Product Manager, Google  —  Identity & Access Management

I help decide who gets access to what.

Building the systems that decide who gets access to what — and proving they can be trusted.

20+ years in identity San Francisco Writer & speaker
Abhi Yadav
Available to speak
About

A career spent making trust work.

My love for cybersecurity began during idle and harmless teenage years, at a time when the Internet was starting to come into its own. What a delight it was to use simple parlor tricks to show my friends that I could “guess” their passwords.

The turning point was the Mars Pathfinder mission in 1997. I still remember the scratchy tones of the modem running through the night as I downloaded pictures from Mars. That, I think, is when I fell in love with technology.

My first job was at an enterprising startup that developed a novel way to solve access-control problems. Our success came not just from the quality of what we shipped, but from the close friendships that let us rely on each other and perform. In time we were acquired, and I found myself at Sun Microsystems — one of the best things that ever happened to me.

After Sun and Oracle, a few of us took a chance: we missed working with customers, so we joined a small team out to grow its identity business in Europe. I founded its international arms and spent those years on the road, building country by country until we’d become the largest identity-services shop around. A private equity acquisition followed, I made the leap into product, and then one day Google came knocking.

Google has been the longest and most defining chapter of my career — the one that shaped me most as a product leader. Working across Cloud, Ads, and the frameworks now shaping how AI is built, alongside some of the sharpest minds in the field: engineers, architects, and product leaders who’ve stretched my thinking and shared their vision for identity.

I try to pass some of it along here, sprinkled with my own opinions.

I believe in the Feynman technique — to learn by teaching others.
  • Now
    Product Manager  · Google
    Workforce IAM & Secure AI Framework · planet-scale identity for people and AI agents
  • Product Manager  · Google
    Identity verification and trust-based customer experiences
  • Product Manager  · Google
    Cloud IAM · ML-powered recommendations & least-privilege policies at scale
  • Product Leadership  · Identity & Access
    IDaaS, privileged access, and managed identity services
  • Engineer → Architect  · Sun Microsystems
    Role management, access governance, identity standards
  • Start
    Early career  · Access-control startup
    A novel approach to access control — later acquired
Expertise

Depth across the identity stack.

From the cryptographic plumbing of access control to the product strategy of identity at planet scale.

01

Identity & Access Management

Core IAM architecture — authentication, authorization, lifecycle, and governance across the enterprise.

02

Cloud Security & IAM

Least-privilege at cloud scale, including Google Cloud IAM recommendations and policy intelligence.

03

ML & Security Analytics

The machine-learning models that turn access logs into actionable, risk-aware recommendations.

04

Privileged Access (PIM/PAM)

Securing elevated accounts and the unique challenges they pose beyond traditional IAM.

05

Identity-as-a-Service

The evolution of IDaaS — from hosting to full-service, orchestrated, managed identity.

06

Trust Frameworks & Proofing

Identity proofing, assurance levels, and the trust frameworks that make federation work.

07

Consumer Identity (CIAM)

Customer engagement and innovation in consumer identity — including blockchain identity.

08

Access Governance

Access intelligence and governance as a standard feature, not an afterthought.

Speaking

On stage & on the record.

I love public speaking — conferences, panels, and user groups across the identity community.

Upcoming

Internet Identity Workshop XXVI

3–5 April · Mountain View
Event details
Featured Talk — Identity & Access
Conference Talk

Featured Talk — Identity & Access

Featured Talk — Cloud & Trust
Conference Talk

Featured Talk — Cloud & Trust

Featured Talk — The Future of Identity
Conference Talk

Featured Talk — The Future of Identity

Selected talks
Gartner IAM Summit
Las Vegas
Improving customer engagement with innovations in consumer identity systems, including blockchain identity.
Event page
IBM InterConnect
Las Vegas
Digital Customer Engagement in an Untrusted World.
Event page
RSA Conference
San Francisco
On the topic of Identity Assurance.
Past talk
Oracle OpenWorld
San Francisco
A modern approach to an identity-based security operations center.
Past talk
European Identity Conference
Munich
Access Intelligence: The New Standard Feature of Access Governance?
Event page
Cupertino IAM User Group
Cupertino
Recent developments of trust frameworks and identity proofing.
Event page
San Francisco IAM User Group
San Francisco
Identity & access community meetup.
Past talk
Sun CEC Conference
Las Vegas
Achieving Access Control Compliance.
Past talk
Sun Americas Conference
USA
Understanding Roles and Identity Management.
Past talk
Immersion Week
USA
Best Practices for Role Management.
Past talk
Writing

Essays, research & field notes.

Articles published here and on Google Cloud, Oracle and beyond — collected in one place.

Under the hood: The security analytics that drive IAM recommendations on Google Cloud

Under the hood: The security analytics that drive IAM recommendations on Google Cloud

IAM Recommender helps security professionals enforce the principle of least privilege by identifying and removing unwanted access to Google Cloud Platform resources. A look under the hood at the security analytics — and the machine-learning models — that make those recommendations possible.

Google Cloud Blog Read
Achieve least privilege with less effort

Achieve least privilege with less effort

As cloud adoption grows, we're seeing exponential growth in cloud resources — and in the permissions granted to humans and workloads to access them. That introduces real risk. Here's how IAM Recommender helps you reach least privilege without the manual grind.

Google Cloud Blog Read
Exploring the machine learning models behind Cloud IAM Recommender

Exploring the machine learning models behind Cloud IAM Recommender

Unlike many recommendation engines that rely on policy-based rules, some Google Cloud recommenders use machine learning. This piece explores the models behind the Cloud IAM Recommender and how they help fine-tune your environment.

Google Cloud Blog Read
PIM, PAM, or Perish?

PIM, PAM, or Perish?

OneWorld Identity's Cameron D'Ambrosi sat down with Shawn Keve and me to discuss the unique challenges of Privileged Identity Management compared to traditional IAM — aired on the August edition of his “The State of Identity” podcast.

The State of Identity · Podcast Listen
The Next Generation IDaaS Solutions

The Next Generation IDaaS Solutions

The third and final post in a series on the five growing expectations driving transformation in the Identity-as-a-Service industry — what I’ve called “next-generation IDaaS” — and how vendors are rising to meet them.

Identity Matters Read
Managed Identity Services: the next generation of IDaaS

Managed Identity Services: the next generation of IDaaS

The “Service” in Identity as a Service means very different things to different companies. To us it means full service — a stark contrast to firms where “Service” only means they host and maintain the identity platform for you.

Identity Matters Read
Identity, The Wall, and the Future of CyberSecurity

Identity, The Wall, and the Future of CyberSecurity

Perimeters are dissolving. As the old “wall” around the enterprise gives way, identity becomes the new control plane — and the future of cybersecurity is increasingly a story about who, not where.

Identity Matters Read
Putting the “Service” in Identity as a Service (IDaaS)

Putting the “Service” in Identity as a Service (IDaaS)

The first in a series unpacking what “Service” really should mean in Identity as a Service — and why the distinction matters for organizations choosing how to run identity.

Identity Matters Read
WAVE: A New Approach to Access Control

WAVE: A New Approach to Access Control

A technical white paper published via Oracle examining a modern, wave-based approach to access control. Opens the original PDF.

Oracle · Technical White Paper View PDF