:PROPERTIES: :ID: 22d031b5-ff8e-46df-a306-0ca30ab7358b :END: #+TITLE: Presentation Leads #+Author: Yann Esposito #+Date: [2022-06-30] - tags :: - source :: * Presentation I joined Cisco in 2016. I first worked with Guillaume on CTIA, we created the first mechanism for the IROH-Int. The idea of the product pushed by Craig and Dean was close to what is described by hunters.ai. - Work mostly on Authentication and Authorization for IROH - Most of my work is a component named IROH-Auth - IROH take care of login by supporting different kind of Identity providers - And this is also an OAuth2 Provider - and this also an OpenID Connect Provider as such an Identity Provider Historically: - Worked on CTIA - Worked on the iroh-collect, with inspect (detect observables) - Worked on IROH-integration, observe, and later respond - Started to work on generic component; add structured logs (we still have today) - Added the authentication layer; decision to use JWT - Integrated with SAML from AMP - then OpenID Connect with threatgrid - Helped Orbital use IROH-Auth - Worked on Integration with different Cisco Identity Providers - Worked closely with SSE with Matthieu, we were forced to add a few holes in the system - Integration with Ping Federate (named the IDB / Identity Broker) - Helped many internal teams to integrate with IROH mostly using OAuth2 - *SecureX* time; use the same API to provide another frontend - Worked a lot on SXSO IdP Migration - Then added support for Device Grant Clients - More recently worked with Posture (now Device Insight) Current work: Improve the user experience during login with Dar and Jillian. The next change should be visible to everyone using SecureX and Threat Response. Tenant Switching.