Things we know about identity, written down.
01
What the record shows — argued, sourced, and current.
0 pieces
Nothing filed here yet.
02
Longer-form papers on identity risk and the control plane.
1 piece
03
How the platform is built — deep links into the live experience.
3 briefs
Platform
The full platform brief — every identity-security function in one system, from portal to control.
Open briefControl
The security-team brief — total visibility, live sessions, and containment measured in seconds.
Open briefAI security
How identity underpins AI agent governance — Agent Access Management (AAM) on the control plane.
Open brief04
Control-by-control IAM mappings — capability views with coverage ratings and customer responsibilities, not attestation claims.
8 frameworks
Explore every mapping in one place — filter by coverage, read scope notes, jump framework to framework.
Open compliance hubReference version: 2017 TSC (revised points of focus, 2022) · Prepared mid-2026 · Capability mapping, not a compliance attestation
Reference version: ISO/IEC 27001:2022 (incl. Amd 1:2024) · Prepared mid-2026 · Capability mapping, not a compliance attestation
Reference version: NIST CSF 2.0 (Feb 2024) · Prepared mid-2026 · Capability mapping, not a compliance attestation
NIST SP 800-53 Rev 5 (Release 5.2.0) · Prepared mid-2026 · Capability mapping, not a compliance attestation
Reference version: PCI DSS v4.0.1 · Prepared mid-2026 · Capability mapping, not a compliance attestation
Current HIPAA Security Rule (45 CFR Part 164, Subpart C) · Prepared mid-2026 · Capability mapping, not a compliance attestation
Regulation (EU) 2024/1689 · Prepared mid-2026 · Operational capability view, not legal advice or a compliance assertion
CIS Controls v8.1 (June 2024) · Prepared mid-2026 · Capability mapping, not a compliance attestation
Mappings are capability views, not certifications or legal advice. Each page carries its own scope, legend, and customer-responsibility notes.