Powered by OpenAIRE graph
Found an issue? Give us feedback
image/svg+xml art designer at PLoS, modified by Wikipedia users Nina, Beao, JakobVoss, and AnonMoos Open Access logo, converted into svg, designed by PLoS. This version with transparent background. http://commons.wikimedia.org/wiki/File:Open_Access_logo_PLoS_white.svg art designer at PLoS, modified by Wikipedia users Nina, Beao, JakobVoss, and AnonMoos http://www.plos.org/ ZENODOarrow_drop_down
image/svg+xml art designer at PLoS, modified by Wikipedia users Nina, Beao, JakobVoss, and AnonMoos Open Access logo, converted into svg, designed by PLoS. This version with transparent background. http://commons.wikimedia.org/wiki/File:Open_Access_logo_PLoS_white.svg art designer at PLoS, modified by Wikipedia users Nina, Beao, JakobVoss, and AnonMoos http://www.plos.org/
ZENODO
Article . 2025
License: CC BY
Data sources: ZENODO
ZENODO
Article . 2025
License: CC BY
Data sources: Datacite
ZENODO
Article . 2025
License: CC BY
Data sources: Datacite
versions View all 2 versions
addClaim

Thin Sovereign Identity Baseline For Boards, Regulators And Real Life

Authors: Deep InfoSec;

Thin Sovereign Identity Baseline For Boards, Regulators And Real Life

Abstract

Abstract Identity and access management in 2025 sits in a strange place. Tooling has never looked more mature on paper, yet real incidents still begin with the same pattern: a small set of messy, long-lived identities that nobody really owns. This paper introduces a thin Sovereign Identity Baseline (SIB) designed for boards, regulators and high assurance sectors. It reduces identity posture to three board-legible metrics: Identity Blast Radius Index (IBRI), Credential Hygiene Score (CHS) and Identity Recovery Time (IRT). The SIB model comes from multi-year field work with financial institutions, healthcare systems, cloud-native providers and public authorities in Europe and Africa. We draw on more than one million anonymised identity events and configuration observations, plus targeted vulnerability assessments, including a container security dataset with 2 545 vulnerabilities where 52.5 percent were rated High and 47.4 percent Medium. The sample is practice-driven, not statistically random. SIB is grounded in messy reality, not lab conditions. While this convenience-based sampling (finance and healthcare heavy) limits broad statistical generalisation, it maximises qualitative validity for high assurance sectors. We describe the three metrics in detail, provide explicit formulas and a worked example, and show how SIB can sit on top of existing IAM stacks and regulations. SIB is intentionally regulation-agnostic, so it can translate across NIS2, DORA, PCI, local banking rules, African supervisory expectations and Pan-African standards such as PASC and IGS-C. The goal is simple: give decision-makers three numbers they can ask for in five minutes, and force identity programmes to prove they actually reduce blast radius, improve hygiene and shorten recovery time.

  • BIP!
    Impact byBIP!
    selected citations
    These citations are derived from selected sources.
    This is an alternative to the "Influence" indicator, which also reflects the overall/total impact of an article in the research community at large, based on the underlying citation network (diachronically).
    0
    popularity
    This indicator reflects the "current" impact/attention (the "hype") of an article in the research community at large, based on the underlying citation network.
    Average
    influence
    This indicator reflects the overall/total impact of an article in the research community at large, based on the underlying citation network (diachronically).
    Average
    impulse
    This indicator reflects the initial momentum of an article directly after its publication, based on the underlying citation network.
    Average
Powered by OpenAIRE graph
Found an issue? Give us feedback
selected citations
These citations are derived from selected sources.
This is an alternative to the "Influence" indicator, which also reflects the overall/total impact of an article in the research community at large, based on the underlying citation network (diachronically).
BIP!Citations provided by BIP!
popularity
This indicator reflects the "current" impact/attention (the "hype") of an article in the research community at large, based on the underlying citation network.
BIP!Popularity provided by BIP!
influence
This indicator reflects the overall/total impact of an article in the research community at large, based on the underlying citation network (diachronically).
BIP!Influence provided by BIP!
impulse
This indicator reflects the initial momentum of an article directly after its publication, based on the underlying citation network.
BIP!Impulse provided by BIP!
0
Average
Average
Average