Combined Hyper-Extensible Extremely-Secured Zero-Trust CIAM-PAM architecture

Fuente: arXiv
Saved in:
Bibliographic Details
Main Authors: Aggarwal, Shivom, Mehra, Shourya, Sathar, Safeer
Format: Preprint
Published: 2025
Subjects:
Online Access:
Tags: Add Tag
No Tags, Be the first to tag this record!
_version_ 1866929657330270208
author Aggarwal, Shivom
Mehra, Shourya
Sathar, Safeer
author_facet Aggarwal, Shivom
Mehra, Shourya
Sathar, Safeer
contents Customer Identity and Access Management (CIAM) systems play a pivotal role in securing enterprise infrastructures. However, the complexity of implementing these systems requires careful architectural planning to ensure positive Return on Investment (RoI) and avoid costly delays. The proliferation of Active Persistent cyber threats, coupled with advancements in AI, cloud computing, and geographically distributed customer populations, necessitates a paradigm shift towards adaptive and zero-trust security frameworks. This paper introduces the Combined Hyper-Extensible Extremely-Secured Zero-Trust (CHEZ) CIAM-PAM architecture, designed specifically for large-scale enterprises. The CHEZ PL CIAM-PAM framework addresses critical security gaps by integrating federated identity management (private and public identities), password-less authentication, adaptive multi-factor authentication (MFA), microservice-based PEP (Policy Entitlement Point), multi-layer RBAC (Role Based Access Control) and multi-level trust systems. This future-proof design also includes end-to-end data encryption, and seamless integration with state-of-the-art AI-based threat detection systems, while ensuring compliance with stringent regulatory standards.
format Preprint
id arxiv_https___arxiv_org_abs_2501_01732
institution arXiv
publishDate 2025
record_format arxiv
spellingShingle Combined Hyper-Extensible Extremely-Secured Zero-Trust CIAM-PAM architecture
Aggarwal, Shivom
Mehra, Shourya
Sathar, Safeer
Cryptography and Security
Artificial Intelligence
Networking and Internet Architecture
Customer Identity and Access Management (CIAM) systems play a pivotal role in securing enterprise infrastructures. However, the complexity of implementing these systems requires careful architectural planning to ensure positive Return on Investment (RoI) and avoid costly delays. The proliferation of Active Persistent cyber threats, coupled with advancements in AI, cloud computing, and geographically distributed customer populations, necessitates a paradigm shift towards adaptive and zero-trust security frameworks. This paper introduces the Combined Hyper-Extensible Extremely-Secured Zero-Trust (CHEZ) CIAM-PAM architecture, designed specifically for large-scale enterprises. The CHEZ PL CIAM-PAM framework addresses critical security gaps by integrating federated identity management (private and public identities), password-less authentication, adaptive multi-factor authentication (MFA), microservice-based PEP (Policy Entitlement Point), multi-layer RBAC (Role Based Access Control) and multi-level trust systems. This future-proof design also includes end-to-end data encryption, and seamless integration with state-of-the-art AI-based threat detection systems, while ensuring compliance with stringent regulatory standards.
title Combined Hyper-Extensible Extremely-Secured Zero-Trust CIAM-PAM architecture
topic Cryptography and Security
Artificial Intelligence
Networking and Internet Architecture
url https://arxiv.org/abs/2501.01732