Identity Sprawl is the New Shadow IT: What CISOs Need to Know
with Kip Boyle, CISO, Cyber Risk Opportunities LLC; David Faulk, Sr Solutions Architect, BeyondTrust
Identity Sprawl is the New Shadow IT: What CISOs Need to Know
Get Instant Access to this Content
Learn more about how to secure your business from threats in places you didn't even know existed.
About the Session
Link copied
Identities are everywhere now: AD, cloud consoles, SaaS apps, and code pipelines. Human and non-human accounts pile up fast. Many are over-permissioned, stale, or poorly owned. That creates blind spots, audit pain, and easy paths for attackers.
In this session, fractional CISO Kip Boyle and David Faulk showed how to spot and shrink identity sprawl without slowing the business. They outlined a simple playbook: discover, classify, right-size access, and keep it clean with ongoing monitoring. The SE ran a short live demo to map hidden or risky identities, surface stale credentials, and show quick wins with ITDR/PAM controls. Attendees left with steps they could act on this quarter and metrics to prove value.
Who attended: CISOs, IAM leaders, SecOps/ITOps managers, cloud/platform owners.
Key takeaways
Spot the common signs of identity sprawl (human and non-human).
Build a simple cleanup plan: discover, classify, right-size, then monitor.
Quick wins: disable stale accounts, rotate secrets, use just-in-time access.
Measure value in business terms: fewer over privileged accounts, faster audits, and a smaller blast radius.
Get a Red-Team Assessment of your Identity Infrastructure. Request a FREE Identity Security Risk Assessment and get a snapshot of your identity security risks at no cost or obligation.
Meet the Speakers
Link copied
Kip Boyle
CISO, Cyber Risk Opportunities LLC
Kip Boyle is the Chief Information Security Officer (CISO) for several companies. He's the co-host of the "Cyber Risk Management Podcast" at https://cr-map.com/podcast. He helps senior decision-makers manage unlimited cyber risks through rigorous pri
... read more
Kip Boyle is the Chief Information Security Officer (CISO) for several companies. He's the co-host of the "Cyber Risk Management Podcast" at https://cr-map.com/podcast. He helps senior decision-makers manage unlimited cyber risks through rigorous prioritization. He's served as a Captain with the F-22 program in the US Air Force. In the private sectors he was a CISO for an insurance company, credit card processor, bank, credit union, and IT Managed Service Provider. He lives in Seattle with his wife and six kids.
Kip Boyle is the Chief Information Security Officer (CISO) for several companies. He's the co-host of the "Cyber Risk Management Podcast" at https://cr-map.com/podcast. He helps senior decision-makers manage unlimited cyber risks through rigorous pri
...
read more
Kip Boyle
CISO, Cyber Risk Opportunities LLC
Kip Boyle is the Chief Information Security Officer (CISO) for several companies. He's the co-host of the "Cyber Risk Management Podcast" at https://cr-map.com/podcast. He helps senior decision-makers manage unlimited cyber risks through rigorous prioritization. He's served as a Captain with the F-22 program in the US Air Force. In the private sectors he was a CISO for an insurance company, credit card processor, bank, credit union, and IT Managed Service Provider. He lives in Seattle with his wife and six kids.
David Faulk is a Sr. Solutions Architect at BeyondTrust with almost three years at the company. David started in Open Source software before moving into Cybersecurity. He enjoys Muay Thai, lifting weights, and Drones.
David Faulk is a Sr. Solutions Architect at BeyondTrust with almost three years at the company. David started in Open Source software before moving into Cybersecurity. He enjoys Muay Thai, lifting weights, and Drones.