
Palo Alto Networks Launches Idera Identity Platform
Sign In
TL;DR
- Palo Alto Networks announces Idera, a new identity security platform combining privileged access management and identity security, following the company's acquisition of CyberArk.
- The platform addresses the next inflection point in cybersecurity: the proliferation of AI agents and non-human identities that will flood enterprise infrastructure within 3-5 years, all requiring unified identity governance.
- Idera becomes Palo Alto's third major platform alongside Strata (network security) and Cortex (cloud security), reflecting identity's elevation to a foundational security pillar rather than a side category.
- The platform aims to solve the fragmentation problem where organizations currently take 48 hours to two weeks to build identity graphs during incidents due to data scattered across IAM, PAM, and SaaS systems.
- Sunny Singh joins as General Manager and President of Idera from Oracle, emphasizing the platform's promise to deliver integration as a built-in capability rather than leaving customers to stitch together disparate solutions.
The Evolution of Cybersecurity Platformization
Palo Alto Networks CEO Nikesh Arora traces the company's eight-year transformation from a firewall vendor to a comprehensive security platform provider. He explains how the cybersecurity industry has matured from customers stitching together point solutions to vendors delivering integrated platforms. The company identified identity as the next major inflection point in cybersecurity, particularly as AI agents proliferate across enterprise environments. This realization led to the strategic acquisition of CyberArk and the development of a unified identity security platform. Arora emphasizes that 90% of cybersecurity attacks originate from credential theft or hijacking, yet most organizations take 48 hours to two weeks to build an identity graph during incident response due to fragmented data across IAM providers, privileged access systems, and SaaS applications.
AI Agents and the Identity Challenge
The presentation addresses the imminent explosion of AI agents in enterprise infrastructure, with predictions that every employee will use multiple agents acting on their behalf within three to five years. These agents will operate using human credentials but lack human judgment to recognize suspicious activity. The challenge extends beyond personal agents to non-human identities created by systems integrators and automation platforms. Arora notes that the traditional segmentation of identity into privileged access management (PAM), identity and access management (IAM), and non-human identity (NHI) categories is insufficient for this new reality. Organizations need unified visibility to answer fundamental questions: who did it, how they did it, when they did it, where they are, and how to terminate malicious identities immediately.
Introducing Idera: A New Platform Direction
Sunny Singh, newly appointed General Manager and President of Idera, announces the brand as Palo Alto Networks' third major security platform alongside Strata (network security) and Cortex (cloud security). Idera represents a fundamental shift from treating privileged access as an isolated problem to integrating it with broader identity security in a platform model. The announcement emphasizes that attackers are no longer breaking in but logging on with legitimate-looking credentials that are abused before detection. Singh criticizes the industry pattern of building innovative features and leaving integration challenges to customers, resulting in disparate data sources, disconnected workflows, and manual integration overhead. Idera promises to deliver integration value as a built-in capability rather than a bolt-on afterthought, reducing complexity and accelerating time to value for customers facing an evolving threat landscape.
Chapters
0:00 - Opening: The Agent Future0:16 - Industry Evolution and Platformization
4:00 - Inflection Points in Cybersecurity
6:01 - Identity as the Next Inflection
8:12 - Cybersecurity Fundamentals
10:33 - AI and the Agent Explosion
14:45 - Identity Evolution Requirements
17:01 - Introducing Idera
18:55 - Sunny Singh Introduction
19:32 - Platform Direction and Promise
Key Quotes
0:00 "We're going to have millions of agents floating around in the IT infrastructure. All these agents need to be identified. All these agents need to be understood. All their data needs to be brought together."2:40 "We came to the realization about three or four years ago when at Palo Alto, we had reached approximately 70 products, I realized even we had a hard time keeping it together in terms of how to go deliver, deploy, and make those products successful for our customers."
5:15 "We are able to provide real-time capability and protect our customers in real-time against bad actors with a median time to detect and remediate at Palo Alto, one minute."
6:35 "Almost 90% of cybersecurity attacks originate from somebody. Credential thefts, credential hijacking, somebody posing as somebody else."
11:37 "If I told you that the largest technology companies in the world are going to spend $1 trillion in the next 12 months on something, whatever it is, we have to pay attention."
21:06 "Attackers are not breaking in. They're actually logging on."
FAQ
Why did Palo Alto Networks acquire CyberArk and create the Idera platform?
Palo Alto identified identity as the next major inflection point in cybersecurity, particularly with the coming proliferation of AI agents. The company needed to platformize identity security the same way it had done with network security (Strata) and cloud security (Cortex). CyberArk's privileged access management capabilities combined with Palo Alto's platform approach enables unified identity governance across human and non-human identities.
How will Idera address the challenge of AI agents in enterprise environments?
Idera is being built to handle the anticipated explosion of AI agents that will act on behalf of employees using their credentials. The platform aims to provide unified visibility and control across all identities—human, privileged, and non-human—with the ability to analyze behavior, detect anomalies, and terminate malicious identities in real-time. This addresses the fundamental problem that agents lack human judgment to recognize suspicious activity.
What makes Idera different from traditional identity and privileged access solutions?
Idera breaks down the traditional segmentation of identity into separate categories (PAM, IAM, NHI, ISPM, IGA) and delivers integration as a built-in platform capability rather than leaving customers to manually stitch together disparate solutions. It consolidates identity data that currently sits fragmented across IAM providers, privileged access systems, and SaaS applications, reducing the time to build identity graphs from 48 hours-2 weeks to real-time analysis.

