A fixed-scope, four-week engagement that finds the service accounts, API keys, workload identities and AI agents your IAM programme can’t see, gives every one of them an owner and a risk tier, and leaves you with a 90-day plan your own team can run.
Who it’s for
Security and identity leaders in regulated or audit-exposed organisations (financial services, insurance, healthcare, telecoms, public sector) who suspect they have far more machine identities than human ones and can’t currently answer the question “who owns this account?”
What you get
1. Inventory. A consolidated register of non-human identities across Active Directory, Entra ID, your cloud platforms (AWS, Azure, GCP), CI/CD pipelines, secrets stores and key SaaS integrations, including AI agent and Copilot connections.
2. Ownership and risk tiering. Every identity assigned an accountable owner, classified by privilege and exposure, with the unowned and over-privileged ones flagged for immediate action.
3. Gap assessment. Where your current lifecycle, certification, secrets management and privileged access controls stop short of non-human identities, measured against Zero Trust and your regulatory expectations.
4. A 90-day plan. Quick wins in the first 30 days (kill or rotate the unowned, fix expiry), governance and lifecycle in the next 60, and a roadmap for workload identity federation and AI agent governance beyond that. Written so your own team can execute it.
5. Board-level summary. A one-page view of exposure, ownership coverage and remediation progress that your CISO can take to the risk committee.
How it runs
Week 1: scoping, access and discovery across your directories, clouds and pipelines. Week 2: ownership workshops with platform, engineering and application teams. Week 3: risk tiering, control gap analysis, quick-win identification. Week 4: the 90-day plan, the board summary and a handover session.
Delivered remotely with on-site workshops where they help. No tooling purchase required; where a discovery tool would pay for itself, the plan says so.
Why United Kloud
The assessment is led by Shailesh Kejadiwal, an identity architect with 30 years in technology and a decade designing IAM and CIAM platforms for HSBC, Nationwide, NatWest, Dyson, Virgin Media O2 and the NHS. He has reviewed enterprise secrets platforms at group scale, published a framework for governing AI agents as privileged identities, and presented on Zero Trust identity at ABH 2026.