Decoding the world of cybersecurity

·

Integrity360 expands identity practice after CyberIAM

Integrity360 has combined more than 90 specialists into an expanded identity practice following its CyberIAM acquisition, covering human, machine, privileged, customer, and AI identities.

Integrity360 expands identity practice after CyberIAM
Summary
  • Integrity360 has launched an expanded Identity Services practice following its August acquisition of CyberIAM.
  • More than 90 specialists will cover access management, privileged access, identity governance, customer identity, and AI/non-human identity.
  • The move reflects the growing overlap between traditional IAM, machine identities, and autonomous AI systems.

Integrity360 has consolidated its CyberIAM acquisition into an expanded identity-security practice with more than 90 identity professionals, extending its services beyond workforce access towards machine and AI identities.

The Dublin-headquartered security provider acquired identity specialist CyberIAM in August and is now combining the companies’ capabilities into a single global Identity Services practice.

The operation covers access management, privileged access management, identity governance and administration, customer identity, advisory work, implementation, technical support, and managed identity services.

Integrity360 is also explicitly extending that model to machine and AI identities. Its advisory offering includes an AI identity framework, while the wider practice is intended to manage access across employees, customers, privileged users, applications, machines, and autonomous agents.

The expansion reflects how identity architecture is changing. Traditional IAM programmes were primarily designed around people: an employee joins, receives access according to a role, changes position, and eventually leaves. Service accounts and application identities existed alongside that process but were often managed through separate technical workflows.

Cloud automation already increased the number of non-human identities. Agentic AI adds another category of software identity that can act dynamically, call tools, delegate work, and access data on behalf of users.

That growth creates governance problems when privileges outlive their purpose or ownership becomes unclear. An organisation can have strong multifactor authentication for employees while still exposing sensitive systems through unmanaged service accounts, credentials embedded in automation, or AI agents operating under broad delegated permissions.

Cyber Insider examined this pressure in July, when research from UK identity provider Kocho highlighted how AI agents and non-human identities were expanding enterprise access faster than some organisations could govern it.

Integrity360’s expanded practice is a market response to that convergence. The company is effectively treating human IAM, privileged access, machine credentials, and AI identity as parts of one lifecycle problem rather than discrete technology purchases.

That approach can simplify accountability, but consolidation alone does not resolve the underlying technical challenges. AI agents may change behaviour without changing identity, while machine-to-machine access can operate at a frequency that makes manual review impractical. Governance therefore needs reliable ownership, telemetry, lifecycle automation, and the ability to constrain what an identity can actually do.

The CyberIAM acquisition also adds specialist capacity at a time when identity remains one of the most common routes into enterprise systems. Valid-account abuse can bypass controls designed primarily to identify malware or obviously malicious network traffic, making authentication and privilege decisions central to incident prevention as well as compliance.

Integrity360 is continuing to operate across multiple security domains rather than becoming a pure identity provider. The expanded practice therefore places IAM inside a broader managed-security and consulting portfolio.

The commercial opportunity is clear, but so is the architecture problem beneath it: enterprises now need to maintain accountability across people, software, and autonomous systems, all of which may be capable of reaching the same critical applications and data.

×