
Specops' Darren James on continuous trust in an AI world
Loading player...
Specops Software’s Darren James explains why identity checks alone no longer stop determined attackers.
Traditional approaches to access security no longer hold up in hybrid, cloud-first environments – and AI is widening the gap.
In this episode, host Kevin Smith speaks to Darren James, senior product manager at Specops Software, about the distance between how organisations secure access and how people actually work.
Businesses have poured money into identity-based controls – passwords, multi-factor authentication, zero-trust initiatives – yet breaches keep rising, because attackers increasingly exploit trusted identities rather than technical vulnerabilities. An intruder holding legitimate credentials looks like an authorised user and can operate undetected.
That points to a shift in security thinking: verifying the user’s identity is no longer enough. Access decisions must also account for the device being used, its security posture and whether trust should hold for the length of a session.
Working through a real-world breach, James shows how a single compromised account escalates into a serious incident, and where a more contextual approach to access control could break the attack chain before damage is done. The discussion reframes zero trust as an ongoing process rather than a one-time authentication event, and makes the case for layered verification.
He also looks ahead to automated attacks and the rise of non-human identities – service accounts and AI agents among them. As organisations lean harder on autonomous systems, identity-centric models will face pressures they were never designed for.
The executive takeaway is this: the cybersecurity battleground is shifting from identity verification to continuous trust. In an era of AI-driven threats and hybrid work, organisations need to stop asking “who is accessing the system?” and start asking, continuously, “should this access still be trusted?”
Don’t miss the discussion.
Traditional approaches to access security no longer hold up in hybrid, cloud-first environments – and AI is widening the gap.
In this episode, host Kevin Smith speaks to Darren James, senior product manager at Specops Software, about the distance between how organisations secure access and how people actually work.
Businesses have poured money into identity-based controls – passwords, multi-factor authentication, zero-trust initiatives – yet breaches keep rising, because attackers increasingly exploit trusted identities rather than technical vulnerabilities. An intruder holding legitimate credentials looks like an authorised user and can operate undetected.
That points to a shift in security thinking: verifying the user’s identity is no longer enough. Access decisions must also account for the device being used, its security posture and whether trust should hold for the length of a session.
Working through a real-world breach, James shows how a single compromised account escalates into a serious incident, and where a more contextual approach to access control could break the attack chain before damage is done. The discussion reframes zero trust as an ongoing process rather than a one-time authentication event, and makes the case for layered verification.
He also looks ahead to automated attacks and the rise of non-human identities – service accounts and AI agents among them. As organisations lean harder on autonomous systems, identity-centric models will face pressures they were never designed for.
The executive takeaway is this: the cybersecurity battleground is shifting from identity verification to continuous trust. In an era of AI-driven threats and hybrid work, organisations need to stop asking “who is accessing the system?” and start asking, continuously, “should this access still be trusted?”
Don’t miss the discussion.





