Follow Us On:

Manage and Control Non-Human Identities

Manage and Control Non-Human Identities

This whitepaper, developed jointly by KPMG and Nexis, examines one of the most urgent and underestimated challenges in enterprise security: governing Non-Human Identities (NHIs).

AI agents, bots, MCP servers, and automated scripts already outnumber human users in many organizations – by a factor of 25 to 50. Yet most IAM programs were built for people. As agentic AI accelerates adoption, the governance gap widens.

The whitepaper analyzes concrete threat scenarios and translates established IAM concepts into practical guidance for the NHI era.

What you can expect:

  • Why existing access concepts fall short when autonomous agents can self-assign permissions
  • How to extend Joiner-Mover-Leaver processes to AI agents and non-human accounts
  • What fine-grained SoD controls, context-based access management, and adaptive PAM look like for NHIs
  • How platforms like NEXIS support the visibility, clustering, and risk-based monitoring that NHI governance requires
  • A clear framework for aligning NHI governance with DORA, NIS2, and internal compliance requirements

Language: German

Download the Report Now