system integrators and identity partners when planning for agentic AI
• Why identity platforms and open standards may help organizations stay adaptable as the AI identity landscape evolves
• Real-world use cases involving AI chatbots, portfolio recommendations, delegated tokens, trading tools, step-up authorization, and side-channel access risks
Whether you are responsible for CIAM strategy, identity architecture, application security, fraud prevention, customer onboarding, privacy, authentication, authorization, or AI governance, this episode is designed to help you think through what is happening now — not just what standards may emerge later.
From the publisher's feed
Identity Unfiltered is where identity gets real.
The world of digital identity is changing fast. AI agents, evolving customer expectations, new regulations, fraud, privacy,…
Identity Unfiltered cuts through the noise to explore the trends, challenges and ideas shaping the future of Customer Identity and Access Management (CIAM).
Each episode brings together identity practitioners, cybersecurity leaders, industry experts and innovators for candid conversations about what’s working, what isn’t, and what organizations need to be thinking about next.
From CIAM strategy and passwordless authentication to identity orchestration, AI and machine identities, fraud prevention, privacy, customer experience and emerging identity standards, we go beyond the buzzwords and get into the conversations identity professionals are actually having.
No scripts. No fluff. No identity jargon for the sake of jargon.
Just identity—unfiltered.