Episode 40

Published on:

21st Feb 2024

Trends in Identity and Access Management with Simon Moffatt

Hello Razorwire listeners! It's your host Jim here, and in today's fascinating episode, we sit down with cybersecurity veteran Simon Moffatt. With two decades under his belt in the dynamic field of identity and access management, Simon unpacks the complexities of cyber protection in our modern age. From the evolution of technology to the murky waters of liability and insurance in cybersecurity, Simon's insights shed light on the challenges and trends we face. 

As the founder of The Cyber Hut, Simon taps into his experience with giants like Oracle and ForgeRock and his startup stints to guide organisations through the labyrinth of cybersecurity strategies. 

We talk about the seismic shifts in industry practices, highlighting the advent of cloud technologies and "as a service" models and the post pandemic rise of remote work. We explore the forefront of passwordless technology, the challenges of IoT security, and the critical nature of defence in depth strategies.

You’ll hear about a significant legal battle that a sizable organisation won against its insurers, highlighting the larger uncertainties in cyber liability insurance. Find out about Simon's predictions for the industry's trajectory, combined with his first hand accounts of working in various sectors of the tech world, to provide a rare glimpse into the past, present and future of cybersecurity.

Key Talking Points:

1. The Transformation of Cyber Liability Insurance: Discover why a major organisation's legal victory signals a critical juncture for cyber liability coverage and what this means for businesses navigating today's risk landscape.

2. Passwordless Futures and Biometric Booms: Tune in as Simon forecasts the rise of biometric authentication over the next few years, discussing how behaviour tracking could redefine threat detection and response.

3. Cloud Confusion and Shared Responsibilities: Uncover the intricacies of cloud service models and how shifting boundaries have resulted in complex challenges for CISOs and CIOs in pinpointing control and ownership amidst a virtual landscape.

Ready for a deep dive into cybersecurity's evolving realm with Simon Moffatt? Join us on Razorwire to unravel the enigma of cyber protection in our interconnected world.

“Cyber's a top priority, maybe even more so than it was 3 or 4 years ago. By that, I mean people are quite familiar with protecting their own identities, or PII protection. People are aware of hackers, you know, the bad guys, nation state threats."

Simon Moffatt

Listen to this episode on your favourite podcasting platform: https://razorwire.captivate.fm/listen

In this episode, we covered the following topics:

  • Concerns and challenges surrounding data protection liability
  • The problems of uncertainty due to the constantly changing landscape of cyber liability insurance
  • Incomplete picture of cybersecurity with third party intelligence companies
  • The limitations of third party intelligence companies in the cybersecurity space 
  • Trends in identity and access management 
  • Introduction to The Cyber Hut, a business focused on tracking cyber trends and aiding organisations in navigating the cybersecurity landscape
  • The shift towards cloud technology, remote work and changes in software delivery
  • The blurred lines of responsibility in cloud services are explored, raising questions about data ownership and control
  • The need for agility, modularity and preparedness in systems following the pandemic


Simon Moffatt

Simon is a recognised expert in the fields of digital identity, access and information security who assists organisations in the venture capitalist, public, private and government sectors with the selection, use and design of products and strategies to help keep information assets secure. He is also the Founder of The Cyber Hut - a global cyber security industry analysis and advisory practice based out of the UK.

With over 20 years’ experience in a broad array of security design and architecture domains, Simon has a deep specialism within identity and access management. Simon is a published author, contributor to standards at NIST and the IETF and is a regular keynote speaker. He holds several accolades including Certified Information Systems Security Professional (CISSP), Certified Ethical Hacker (CEH), Certified Cloud Security Professional (CCSP) and is a Fellow of the Chartered Institute of Information Security (F.CIIS). He also holds a Post Graduate Diploma from the GCHQ certified Information Security Group at Royal Holloway, University of London.

Resources Mentioned



The Cyber Hut 

Sun Microsystems 


Google Cloud 

SaaS applications 


Sarbanes-Oxley (SOX) 

PCI DSS (Payment Card Industry Data Security Standard) 

IoT (Internet of Things) 

GDPR (General Data Protection Regulation)

CCPA (California Consumer Privacy Act)

Other episodes you'll enjoy

Breaking Into Cybersecurity: Essential Tips for Newbies


What To Do If You Are A Victim Cybercrime: The Anatomy Of High Profile Incident


Connect with your host James Rees

Hello, I am James Rees, the host of the Razorwire podcast. This podcast brings you insights from leading cyber security professionals who dedicate their careers to making a hacker’s life that much more difficult.

Our guests bring you experience and expertise from a range of disciplines and from different career stages. We give you various viewpoints for improving your cyber security, from seasoned professionals with years of experience, triumphs, and lessons learned under their belt, to those in relatively early stages of their careers, offering fresh eyes and new insights.

With new episodes every other Wednesday, Razorwire is a podcast for cyber security enthusiasts and professionals, providing insights, news, and fresh ideas on protecting your organisation from hackers.

For more information about us or if you have any questions you would like us to discuss, email podcast@razorthorn.com.

If you need consultation, visit www.razorthorn.com, We give our clients a personalised, integrated approach to information security, driven by our belief in quality and discretion.

LinkedIn: Razorthorn Security

Youtube: Razorthorn Security

Twitter:   @RazorThornLTD

Website: www.razorthorn.com

Loved this episode? Leave us a review and rating here

All rights reserved. © Razorthorn Security LTD 2023

This podcast uses the following third-party services for analysis:

Chartable - https://chartable.com/privacy
Show artwork for Razorwire Cyber Security

About the Podcast

Razorwire Cyber Security
The Podcast For Cyber Security Professionals
Welcome to the Razorwire podcast where we share information, best practices and up to date news in cyber security and infosec.

Our mission is to help you become a better cyber security professional and support our vision of creating an agile community of cyber professionals who are stronger than ever before.

This show is first and foremost about sharing knowledge and benefiting from collaboration. We bring you the advice and wisdom of both your host, James Rees, and his guests to build on the strength and depth of your own knowledge and experience.

Your host James Rees is an information security veteran with over 25 years of industry experience and is the founder of Razorthorn Security, delivering expert security consultancy and testing services on a day to day basis to some of the largest and most influential organisations in the world, including many in the Fortune 500.

The Razorwire podcast is for cyber security professionals looking for new ideas and the drive to improve their response to cyber security events. Through collaboration, we can strengthen our defences.

For more information about us or if you have any questions you would like us to discuss on the podcast email podcast@razorthorn.com or head to www.razorthorn.com

About your host

Profile picture for Matt Cheney

Matt Cheney

Matt is a podcast & content creation coach with over 17 years of professional experience. He has delivered content for global media platforms, brands, broadcasters, and apps, producing EMMY award-winning music features, BAFTA nominated animations, and iTunes chart-topping podcasts, among other projects. He has edited & mixed over 650 hrs of TV, recorded 10,000 hrs of narration and podcasts, and produced 10,000's of media assets for brands such as BBC, SKY, Nike, O2, Audi, RCA, Amazon, Google.
As the former Head of Audio for Vice Media UK and Rapid Pictures Post Production in London, Matt is well-versed in media and technology, as well as in leading and training creative teams.