Cloud Native

How Pomerium addresses IAM challenges with its identity-aware access proxy solutions

0

Pomerium, which specializes in identity-aware access proxy solutions, recently launched Pomerium Zero, a hybrid version that integrates authentication and authorization into every request for secure access. In this episode, Bobby DeSimone, Founder and CEO of Pomerium, delves into the challenges the company addresses, its unique approach to identity and access management (IAM), and the company’s growth and key focuses for the future.

DeSimone tells us that Pomerium was created to tackle inefficiencies in traditional methods like virtual private networks (VPNs) and tunneling-based access, which often fall short in modern cloud environments. Unlike traditional IAM systems, Pomerium focuses on authorization, working with major identity providers to evaluate user and device identities, contextual data, and security posture for access decisions.

While primarily designed for humans, Pomerium is tailored for north-south access and interactive sessions, addressing the growing complexity of authorization in cloud versus private data center environments.

Some of the challenges organizations face include unifying authorization policies across diverse environments and managing legacy systems lacking robust authentication and authorization mechanisms. DeSimone explains how Pomerium addresses these needs by enabling teams to implement consistent access controls, even during employee transitions, by syncing with identity providers and contextual data sources like HR systems. DeSimone emphasizes the importance of immediate access revocation to mitigate risks from rogue or departing employees.

DeSimone discusses Pomerium’s complementary relationship with major cloud providers, enhancing their identity solutions rather than competing with them. DeSimone outlines the company’s growth from an open-source project to a venture-backed entity, driven by innovations like their hybrid offering, Pomerium Zero.

Addressing generative AI’s impact, DeSimone highlights Pomerium’s role in automating policy creation and securing sensitive AI environments, underscoring its commitment to advancing identity security in the evolving tech landscape.

Guest: Bobby DeSimone
Company: Pomerium
Show: Let’s Talk

This summary was written by Emily Nicholls.

Andela and CNCF partner to boost Kubernetes expertise across Africa

Previous article

98% and counting: Java’s dominance in enterprise applications | Scott Sellers, Azul

Next article