Alert icon Keyboard navigation enabled.
Alert icon TAB or Shift+TAB to navigate across. Down ↓ to open menu. ESC to close menu.
Alert icon Down ↓ to select section. Right → to activate. Up ↑ / Down ↓ / Tab to traverse all. ESC to exit.
BeyondTrust
Skip to content Use space or enter to skip.

What can we help you find today?

Instant Results
  • Website Results
  • Technical Documentation

Filter Options

Focus your search

Filtering by

Your recent searches:

Contact Us Chat with Sales Get Support
  • English
  • Deutsch
  • français
  • español
  • 한국어
  • português
  • Home
  • Resources
  • Webinars
  • Identity Sprawl is the New Shadow IT: What CISOs Need to Know current page
Link copied

Identity Sprawl is the New Shadow IT: What CISOs Need to Know

with Kip Boyle, CISO, Cyber Risk Opportunities LLC; David Faulk, Sr Solutions Architect, BeyondTrust
Webinars default
Identity Sprawl is the New Shadow IT: What CISOs Need to Know

Get Instant Access to this Content

Learn more about how to secure your business from threats in places you didn't even know existed.

About the Session

White chain icon to symbolize the ability to copy a link
Link copied
Check mark to visually show text has been copied

Identities are everywhere now: AD, cloud consoles, SaaS apps, and code pipelines. Human and non-human accounts pile up fast. Many are over-permissioned, stale, or poorly owned. That creates blind spots, audit pain, and easy paths for attackers.

In this session, fractional CISO Kip Boyle and David Faulk showed how to spot and shrink identity sprawl without slowing the business. They outlined a simple playbook: discover, classify, right-size access, and keep it clean with ongoing monitoring. The SE ran a short live demo to map hidden or risky identities, surface stale credentials, and show quick wins with ITDR/PAM controls. Attendees left with steps they could act on this quarter and metrics to prove value.

Who attended: CISOs, IAM leaders, SecOps/ITOps managers, cloud/platform owners.

Key takeaways

  • Spot the common signs of identity sprawl (human and non-human).
  • Build a simple cleanup plan: discover, classify, right-size, then monitor.
  • Quick wins: disable stale accounts, rotate secrets, use just-in-time access.
  • Measure value in business terms: fewer over privileged accounts, faster audits, and a smaller blast radius.

Get a Red-Team Assessment of your Identity Infrastructure. Request a FREE Identity Security Risk Assessment and get a snapshot of your identity security risks at no cost or obligation.

Meet the Speakers

White chain icon to symbolize the ability to copy a link
Link copied
Check mark to visually show text has been copied
Kip Boyle
Kip Boyle
CISO, Cyber Risk Opportunities LLC
Kip Boyle is the Chief Information Security Officer (CISO) for several companies. He's the co-host of the "Cyber Risk Management Podcast" at https://cr-map.com/podcast. He helps senior decision-makers manage unlimited cyber risks through rigorous pri ... read more

Kip Boyle is the Chief Information Security Officer (CISO) for several companies. He's the co-host of the "Cyber Risk Management Podcast" at https://cr-map.com/podcast. He helps senior decision-makers manage unlimited cyber risks through rigorous prioritization. He's served as a Captain with the F-22 program in the US Air Force. In the private sectors he was a CISO for an insurance company, credit card processor, bank, credit union, and IT Managed Service Provider. He lives in Seattle with his wife and six kids. 

Kip Boyle is the Chief Information Security Officer (CISO) for several companies. He's the co-host of the "Cyber Risk Management Podcast" at https://cr-map.com/podcast. He helps senior decision-makers manage unlimited cyber risks through rigorous pri ... read more
Kip Boyle
CISO, Cyber Risk Opportunities LLC

Kip Boyle is the Chief Information Security Officer (CISO) for several companies. He's the co-host of the "Cyber Risk Management Podcast" at https://cr-map.com/podcast. He helps senior decision-makers manage unlimited cyber risks through rigorous prioritization. He's served as a Captain with the F-22 program in the US Air Force. In the private sectors he was a CISO for an insurance company, credit card processor, bank, credit union, and IT Managed Service Provider. He lives in Seattle with his wife and six kids. 

×
David Faulk
David Faulk
Sr Solutions Architect, BeyondTrust
David Faulk is a Sr. Solutions Architect at BeyondTrust with almost three years at the company. David started in Open Source software before moving into Cybersecurity. He enjoys Muay Thai, lifting weights, and Drones.
David Faulk is a Sr. Solutions Architect at BeyondTrust with almost three years at the company. David started in Open Source software before moving into Cybersecurity. He enjoys Muay Thai, lifting weights, and Drones.

Recommended Resources

White chain icon to symbolize the ability to copy a link
Link copied
Check mark to visually show text has been copied
Videos
Identity Security Insights® Assessment
Research
2025 Microsoft Vulnerabilities Report
Research
Forrester Wave: Privileged Identity Management Solutions 2025
Blog
When Clickbait Goes Bad – How to Protect your Identity & Business from Clickbait Phishing Scams
Blog
Restless Guests: The True Entra B2B Guest Threat Model
Blog
How to Detect Session Hijacking Before It’s Too Late: A Data Science & Behavioral Modeling Approach
Podcasts
Ep. 83 - The Bug Bounty That Bought a Mini Donkey // Tommy DeVoss (dawgyg)
Podcasts
Ep. 82 – Security Tools Are Failing: Lessons from the 2025 Microsoft Vulnerability Report
Podcasts
Ep. 81 - From DVWA to Nerf Wars: Tales of DigiNinja // Robin Wood
Latest
  • The Ghost in the Machine (Securing Non-Human Identities)
    Jun 18, 2026 The Ghost in the Machine (Securing Non-Human Identities)
    Webinar
Related
  • 2025 May Product Map: Remote Support
    Mar 27, 2025 2025 May Product Map: Remote Support
    On-demand we...
    25m
Share this Article
  • Link
Relevant Tags
  • AI And Quantum Threats
  • Cybersecurity Innovations
  • Cybersecurity Journey
  • Cybersecurity Practices
  • Cybersecurity Trends
  • Key Forecasts2025
  • Leading Trend Predictions
  • Meet The Speakers
  • Paths To Privilege
  • Predictions2025

Keep up with BeyondTrust

Customer Support Get Started
  • LinkedIn
  • X
  • Facebook
  • Instagram
  • Add BeyondTrust as a preferred source on Google
  • Privacy
  • Security
  • Manage Cookies
  • Do Not Sell My Data
  • WEEE Compliance

Copyright © 2003 — 2026 BeyondTrust Corporation. All rights reserved. Other trademarks identified on this page are owned by their respective owners. BeyondTrust Corporation is not a chartered bank or trust company, or depository institution. It is not authorized to accept deposits or trust accounts and is not licensed or regulated by any state or federal banking authority.

Prefers reduced motion setting detected. Animations will now be reduced as a result.