Hybrid Identity Protection Podcast
Semperis' biweekly show for defenders of hybrid Active Directory and Entra ID environments, hosted by 15-time Microsoft MVP Sean Deuby.
- Host
- Sean Deuby
- Publisher
- Semperis · Vendor
- Pillar
- Workforce Identity, Privileged & Governance
- Level
- Practitioner
- Format
- Interview
- Cadence
- Every two weeks, 25 to 60 min
- Status
- Active, last episode 2026-09-29
- Since
- 2020
- Episodes
- 104
What it is
The Hybrid Identity Protection (HIP) Podcast is presented by Semperis and hosted by Sean Deuby, a 15-time Microsoft MVP and Active Directory security specialist. Running since April 2020 on a steady two-week cadence, it is "for cybersecurity pros charged with defending hybrid identity environments": Active Directory, Entra ID, identity resilience, and recovery from ransomware.
Who it suits
Security and infrastructure teams who still run domain controllers, and CISOs responsible for recovering identity systems after an attack. Pairs with our ITDR guide and attack techniques.
Editor note
Dependable and practical, and one of very few shows to treat Active Directory recovery as its own discipline. Recent episodes broaden into CISO leadership, OT security, and the human layer, which is useful context but less identity-specific. Vendor-produced; episodes rarely pitch Semperis products directly.
Where to start
- The Real-World State of ITDR with Brian Desmond2022-09-08 · 29 min · Learner · Identity threats and ITDR
Introduces identity threat detection and response from the view of hands-on identity teams and where organizations struggle most.
- Getting Rid of ADFS featuring Sander Berkouwer2025-07-21 · 29 min · Practitioner · SAML and enterprise federation
Why organizations are retiring AD FS as their on-premises SAML federation server, and the practical steps for moving that SSO to Microsoft Entra ID.
- One Account, $1.4 Billion: Inside the Merck NotPetya Breach with Lance Peterman, CIDPRO2025-05-29 · 17 min · Practitioner · Privileged access management
A firsthand account of how NotPetya spread through Merck via one overprivileged service account, which identity weaknesses were exploited, and how recovery went.
Also in our learning paths
- Agentic AI and the Authorization Gap No One Closed with Geoffrey Mattson, CEO of SecureAuth2026-06-09 · 35 min · Architect · Non-human and AI agent identity
Why AI agents need each action authorized in real time, why few MCP servers implement the OAuth the MCP spec requires, and how to roll agents out from zero privileges.
- Securing Non-Human Identities in the Age of Agentic AI with Sarah Cecchetti, Director of Product Management at Semperis2026-04-28 · 43 min · Architect · Non-human and AI agent identity
Where authentication and authorization standards fall short for non-human identities and AI agents, and which emerging frameworks and external guardrails aim to close the gap.
- How a Single Breach Can Turn into a Full Compromise with Tim Beasley, Senior Incident Response Consultant at Semperis2026-02-17 · 40 min · Architect · Identity threats and ITDR
Explains how attackers escalate through identity infrastructure after initial access, and why identity defense needs a recovery-first plan as well as prevention.
- Microsoft DART: In the Trenches with Shiva P2024-11-22 · 39 min · Practitioner · Identity threats and ITDR
A Microsoft incident responder walks the attack kill chain from initial access to ransomware extortion and shares ways to reduce identity risk.
- Tracking Tier 0 Attack Paths with Ran Harel2023-03-01 · 27 min · Architect · Privileged access management · Identity threats and ITDR
What Tier 0 assets are, how attack paths through Active Directory lead to them, and how to manage those paths in hybrid AD environments.
Last verified 2026-09-30 against the show's feed, recent episode notes, and the publisher's own pages. Status and last-episode date update weekly from the feed.
Hybrid Identity Protection Podcast is produced by Semperis. Listed on the same terms as independent shows.
Independent, community-driven analysis. No vendor sponsorship. Compiled from public research and community input and verified on a best-effort basis, so details may be incomplete or out of date. Scores are opinions, not advice. Trademarks belong to their owners; mention does not imply affiliation or endorsement. See the full disclaimer, or send corrections to [email protected].
Related on Start with Identity
- GlossaryIdentity Resilience
The ability to keep authenticating and authorising legitimate users, and to recover the identity system itself, when the identity provider or directory is degra
- GlossaryAccount Takeover (ATO)
When an attacker gains control of a legitimate account, often via stolen credentials, phishing, or session theft. A leading cause of breaches and fraud. The dis
- GlossaryAttack Path
A chain of individually legitimate permissions and relationships that together let a low-privileged identity reach a high-privileged one. Each link is a valid c
- PodcastDelinea
Delinea's ethical hacker Joseph Carson on privileged access, ransomware, and security culture. 126 episodes from 2020 to February 2025.
- PodcastEntra.Chat
A weekly show for Microsoft Entra administrators, with deployment stories from practitioners and the engineers who build the product. Hosted by a Microsoft empl
- BlogOkta buys Permiso Security to put ITDR inside the identity provider
Okta signed a definitive agreement to acquire Permiso Security, reportedly for just under 200 million dollars in an almost all-cash deal. It moves detection of