The Identity Blueprint
Enterprise identity and access management isn't a product you buy — it's a program you build. The Identity Blueprint covers the full spectrum: seven-phase IAM frameworks, zero trust architecture, JIT access, FIDO2 passkeys, identity governance, and the operational models that hold up at enterprise scale. Built for practitioners who are past the basics. Hosted by Ernie and Josée.
Episodes
14 episodes
Day One of the M&A. Okta and Ping Solve Day One Access Differently.
This episode gives you the exact mechanics for achieving day-one cross-org access with Okta and Ping: how to bridge an acquired company's on-prem Active Directory without touching it, how namespace collisions actually get resolved...
Every M&A Deal Carries Inherited Risk. Here's How Microsoft Entra Secures It.
This episode gives you the actual playbook for the risk you inherit in an M&A deal: how to migrate overlapping access groups without a naming collision, how to forensically expose shadow IT tenants before they become a backdoor, and ...
Day One of the M&A. How Does Integration Start on Microsoft Entra?
This episode gives you the exact integration mechanics for Day One of an M&A: how to bring an acquired company's identities into your Entra ID tenant without a multi-year Active Directory consolidation project, and without opening a ...
Okta and Ping Promise Freedom From Active Directory. Do They Deliver?
By the end of this episode, you'll know exactly how Okta and Ping handle the same identity challenges Microsoft solves with Entra — so you can evaluate either platform on real mechanics instead of vendor promises.In this ep...
You Can Fire Active Directory. Can You Take the Keys Back?
By the end of this episode, you'll know exactly how a source-of-authority cutover happens without service disruption, and how to lock down every sensitive admin group so standing privilege — the thing attackers actually rely on — ...
The Cloud Quietly Fired Active Directory
This episode gives you a working, accurate model of hybrid identity in 2026: where authority actually lives, how it's protected end to end, and exactly where your remaining legacy footprint still needs attention. No guessing, no assumpti...
Identity Program Operations and Metrics
Your dashboard says everything is fine. Intrusion detection normal. Firewall active. MFA compliance at 98%. Meanwhile, somewhere in your environment right now, credentials are being harvested and nobody's metric is moving. That is not a securit...
Planning Successful Identity Management Rollouts
The most dangerous assumption in any identity rollout is that the hard part is technical. It isn't. The hard part is the manager who needs access right now and doesn't care how it gets done. The administrator who knows the bypass is wrong but c...
The Nine Layers of Identity Architecture
Most organizations buy identity technology one piece at a time. A directory here. An MFA solution there. A PAM tool when the auditors ask for it. The result is nine disconnected layers that were never designed to work together — and an architec...
Securing Identities from Hire to Fire
Your employee submitted their resignation on Friday. By Monday morning their access was still fully active. Every system. Every application. Every privilege they ever accumulated.In this episode, Ernie and Josée go deep on ...
Why Identity Governance Must Lead Technology
Season 1, Episode 4: You automated your practices. You accelerated your procedures. Yet you're still failing your audits. Your platform isn't fixing your identity problem — it's accelerating it. And right now, you're operating ...
Identity Strategy and Target State Design
Season 1, Episode 3: Identity isn't a technology problem. It's a strategy problem. And until your executive team agrees on where you're going, every platform you buy and every policy you write is just expensive guesswork<...
Executing a Ruthless Identity Security Autopsy
Season 1, Episode 2: You can spend millions securing the front door. Vault-grade authentication. Biometric access controls. Armed monitoring around the clock. And an attacker will walk right past all of it — through the forgotten mainten...
The Seven Phase Identity Security Blueprint
Season 1, Episode 1: One forgotten password. One orphaned VPN account with no MFA. That's all it took to shut down half the fuel supply of the United States East Coast. In this episode, Ernie and Josée unpack the seven-phase IAM Program ...