In a world dominated by growing cloud technology and the unique, identity-based threats that come with it, security teams need consistent and modern defense strategies.
Access Granted is your gateway to understanding and implementing proactive cyber prevention measures and keeping up with transformative strategies and solutions for access management.
Ep 16: From POCs to Production: Building a Real GenAI Security Program
In this episode of Access Granted, Nauman sits down with Ken Huang—co-author of the OWASP Top 10 for LLMs, contributor to NIST AI work, and co-chair of CSA’s AI Safety Group—to break down what practical GenAI security looks like.
They cover:
Why only a small fraction of organizations feel comfortable with their GenAI security posture
The three big risk buckets: prompt injection, MCP/tooling exposure, and goal manipulation / agent drift
How “shadow AI” emerges when there’s no dedicated GenAI security program
A concrete framework stack: NIST AI RMF → Maestro threat modeling → OWASP AI VSS → CSA AICM + red teaming
The role of cloud provider frameworks (Google SAIF, AWS CAF-E AI, Azure guidance) and how to combine them with community standards
Why traditional IAM (static SAML/OAuth scopes) doesn’t work for AI agents—and what task-scoped, intent-based, ephemeral access should look like
How to think about identity lifecycle and governance for AI agents, and why “no 24/7 God mode” should be a non-negotiable anchor for CISOs
If you’re trying to move from GenAI science projects to production systems without sleepwalking into a breach—or letting an agent delete your production database—this conversation will help you define the guardrails, frameworks, and identity controls you actually need.
4 Nov 2025
Ep 15: From Static Keys to Runtime Authorization
Identity is no longer an IT admin task; it’s the security control plane.
In this episode of Access Granted, Britive’s Nauman Mustafa sits down with Sriram Santhanam, an experienced identity and security leader, to unpack where identity security is headed and what teams can do now.
What we cover:
Why static keys, blanket tokens, and over-permissive roles break in cloud + SaaS
Moving to runtime authorization: per-action access, short TTLs, ZSP by default
Non-human identities & agentic AI: on-behalf-of boundaries, tool allowlists, guardrails
Crawl-walk-run vs. run if you can: where to start and how to scale safely
IGA + PAM together: SailPoint governance with runtime enforcement for day-to-day access
Practical steps after SaaS/token incidents: review scopes, remove “full,” revoke fast, instrument audit
22 May 2025
Ep: 14 Addressing the Risk of Static Credentials with Zero Standing Privileges
Host Nauman interviews Britive's Product Manager Matt Wilson about the growing crisis of static credentials in hybrid environments and the evolution toward Zero Standing Privileges for enhanced security.
8 May 2025
Ep 13: Extending Dynamic Access Management for Clouds, Networks, and Systems
Cloud PAM built for all identities across all cloud & hybrid environments: https://www.britive.com/
In this episode of Access Granted, Nauman Mustafa sits down with Shahzad Ali, Principal Architect at Britive, to break down the evolving world of privileged access management (PAM) and how modern environments demand a new approach.
Together, they dive into the shift away from traditional vault-based PAM models to dynamic, just-in-time (JIT) access and Zero Standing Privileges (ZSP). Securing all identities in the cloud, human and non-human, AI-driven workflows across cloud and hybrid environments requires permissioning that can keep up with the needs of the cloud.
They talk the why behind how identity has become the new security perimeter, and why securing access must extend beyond users to include systems, workloads, infrastructure devices, and agentic AI.
Key topics include:
How the definition of privileged access has changed in cloud-native, distributed environments.
Why static credentials and vault-only solutions no longer meet today’s security needs.
The role of Zero Standing Privileges (ZSP) in enabling true just-in-time access for all identities.
Extending dynamic, ephemeral access controls to routers, switches, firewalls, and IoT devices.
Why organizations must rethink infrastructure security alongside cloud IAM modernization.
Actionable advice for CISOs and security leaders on building a modern, scalable, and secure access management program.
🤖 Learn more about how Britive is securing agent-based AI access: https://www.britive.com/use-cases/agentic-ai-security (https://www.britive.com/use-cases/agentic-ai-security)
🍏 Listen on Apple: https://podcasts.apple.com/us/podcast/access-granted/id1770083136
📺 Watch Access Granted on YouTube: https://www.youtube.com/playlist?list=PLotHzn4KKa4K7qanA_Oi2-LZagw_mINyA (https://www.youtube.com/playlist?list=PLotHzn4KKa4K7qanA_Oi2-LZagw_mINyA)
27 Feb 2025
Ep 12: Protecting NHIs in GitHub: Zero Standing Privileges with Just-in-Time Access
In this episode of Access Granted, we sit down with Palak Chheda, Britive’s Principal Architect to dive deep into practical strategies for securing Non-Human Identities (NHIs) within GitHub workflows.
As automation and CI/CD pipelines become critical in cloud environments, the need to secure machine identities and ephemeral tokens has never been greater.
We walk through a live demo showcasing how Britive's Just-In-Time (JIT) privilege management eliminates the risks associated with static credentials and API keys.
Discover how Workload Federation can authenticate GitHub Actions dynamically, enabling true Zero Standing Privileges (ZSP) for infrastructure components.
Key Takeaways:
The risks of static API keys and long-lived tokens in GitHub workflows.
How to use workload identity federation to achieve ZSP.
Real-world examples of securing CI/CD processes with Britive.
The benefits of ephemeral credentials and dynamic permissions management.
🎧 Listen now and transform how you manage NHIs in your cloud infrastructure!
📺 Watch this episode on YouTube: https://www.youtube.com/playlist?list=PLotHzn4KKa4K7qanA_Oi2-LZagw_mINyA (https://www.youtube.com/playlist?list=PLotHzn4KKa4K7qanA_Oi2-LZagw_mINyA)
13 Feb 2025
Ep: 11 Navigating the Modern Identity Security Landscape
Explore Britive’s agent-less, proxy-less, cloud-native PAM:https://www.britive.com/ (https://www.britive.com/)
In this episode of Access Granted, we dive deep into one of the most urgent cybersecurity challenges today: non-human identities (NHIs). As automation, AI, and cloud services expand, NHIs — like API keys, service accounts, and machine credentials — are growing at an alarming rate. Yet, many organizations fail to track, secure, or even acknowledge their existence, despite their potential impact on identity security.
Two identity security leaders, Lalit Choda, Founder of the NHI Management Group, and Art Poghosyan, CEO and Co-Founder of Britive, share their insight and expertise on:
✅ The explosion of NHIs & why they’ve grown to outnumber human identities in the cloud
✅ How NHIs are exploited in breaches, drawing from big examples
✅ Why static credentials are a ticking time bomb & how to eliminate them
✅ Best practices for securing NHIs using Zero Standing Privileges (ZSP) as a guiding principle of identity management
📺 Watch this episode on YouTube:https://www.youtube.com/playlist?list=PLotHzn4KKa4K7qanA_Oi2-LZagw_mINyA (https://www.youtube.com/playlist?list=PLotHzn4KKa4K7qanA_Oi2-LZagw_mINyA)
30 Jan 2025
Ep 10: Locking Down the Bots - Securing NHIs in the Cloud
In this episode of Access Granted, John Morton, Field CTO at Britive, dives into the world of Non-Human Identities (NHIs) and their pivotal role in modern cloud security. From understanding what NHIs are to exploring their impact on automation, workflows, and security strategies, John shares insights into why they’ve become a critical focus for organizations today.
He also discusses best practices for securing NHIs, integrating them into a zero-trust model, and why static access for NHIs is a risk that organizations can no longer afford.
Key Takeaways:
Understanding NHIs, the role they play in automation and cloud operations, and why securing them is different from human identities.
Why NHIs have come under increased scrutiny with increased cloud adoption, automation, and the growing number of API keys, tokens, and service principles.
How static credentials and unmanaged NHIs can lead to breaches, and why securing them with JIT access is essential.
Practical steps for securing NHIs, from implementing guidelines to modernizing access management.
🎧 Listen to Access Granted on Spotify: https://open.spotify.com/show/7ukJOqUhDmTRj2pm3ykibS (https://open.spotify.com/show/7ukJOqUhDmTRj2pm3ykibS)
🍏 Listen on Apple: https://podcasts.apple.com/us/podcast/access-granted/id1770083136 (https://podcasts.apple.com/us/podcast/access-granted/id1770083136)
📺 Watch this episode on YouTube: https://www.youtube.com/playlist?list=PLotHzn4KKa4K7qanA_Oi2-LZagw_mINyA (https://www.youtube.com/playlist?list=PLotHzn4KKa4K7qanA_Oi2-LZagw_mINyA)
16 Jan 2025
Ep 9: The Identity World is Calling for Innovation
Nauman Mustafa sits down with Art Poghosyan, co-founder and CEO of Britive, to explore the evolving identity and access management landscape in the cloud era, revealing the need for innovative, cloud-native approaches to secure multi-cloud environments.
2 Jan 2025
Ep 8: Securing Identities in the Modern Data Landscape
In this episode of Access Granted, Nauman sits down with big data analytics and machine learning expert Junaid Rao to explore the transformative role of data in innovation, the rise of generative AI, and the critical importance of security in hybrid and multi-cloud environments.
With over two decades of experience in data management and analytics across EMEA and APAC, Junaid shares his expertise on key trends, challenges, and best practices for building a future-proof data strategy.
Tune in to the discussion to learn more about how organizations can overcome fragmented data silos, optimize hybrid cloud strategies, and implement more robust security measures such as Zero Trust around their identity and access management processes.
Key Takeaways:
The Evolution of Data Management – how organizations are moving from data silos to “unified lakehouse architectures”
Hybrid Cloud Challenges – common security challenges and the role of data residency and compliance are impacting cloud strategies across regions of the world.
Data Security and Identity Management – why Zero Trust and granular access controls are becoming more critical for public cloud environments.
Future-Proofing Your Data Strategy – the importance of maintaining flexibility to avoid vendor lock in and selecting platforms that support evolving technologies and use cases, such as real-time analytics and AI integration.
Career Advice for Data Enthusiasts – tips for new grads and professionals alike who are looking to build successful careers centered around data, AI, and cybersecurity.
📺 Watch this episode on YouTube: https://www.youtube.com/playlist?list=PLotHzn4KKa4K7qanA_Oi2-LZagw_mINyA (https://www.youtube.com/playlist?list=PLotHzn4KKa4K7qanA_Oi2-LZagw_mINyA)
🍏: https://podcasts.apple.com/us/podcast/access-granted/id1770083136 (https://podcasts.apple.com/us/podcast/access-granted/id1770083136)
19 Dec 2024
Ep 7: Unlearning to Innovate and Solve Problems
Sameer Hiremath shares how cloud-native architectures can revolutionize your security strategy by mitigating risk and improving adoption through Zero Standing Privileges and AI-driven risk identification.
5 Dec 2024
Ep 6: Non-Human Identities - The Silent Risk in Cloud Security
Nauman Mustafa and Lalit Choda, a leading expert in Non-Human Identity Management, expose the silent risk of non-human identities in cloud security and provide practical steps for organizations to address them.
21 Nov 2024
Ep 5: Modernizing Identity and Access Management Frameworks in the Cloud
Nauman Mustafa and Palak Chheda discuss the importance of modernizing identity and access management frameworks in the cloud to reduce risk and improve cybersecurity.
7 Nov 2024
Ep 4: Zero Trust Access Strategies for Startups and Cloud-Native Enterprises
Explore Britive’s Cloud-native PAM platform: https://www.britive.com/ (https://www.britive.com/)
In this episode of Access Granted, Nauman Mustafa sits down with Harry Wan, Britive’s Head of Product and Information Security. The discussion delves into the modern challenges and strategies of securing identity and access management (IAM) in cloud-native environments, from startups to enterprises.
Join in on an engaging discussion with insights, strategies, and trends around protecting data while enabling agile, secure cloud operations.
Key topics include:
The rise of cloud-native security, prompted by the adoption of microservices, and cloud-hosted applications changing traditional security approaches.
Eliminating static, long-lived access with ephemeral credentials to limit the potential attack surface.
The benefits of a streamlined, centralized approach to access management to facilitate audits and compliance.
Advice for balancing speed and security, especially for startups early in their journey.
A look ahead at the future of AI in identity security, especially around anomaly detection.
📺 Watch this episode on YouTube: https://www.youtube.com/playlist?list=PLotHzn4KKa4K7qanA_Oi2-LZagw_mINyA (https://www.youtube.com/playlist?list=PLotHzn4KKa4K7qanA_Oi2-LZagw_mINyA)
24 Oct 2024
Ep 3: Identity as the New Perimeter: Protect Identity, Protect Everything
In this episode, Thomas Rawley, Head of US Engineering at Britive, delves into the real-world challenges enterprises face as they transition from on-premise to multi-cloud environments.
The conversation goes over the growing importance of identity as the new security perimeter, the critical need to decouple authentication from authorization, and how to build a resilient cloud architecture.
Key takeaways include:
Best practices for securing cloud access
Why Just-in-Time (JIT) access matters
How to ensure your multi-cloud strategy stays agile, secure, and scalable
Learn more about Britive's Modern Cloud PAM Platform (https://www.britive.com/)
10 Oct 2024
Ep 2: Identity & Access Management in Life Sciences: Strategies for a Secure Cloud Journey
Join Nauman Mustafa, John Morton, and Roy Long in a discussion on the evolving identity and access security landscape with a focus in the life sciences industry. They explore the impact of COVID-19 on cloud adoption, the shift from traditional security measures to a greater focus on identity management, and the importance of implementing a zero-trust architecture.
Listen in for insights on the role AI will play in enhancing security and operational efficiency, the challenges of effective change management, and key lessons learned from recent cyber attacks.
Key episode takeaways include:
The struggles of keeping up with cloud adoption
How and why identity and access management is critical in breach prevention
The importance of understanding a security posture for the sake of improvement
Learn more about Britive's Cloud PAM (https://www.britive.com/)
Learn more about (https://www.britive.com/)skyPuprle Cloud (https://www.skypurple.cloud/)
Watch the video episode on YouTube (https://youtu.be/UOsJx4tTHqQ)
25 Sept 2024
Ep 1: The Cyber Risks of Credential Misuse, Static Access, and Over-Provisioning
This episode features John Morton, Field CTO and Cyber Defense Specialist at Britive.
The conversation focuses on the shift from traditional data center architectures to a cloud-based, distributed architecture, it only makes sense for PAM technologies to do the same. This episode also touches on:
The importance of separating authentication from authorization.
Understanding security basics and how they apply to identity and access management.
Why adopting zero standing privileges is critical to reducing the risk landscape and achieving zero trust.
Watch the episode on YouTube (https://www.youtube.com/watch?v=3h38ZBGS0gw)
2 Sept 2024
Introducing: Access Granted
Welcome to Access Granted!
This podcast is designed to bring you transformative strategies and solutions for secure access management in the modern cloud era.
Whether you're new to working on and securing a cloud environment, or you're a seasoned pro with a variety of environment configurations under your belt, this podcast will bring you tips and insight from practitioners across the industry.
Ready to rethink and modernize cloud security?
Reach and audience
Public platform figures. Ratings count people who left a rating, not total listeners.
YouTube views
2,486,129
Score snapshot 15 Sept 2025
Podcast Authority Score: 39 / 100
A composite of feed quality, social presence, YouTube performance and engagement. Read the methodology.
Quality
45
Social presence
0
YouTube
82
Engagement
0
Contact Access Granted
Guest appearances
Does not typically book guests
Based on episode analysis; this does not confirm that the show is currently accepting guests.
Host of Access Granted?
Claim your podcast to manage its listing and keep your show details accurate.
Pod Engine is an independent podcast discovery and analytics service and is not affiliated with or endorsed by this podcast. Artwork and show content belong to their owners. Full legal notice.
Explore this show Podcast research with Pod Engine