Segment 1 - Enterprise Security News, Live at IDV
This week, in the enterprise security news,
- Acquisitions
- potential IPOs
- Terminator Salvation in real life
- First $1B one-employee business?
- Mikko puts in his notice
- Pitch Black in real life, and more!
Segment 2 - Interview with Dr. Tina Srivastava
The #1 cause of data breaches is stolen credentials. What if we didn’t store credentials anymore? We explore Badge’s innovative approach—which enables users to generate a private key on the fly instead of storing credentials—to enhance security, solve key use cases such as shared devices, and deliver measurable ROI. Additionally, we'll uncover the unavoidable recovery flow challenges, where users must rely on a pre-enrolled recovery device or fallback passwords, and discuss what this means for enterprise security and cost savings. By shifting the paradigm toward ephemeral key generation, Badge eliminates stored credentials, optimizes enterprise cost savings, and future-proofs authentication.
Segment Resources:
- Mission-Driven Identity Innovation with Dr. Tina Srivastava
- Authenticate 2024 - Data Privacy & Accessibility with Tina Srivastava
- Lecture 2: Airplane Aerodynamics
- CyberArk/Badge Joint Solution Brief
- Badge Integration With Cisco Duo Delivers Unique, Hardware-less MFA Experience
- Passwordless Authentication without Secrets!
Segment 3 - Interviews from RSAC 2025
Executive Interview with Saviynt
Evolving compliance needs, overflowing tech stacks, and the ever-increasing number of types of enterprise identities — not to mention the complications resulting from business use of AI — means traditional identity platforms can't keep up with the needs of today's enterprises. Organizations need something smarter: converged, cloud-native and future-ready identity security that scales with enterprises as they grow, addressing their cybersecurity challenges today and in the future. Join us in this episode as we break down the shortcomings of legacy IAM and uncover how an intelligent, identity-centric approach sets enterprises on the path to success.
Segment Resources:
- Learn more about The Saviynt Identity Cloud
- Identity Cloud solution brief
This segment is sponsored by Saviynt! To learn more or get a free demo, please visit https://securityweekly.com/saviyntrsac
Executive Interview with Ready1
Semperis has launched Ready1, a first-of-its-kind enterprise resilience platform designed to bring structure, speed, and coordination to cyber crisis management. The release of Ready1 coincides with Semperis’ new global study, The State of Enterprise Cyber Crisis Readiness, which highlights a dangerous gap between perceived readiness and real-world response capabilities.
This segment is sponsored by Ready1, powered by Semperis. Visit https://securityweekly.com/ready1rsac to learn more about them!
As General Manager for Ready1 and EVP of Services, Marty Momdjian brings more than 15 years’ strategic and tactical leadership in cyber resilience and incident response (IR) to Semperis. His expertise in identity security, particularly in applied controls and ease of use, was forged while leading IR and recovery teams during some of the most well-known cyber breaches in the healthcare industry.
At Semperis, Marty’s focus is on breach preparedness and mitigating the impact to clinical and business operations during cyber events.
As Chief Growth Officer, Amit is focused on developing and executing on the investment and growth strategies that build and grow the company’s strategic initiatives and its core customer and partner relationships.
Amit brings over two decades of identity and cybersecurity industry expertise, where he has helped organizations address and solve some of their most critical identity, security, and compliance challenges. As a Co-Founder and the previous CEO of Saviynt, Amit was responsible for the first phase of the company’s evolution and growth, providing the strategic leadership and execution that has positioned Saviynt as a leader in the identity management market. Prior to his tenure as CEO in 2018, Amit was COO of Saviynt, where from 2014 to 2018 he led sales, business development, alliances, and go-to-market strategy. Prior to joining Saviynt, Amit held leadership positions at Infosys and HCL, including as Identity Practice Engagement Manager and Senior Architect. With his long and distinguished tenure, Amit is widely considered a leading expert in identity and access management, information security, and risk and compliance management.
Dr. Tina P. Srivastava is an MIT-trained rocket scientist, entrepreneur, technology expert, author and the inventor of more than 30 patents. Her book, Innovating in a Secret World, has received many accolades since its release, and Dr. Srivastava also regularly takes the stage at major industry conferences like Identiverse, Authenticate, the Harvard Social Enterprise Conference and Advanced Cyber Security Center (ACSC) Conference. She is also an FAA-certified pilot and Lecturer at MIT in the areas of flying, meteorology, and technology roadmapping. Her lecture on the fundamental knowledge and basic principles of airplane aerodynamics has garnered over 3 million views.
Dr. Srivastava is experienced in designing security technologies and bringing them to market, both in defense and commercial sectors. Dr. Srivastava served as Chief Engineer of electronic warfare programs at Raytheon, where she successfully led a $40 million advanced radio frequency program. She also founded a cybersecurity startup that was acquired by a public company and the global leader in network assurance and security, and is co-founder of Badge Inc., an identity and security company. She is also actively involved with INCOSE, where she served on the Board of Directors for two terms. She now serves on the Board of Directors of IDPro. Dr. Srivastava earned her PhD, SM, and SB, all from MIT.
Adrian Sanabria
- IPOs: Cyber Company Forescout Plans Return to Public Markets
Is an IPO a good idea for a cybersecurity company? Generally, I think no, but there are a few exceptions. I mean, it's not even Forescout's first at-bat here, so why not?
- ACQUISITIONS: Zscaler to Acquire MDR Specialist Red Canary
There was a rumor they paid $4B
They didn't, they paid $675M + equity awards for employees
Makes a lot of sense - all the big platform plays have professional services these days.
- SELF-FUNDING: A decade in, bootstrapped Thinkst Canary reaches $20M in ARR without VC funding
Are there other examples like Thinkst? If you know of some, let us know!
- NEW FEATURES: Reshaping user authentication and identity verification (Google Chrome)
Authentication and identity is going through a transformation right now...
- NEW FEATURES: A New Era of Phishing-Resistant Authentication
Passwordless for your password database!!
- NEW FEATURES: Picus Exposure Validation: Stop Treating Every CVE Like a Crisis
Prioritization through vulnerability validation
- NEW STANDARDS: Likely Exploited Vulnerabilities
We really didn't need another standard. This isn't helping.
- INDUSTRY MOVES: Mikko puts in his notice… after 34 years
Mikko's career is as old as the cybersecurity industry, which is why it's so notable that he's moving on from the same company he has worked on since the start.
- ESSAYS: What is a false positive? Turns out we don’t really know
An excellent, thought provoking post on what a false positive actually means.
- LEGAL: Japan enacts new Active Cyberdefense Law allowing for offensive cyber operations
A notable precedent. Will be interesting to see how they use these new powers.
- FEDERAL: CISA loses nearly all top officials as purge continues
The decline continues
- MILITARY TECH: Operation Spider’s Web
A wild combination of scrappy tech, imagination, and resource challenges pays off.
- MALWARE: Microsoft says Lumma password stealer malware found on 394,000 Windows PCs
There must be massive amounts of unused compromised credentials out there, a lot of them granting access to work resources, not just personal.
- AI NEWS: First $1B business with one human employee will happen in 2026, says Anthropic CEO
Utter bullshit, unless you're talking about crypto scams, and in that case, there are some crypto exchanges that have pretty close to achieving this!
- SQUIRREL: Infrared contact lenses let you see in the dark
Shine job.