{"id":21953,"date":"2025-10-15T14:46:41","date_gmt":"2025-10-15T14:46:41","guid":{"rendered":"http:\/\/localhost\/?p=21953"},"modified":"2025-10-15T14:46:41","modified_gmt":"2025-10-15T14:46:41","slug":"qualys-etm-identity-the-first-true-quantification-of-the-identity-perimeter","status":"publish","type":"post","link":"https:\/\/zero.redgem.net\/?p=21953","title":{"rendered":"Qualys ETM Identity \u2014 The First True Quantification of the Identity Perimeter_QUALYSBLOG:AD525F487579C2E57652A4C2D3E22441"},"content":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;2025-10-15T18:53:47&#8243;,&#8221;description&#8221;:&#8221;Security has always been about controlling _who_ can do _what_ and _where_.\\n\\nIn 2025, that control is mediated entirely by **identity**. When an attacker \u201clogs in,\u201d not \\&#8221;breaks in\\&#8221;, they inherit legitimate permissions, blend into normal telemetry, and pivot across AD, Entra\/Okta, SaaS, and cloud, driving multi-million-dollar losses. Credentials, tokens, and service accounts have become the real perimeter \u2014 and most organizations still can\u2019t measure how exposed that perimeter is.\\n\\n## Identity Has Become the New Attack Surface\\n\\nRecent data quantifies the shift. IBM\u2019s 2024 breach study found stolen or compromised credentials were the slowest to detect and drives an average loss of **$4.88 million**. Hybrid attacks that pivot from AD to Entra ID show that identity compromise now spans on-prem and cloud. Machine and AI identities have exploded where machine: human ratio is ~**50:1** &#8211; yet risks from machine identities remain largely unmanaged. Deepfake and AI-assisted phishing have increased success rates. _The perimeter hasn\u2019t disappeared; it\u2019s multiplied._\\n\\nBuilt inside Qualys ETM,**Qualys ETM Identity** converts identity posture into a single risk language, correlating identities with asset context to close the most exploitable identity risks and operationalize risk reduction. It is the essence of modern risk operations and the first true quantification of the identity perimeter.\\n\\n![](https:\/\/ik.imagekit.io\/qualys\/wp-content\/uploads\/2025\/10\/homepage-2.png)\\n\\n## What Security Leaders Are Struggling With\\n\\n\\u003e \\u003e \\u003e _\\&#8221;_**_Most organizations already deploy IAM, IGA, PAM, ITDR, or AD assessment tools, yet identity-driven breaches persist_** _. \\&#8221;_\\n\\nThere are tools that validate access, not risk; govern provisioning workflows without business or asset context; protect credentials, but not the blast radius; detect anomalies, not root causes; visualize trust paths but lack continuous, correlated insight. These tools add more silos. Each tool solves a piece of the puzzle, but _none measure how identity exposure changes enterprise risk_.\\n\\nSecurity teams face a lack of unified visibility into identity risk, with fragmented telemetry that separates identity and asset risks into silos, ambiguous ownership, and valid login abuse that is difficult to detect. Additionally, posture drift**lacks an audit trail**.\\n\\nIn short, identity security today is where vulnerability management was a decade ago &#8211; rich in controls, poor in context. Even the most mature security programs are flying blind on identity risk. The controls exist, but the telemetry doesn\u2019t connect.\\n\\nAs a result, CISOs can\u2019t answer the simplest risk question: _**Which identities represent measurable loss potential?**_\\n\\nSecurity leaders aren\u2019t short on tools. They\u2019re short on measurable alignment between identity posture and business risk. Until that alignment exists, identity remains **the least quantified and most exploited attack surface** in the enterprise.__\\n\\n## Introducing ETM Identity\\n\\nETM Identity is the identity risk measurement and operationalization layer that makes those controls effective.\\n\\nETM Identity consolidates identity posture into a single risk score that correlates identities (human, service, machine, AI) with asset exposure to prioritize what makes a business impact and operationalize identity risk management for reducing identity-driven attack surface. ETM Identity expresses identity exposure in TruRisk![\u2122](https:\/\/s.w.org\/images\/core\/emoji\/16.0.1\/72&#215;72\/2122.png), correlates posture with threat intel, maps attack paths and domain trust, and then operationalizes risk reduction through closed-loop actions and auto-rescoring.\\n\\n### **Measure Identity Risk**\\n\\nETM Identity discovers **human and machine identities** across AD, Entra ID, IdPs, IDaaS; unifies identity risk signals from Qualys Cloud Agent telemetry, native connectors, and third-party identity tools; and correlates with asset exploitability. ETM Identity turns identity exposure into one actionable per-identity score &#8211; **Identity TruRisk![\u2122](https:\/\/s.w.org\/images\/core\/emoji\/16.0.1\/72&#215;72\/2122.png) , **the same risk language that can be used alongside assets, vulnerabilities, misconfigurations across hosts, applications, cloud &#8211; now directories, identity providers and so on.\\n\\n### **Communicate Identity Risk******\\n\\nETM Identity transforms raw identity findings, identity insights (hygiene gaps, toxic privilege chains, misconfigurations) and attack path analysis (lateral routes, domain\/forest trust maps) into a shared risk score, aligned with enterprise risk operations. **Identity TruRisk** correlates with Asset TruRisk and rolls up to Org TruRisk, communicating board-ready metrics on _what changed, why it mattered, and how much risk was reduced_. ETM Identity creates an identity posture that\u2019s measurable, reportable, and explainable, bridging the gap between security engineers, auditors, and executives with a single risk language.\\n\\n### **Eliminate Identity Risk**\\n\\nMeasurement without elimination is just observation. ETM Identity operationalizes reduction through **risk response orchestration** , translating findings into verified, automated action. It integrates with ServiceNow and Jira to open, track, and close remediation tickets; executes over 200 AD policy controls, patches, and ready-to-run automation scripts; and performs one-click identity-aware actions. Additionally, it automatically validates closure and creates measurable before\/after deltas for TruRisk, ensuring accurate scoring. When patching isn\u2019t feasible, it applies compensating controls \u2014 such as policy hardening, conditional-access updates, or containment \u2014 to reduce exploitability immediately.\\n\\nWith ETM Identity, the enterprise can **measure what matters, communicate it credibly, and eliminate what\u2019s exploitable, all within one platform and one risk language.**\\n\\n* * *\\n\\n* * *\\n\\n## Key Capabilities \u2014 Built to Measure, Communicate, and Eliminate Identity Risk\\n\\n  * **Comprehensive Identity Inventory &#8211; **Discovers human, service, and machine\/non-human identities across AD, Entra ID, Okta and other IdP, IDaaS systems; maps owners, life-cycle state, entitlements, and change history.\\n\\n\\n\\n![](https:\/\/ik.imagekit.io\/qualys\/wp-content\/uploads\/2025\/10\/Inventory-Identity-Users-scaled.png)\\n\\n  * **Unified Identity Risk View &#8211; **Consolidates identity risk signals from Qualys Cloud Agent, native identity connectors, and 3rd-party tools (IGA, PAM, ITDR, AD assessors like BloodHound, SailPoint, etc.), unifying identity posture with endpoint, workload, and network telemetry.\\n\\n\\n\\n![](https:\/\/ik.imagekit.io\/qualys\/wp-content\/uploads\/2025\/10\/Risk-Management-Findings-scaled.png)\\n\\n  * **Attack Path Analysis \\u0026 Domain Trust Map -** Visualize hidden relationships inside AD, see blast radius with toxic privilege combinations, choke points, and rank exploitable paths by TruRisk![\u2122](https:\/\/s.w.org\/images\/core\/emoji\/16.0.1\/72&#215;72\/2122.png). The Domain Trust Map surfaces lateral movement routes across domains\/forests\/tenants to identify easy pivots. \\n\\n\\n\\n![](https:\/\/ik.imagekit.io\/qualys\/wp-content\/uploads\/2025\/10\/Attack-Path-02-scaled.png)\\n\\n  * **Identity Insights &#8211; **Flags weak password policies, plaintext credentials, stale\/admin rights, excessive permissions, risky OAuth consents, and ADCS misconfigurations. Targets the \u201cneed of the hour\u201d: AD hardening, service-account risk (e.g., Kerberoasting), and certificate abuse vectors for high ROI fixes that rapidly shrink the blast radius.\\n\\n\\n\\n![](https:\/\/ik.imagekit.io\/qualys\/wp-content\/uploads\/2025\/10\/image-13.png)\\n\\n  * **Identity TruRisk![\u2122](https:\/\/s.w.org\/images\/core\/emoji\/16.0.1\/72&#215;72\/2122.png) &#8211; **Quantifies per-identity risk from aggregated misconfigurations, excessive privileges, vulnerabilities, and IOR, correlates with asset exposure (internet-facing, vuln\/KEV proximity), and rolls up to Asset TruRisk and Org TruRisk. It provides one risk language for ROC, SecOps, and the executive board.\\n\\n\\n\\n![](https:\/\/ik.imagekit.io\/qualys\/wp-content\/uploads\/2025\/10\/Users-Details-Page-scaled.png)\\n\\n  * **Risk Response Orchestration \u2013** Executes **200+ policy controls for AD** , out-of-the-box automation scripts, patch, mitigate or isolate, automates one-click identity actions (enforce MFA, de-privilege, disable\/quarantine, remove toxic rights). It integrates ITSM workflows for **ServiceNow\/Jira** ticketing with evidence, approvals, and auto-rescore on closure.  \\n\\n  * **Agent Grant, an agentic AI coworker for identity security &#8211; **Built on the Qualys Agentic AI fabric, Agent Grant is a pre-built Cyber Risk Agent specialized for ETM Identity. It continuously maps identities, flags toxic privilege chains and AD to cloud attack paths, and then executes next-best actions, including opening\/advancing ServiceNow or Jira tickets, prompting MFA enforcement, de-privileging, or quarantining risky accounts while capturing evidence and re-scoring Identity TruRisk![\u2122](https:\/\/s.w.org\/images\/core\/emoji\/16.0.1\/72&#215;72\/2122.png). Agent Grant benefits from 25+ threat intel feeds, Cloud Agent telemetry, and CMDB business context inside the Qualys Enterprise TruRisk Management (ETM), which can be tailored (or even cloned) for your workflows via the agent marketplace\/no-code builder.\\n\\n\\n\\n![](https:\/\/ik.imagekit.io\/qualys\/wp-content\/uploads\/2025\/10\/Agentic-Flow-35-1-scaled.png)\\n\\n  * **Compliance Mapping \\u0026 Audit Lineage &#8211; **Maps identity controls\/findings toDISA STIG (AD), CIS M365**,** HIPAA\/PCI\/GDPR, etc. and maintains versioned change history (who\/what\/when\/where). Replaces screenshots with continuous, non-repudiable evidence; speeds audits and proves control effectiveness.  \\n\\n  * **Identity Integrity Monitoring &#8211; **Tracks configuration drift across AD, Entra\/Okta, and SaaS tenants; alerts on high-risk changes to policies, trusts, or entitlements.\\n\\n\\n\\n![](https:\/\/ik.imagekit.io\/qualys\/wp-content\/uploads\/2025\/10\/Integrity-Monitoring-scaled.png)\\n\\n## The Next Evolution of Qualys ETM (and Your Stack)\\n\\nEvery security team says the same thing today: \u201cWe have identity tools, but we still don\u2019t know which identities actually matter.\u201d That\u2019s the heart of the problem ETM Identity was built to solve. ETM Identity is how Qualys extends its risk operations DNA to the identity perimeter, giving you a unified and auditable view of cyber risk across people, machines, and systems.\\n\\nInside the Qualys Enterprise TruRisk![\u2122](https:\/\/s.w.org\/images\/core\/emoji\/16.0.1\/72&#215;72\/2122.png) Management (ETM) platform, ETM Identity becomes another high-fidelity, first-class telemetry source. Qualys ETM unifies asset, vulnerability, configuration, and now identity exposure under TruRisk so ROC teams can make trade-offs with evidence. It correlates identity findings and asset exploitability and then rolls up those findings into the single TruRisk![\u2122](https:\/\/s.w.org\/images\/core\/emoji\/16.0.1\/72&#215;72\/2122.png) score that fuels your Risk Operations Center. It\u2019s also deeply integrated. Qualys Cloud Agent data, threat intelligence from 25+ feeds, business context from CMDB and Business Entities &#8211; all converge to create one view of exposure. Whether the risk stems from a vulnerable workload, a stale admin, or a misconfigured trust path, it\u2019s visible, correlated, and prioritized.\\n\\nPlus, it fits neatly into what you already have. Qualys ETM Identity doesn\u2019t replace your existing IAM, IGA, or PAM stack &#8211; it connects them. ETM Identity ingests from AD, Entra ID, Okta, and third-party tools like PingCastle, BloodHound, and SailPoint, ensuring your existing investments keep working, now with a measurable ROI.\\n\\n![](https:\/\/ik.imagekit.io\/qualys\/wp-content\/uploads\/2025\/10\/business-view-scaled.png)\\n\\n**Why it matters**\\n\\n  * Identity exposure is quantified in the same units as vulnerabilities and misconfigurations, so you can choose the _highest risk-reduction_.\\n  * Instead of chasing alerts, teams follow a repeatable loop, proving reductions in MTTR.\\n  * Non-repudiable change history and consistent roll-ups replace screenshots and spreadsheets.\\n\\n\\n\\nWhen you can measure risk across identities, assets, cloud, and applications in one model, prioritization stops being a guessing game. Because risk isn\u2019t about how many controls you have &#8211; it\u2019s about how well you can measure, communicate, and eliminate what truly drives business impact.\\n\\n_**Ready to see your identity perimeter in measurable terms?** **Explore** **how ETM Identity turns identity exposure into quantifiable insight.**_  \\n\\n\\n* * *\\n\\n**Discover how quickly identity risks can be eliminated from your environment when you have the right insight**.\\n\\nStart Your Free 30-Day Trial\\n\\n* * *&#8221;,&#8221;published&#8221;:&#8221;2025-10-15T14:10:00&#8243;,&#8221;modified&#8221;:&#8221;2025-10-15T14:10:00&#8243;,&#8221;type&#8221;:&#8221;qualysblog&#8221;,&#8221;title&#8221;:&#8221;Qualys ETM Identity \u2014 The First True Quantification of the Identity Perimeter&#8221;,&#8221;source&#8221;:&#8221;&#8221;,&#8221;references&#8221;:&#8221;&#8221;,&#8221;id&#8221;:&#8221;QUALYSBLOG:AD525F487579C2E57652A4C2D3E22441&#8243;,&#8221;bulletinFamily&#8221;:&#8221;blog&#8221;,&#8221;cwe&#8221;:null,&#8221;cvelist&#8221;:[],&#8221;sourceData&#8221;:&#8221;&#8221;,&#8221;sourceHref&#8221;:&#8221;&#8221;,&#8221;cvss&#8221;:{&#8220;score&#8221;:0,&#8221;severity&#8221;:&#8221;NONE&#8221;,&#8221;vector&#8221;:&#8221;NONE&#8221;,&#8221;version&#8221;:&#8221;NONE&#8221;},&#8221;cvss2&#8243;:{},&#8221;cvss3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;,&#8221;cvssV3&#8243;:{&#8220;version&#8221;:&#8221;&#8221;,&#8221;vectorString&#8221;:&#8221;&#8221;,&#8221;baseScore&#8221;:0,&#8221;baseSeverity&#8221;:&#8221;&#8221;,&#8221;attackVector&#8221;:&#8221;&#8221;,&#8221;attackComplexity&#8221;:&#8221;&#8221;,&#8221;privilegesRequired&#8221;:&#8221;&#8221;,&#8221;userInteraction&#8221;:&#8221;&#8221;,&#8221;scope&#8221;:&#8221;&#8221;,&#8221;confidentialityImpact&#8221;:&#8221;&#8221;,&#8221;integrityImpact&#8221;:&#8221;&#8221;,&#8221;availabilityImpact&#8221;:&#8221;&#8221;}},&#8221;href&#8221;:&#8221;https:\/\/blog.qualys.com\/category\/product-tech&#8221;,&#8221;category_name&#8221;:&#8221;News&#8221;,&#8221;post_link&#8221;:&#8221;&#8221;,&#8221;product&#8221;:&#8221;&#8221;,&#8221;version&#8221;:&#8221;&#8221;,&#8221;vendor&#8221;:&#8221;&#8221;,&#8221;ai_description&#8221;:&#8221;&#8221;,&#8221;ai_severity&#8221;:&#8221;&#8221;,&#8221;ai_vendor&#8221;:&#8221;&#8221;,&#8221;ai_product&#8221;:&#8221;&#8221;,&#8221;ai_version&#8221;:&#8221;&#8221;,&#8221;ai_score&#8221;:0}<\/p>\n","protected":false},"excerpt":{"rendered":"<p>{&#8220;lastseen&#8221;:&#8221;2025-10-15T18:53:47&#8243;,&#8221;description&#8221;:&#8221;Security has always been about controlling _who_ can do _what_ and _where_.\\n\\nIn 2025, that control is mediated entirely by **identity**. When an attacker \u201clogs in,\u201d&#8230;<\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"footnotes":""},"categories":[4],"tags":[6,8,12,13,33,120,7,11,5],"class_list":["post-21953","post","type-post","status-publish","format-standard","hentry","category-category_news","tag-cve","tag-cvss","tag-exploit","tag-news","tag-none","tag-qualysblog","tag-security","tag-tapic","tag-vulnerability"],"yoast_head":"<!-- This site is optimized with the Yoast SEO plugin v27.5 - https:\/\/yoast.com\/product\/yoast-seo-wordpress\/ -->\n<title>Qualys ETM Identity \u2014 The First True Quantification of the Identity Perimeter_QUALYSBLOG:AD525F487579C2E57652A4C2D3E22441 - zero redgem<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/zero.redgem.net\/?p=21953\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Qualys ETM Identity \u2014 The First True Quantification of the Identity Perimeter_QUALYSBLOG:AD525F487579C2E57652A4C2D3E22441 - zero redgem\" \/>\n<meta property=\"og:description\" content=\"{&#8220;lastseen&#8221;:&#8221;2025-10-15T18:53:47&#8243;,&#8221;description&#8221;:&#8221;Security has always been about controlling _who_ can do _what_ and _where_.nnIn 2025, that control is mediated entirely by **identity**. When an attacker \u201clogs in,\u201d...\" \/>\n<meta property=\"og:url\" content=\"https:\/\/zero.redgem.net\/?p=21953\" \/>\n<meta property=\"og:site_name\" content=\"zero redgem\" \/>\n<meta property=\"article:published_time\" content=\"2025-10-15T14:46:41+00:00\" \/>\n<meta name=\"author\" content=\"invoker\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"invoker\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"10 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\\\/\\\/schema.org\",\"@graph\":[{\"@type\":\"Article\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=21953#article\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=21953\"},\"author\":{\"name\":\"invoker\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\"},\"headline\":\"Qualys ETM Identity \u2014 The First True Quantification of the Identity Perimeter_QUALYSBLOG:AD525F487579C2E57652A4C2D3E22441\",\"datePublished\":\"2025-10-15T14:46:41+00:00\",\"mainEntityOfPage\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=21953\"},\"wordCount\":1959,\"commentCount\":0,\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"keywords\":[\"CVE\",\"CVSS\",\"exploit\",\"news\",\"NONE\",\"qualysblog\",\"Security\",\"tapic\",\"Vulnerability\"],\"articleSection\":[\"category_news\"],\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"CommentAction\",\"name\":\"Comment\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=21953#respond\"]}]},{\"@type\":\"WebPage\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=21953\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?p=21953\",\"name\":\"Qualys ETM Identity \u2014 The First True Quantification of the Identity Perimeter_QUALYSBLOG:AD525F487579C2E57652A4C2D3E22441 - zero redgem\",\"isPartOf\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\"},\"datePublished\":\"2025-10-15T14:46:41+00:00\",\"breadcrumb\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=21953#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\\\/\\\/zero.redgem.net\\\/?p=21953\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/?p=21953#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\\\/\\\/zero.redgem.net\\\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Qualys ETM Identity \u2014 The First True Quantification of the Identity Perimeter_QUALYSBLOG:AD525F487579C2E57652A4C2D3E22441\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#website\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"name\":\"zero redgem\",\"description\":\"\",\"publisher\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\"},\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\\\/\\\/zero.redgem.net\\\/?s={search_term_string}\"},\"query-input\":{\"@type\":\"PropertyValueSpecification\",\"valueRequired\":true,\"valueName\":\"search_term_string\"}}],\"inLanguage\":\"en-US\"},{\"@type\":\"Organization\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#organization\",\"name\":\"zero redgem\",\"url\":\"https:\\\/\\\/zero.redgem.net\\\/\",\"logo\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\",\"url\":\"\",\"contentUrl\":\"\",\"width\":191,\"height\":188,\"caption\":\"zero redgem\"},\"image\":{\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/logo\\\/image\\\/\"}},{\"@type\":\"Person\",\"@id\":\"https:\\\/\\\/zero.redgem.net\\\/#\\\/schema\\\/person\\\/fbfeae8dfad117ac08a7621bee1a1dca\",\"name\":\"invoker\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"url\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"contentUrl\":\"https:\\\/\\\/secure.gravatar.com\\\/avatar\\\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g\",\"caption\":\"invoker\"},\"sameAs\":[\"https:\\\/\\\/zero.redgem.net\"],\"url\":\"https:\\\/\\\/zero.redgem.net\\\/?author=1\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Qualys ETM Identity \u2014 The First True Quantification of the Identity Perimeter_QUALYSBLOG:AD525F487579C2E57652A4C2D3E22441 - zero redgem","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/zero.redgem.net\/?p=21953","og_locale":"en_US","og_type":"article","og_title":"Qualys ETM Identity \u2014 The First True Quantification of the Identity Perimeter_QUALYSBLOG:AD525F487579C2E57652A4C2D3E22441 - zero redgem","og_description":"{&#8220;lastseen&#8221;:&#8221;2025-10-15T18:53:47&#8243;,&#8221;description&#8221;:&#8221;Security has always been about controlling _who_ can do _what_ and _where_.nnIn 2025, that control is mediated entirely by **identity**. When an attacker \u201clogs in,\u201d...","og_url":"https:\/\/zero.redgem.net\/?p=21953","og_site_name":"zero redgem","article_published_time":"2025-10-15T14:46:41+00:00","author":"invoker","twitter_card":"summary_large_image","twitter_misc":{"Written by":"invoker","Est. reading time":"10 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"Article","@id":"https:\/\/zero.redgem.net\/?p=21953#article","isPartOf":{"@id":"https:\/\/zero.redgem.net\/?p=21953"},"author":{"name":"invoker","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca"},"headline":"Qualys ETM Identity \u2014 The First True Quantification of the Identity Perimeter_QUALYSBLOG:AD525F487579C2E57652A4C2D3E22441","datePublished":"2025-10-15T14:46:41+00:00","mainEntityOfPage":{"@id":"https:\/\/zero.redgem.net\/?p=21953"},"wordCount":1959,"commentCount":0,"publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"keywords":["CVE","CVSS","exploit","news","NONE","qualysblog","Security","tapic","Vulnerability"],"articleSection":["category_news"],"inLanguage":"en-US","potentialAction":[{"@type":"CommentAction","name":"Comment","target":["https:\/\/zero.redgem.net\/?p=21953#respond"]}]},{"@type":"WebPage","@id":"https:\/\/zero.redgem.net\/?p=21953","url":"https:\/\/zero.redgem.net\/?p=21953","name":"Qualys ETM Identity \u2014 The First True Quantification of the Identity Perimeter_QUALYSBLOG:AD525F487579C2E57652A4C2D3E22441 - zero redgem","isPartOf":{"@id":"https:\/\/zero.redgem.net\/#website"},"datePublished":"2025-10-15T14:46:41+00:00","breadcrumb":{"@id":"https:\/\/zero.redgem.net\/?p=21953#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/zero.redgem.net\/?p=21953"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/zero.redgem.net\/?p=21953#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/zero.redgem.net\/"},{"@type":"ListItem","position":2,"name":"Qualys ETM Identity \u2014 The First True Quantification of the Identity Perimeter_QUALYSBLOG:AD525F487579C2E57652A4C2D3E22441"}]},{"@type":"WebSite","@id":"https:\/\/zero.redgem.net\/#website","url":"https:\/\/zero.redgem.net\/","name":"zero redgem","description":"","publisher":{"@id":"https:\/\/zero.redgem.net\/#organization"},"potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/zero.redgem.net\/?s={search_term_string}"},"query-input":{"@type":"PropertyValueSpecification","valueRequired":true,"valueName":"search_term_string"}}],"inLanguage":"en-US"},{"@type":"Organization","@id":"https:\/\/zero.redgem.net\/#organization","name":"zero redgem","url":"https:\/\/zero.redgem.net\/","logo":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/","url":"","contentUrl":"","width":191,"height":188,"caption":"zero redgem"},"image":{"@id":"https:\/\/zero.redgem.net\/#\/schema\/logo\/image\/"}},{"@type":"Person","@id":"https:\/\/zero.redgem.net\/#\/schema\/person\/fbfeae8dfad117ac08a7621bee1a1dca","name":"invoker","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","url":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/f17c01d7338e6932bcde121cf83569393df3374625d25afd62677cfb528f2e3e?s=96&d=mm&r=g","caption":"invoker"},"sameAs":["https:\/\/zero.redgem.net"],"url":"https:\/\/zero.redgem.net\/?author=1"}]}},"_links":{"self":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/21953","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=21953"}],"version-history":[{"count":0,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=\/wp\/v2\/posts\/21953\/revisions"}],"wp:attachment":[{"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=21953"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=21953"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/zero.redgem.net\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=21953"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}