Identity and Access

AI adoption starts with a strong IDAM foundation.

Agents and AI tools are putting identity back at the centre of adoption.

Non-human identities outnumber humans

Industry research (CyberArk, KPMG, Palo Alto Networks) puts the ratio of machine and agent identities to human identities between roughly 80:1 and 100:1 in a typical enterprise — and rising.

00×

Breaches involving AI agents by 2028

Gartner projects that by 2028 around a quarter of enterprise breaches will be traced to AI agent abuse, from both external and internal actors.

0%

Still define privileged users as human-only

CyberArk’s Identity Security Landscape found 88% of organisations still treat only humans as privileged users, even as machine identities hold sensitive access at higher rates.

0%

Enterprise apps with task-specific agents by end of 2026

Gartner expects about 40% of enterprise applications to embed task-specific AI agents by the end of 2026, expanding the identity surface that must be governed.

0%

[01 AI Adoption and IDAM]

LegacyIDAM layersare holding backAI Adoption

[02 Legacy vs Built for AI]

Same identity investment. Unfinished control plane.

Most estates were built for people signing in. Agents need a different bargain — same platforms, finished control.

Know who is acting

Legacy

  • Person signs in
  • Service account has a name
  • Agent is invisible, or every agent shares one key
  • Logs cannot say which agent acted for whom

Built for AI

  • Agent is its own identity
  • Has an owner and an end date
  • Bound to this person and this purpose

[04 Method]

How
we work

A repeatable engagement model grounded in the PTMM and an Identity-adapted assessment outline.

01

Diagnose

Structured assessment of current state (maturity, risk, technical debt, organisational readiness), with explicit evaluation of authentication strength, adaptive capability, and authorisation model maturity. Grounded in the PTMM and the Identity-adapted assessment outline.

02

Define

Target-state architecture and prioritised roadmap aligned to business risk and value. Authentication and authorisation design decisions are treated as first-order architectural concerns.

03

Deliver

Implementation or uplift with clear ownership of outcomes, not just configuration.

04

Operate & Evolve

Transition to managed services or internal capability with continuous improvement mechanisms (including ongoing tuning of adaptive policies and policy-as-code governance).

[05 Engagement pathways]

Our IDAM Experience

[Consulting]
IDAM readiness assessment for AI

Comprehensive review of the current state, with a focus on non-human coverage and readiness for agents.

Structured view of authentication, authorisation, and non-human coverage
Explicit readiness for agents as first-class identities
Prioritised roadmap as the primary output
Diagnose

[06 Partnerships]

Partnership with the best-in-class.

Kodez is one of the leading Okta and Auth0 partners in Australia — certified to design, build, and run identity at scale.

Okta
Auth0
Okta
Auth0

Service Delivery
Specialized

Certified Partner

[08]

We'd love to hear from you. Get in touch

Level 3, 162 Collins Street
Melbourne VIC 3000
Australia

How can we help?

We'll get back to you within one business day.

By submitting, you agree to our Privacy Policy.