Back to Case Studies

Why Zero Standing Privileges Matter for AI, NHIs, and Humans

A conversation with Sameer Patwardhan, Cloud & AI Infrastructure Leader and former Forbes technology leader, on why traditional privileged access stopped fitting modern environments, what changed with Britive, and why agentic AI makes runtime access even more important.

EXPLOREEXPLORE

The Shift

Cloud multiplied systems and identities

The Gap

Standing privilege stopped fitting

The Control

Access created only when work requires it

THE PROBLEMTHE PROBLEM

THE SOLUTIONTHE SOLUTION

OUTCOMESOUTCOMES

The Access Model Was Built for a Slower World

Traditional privileged access started with a simple assumption: create accounts, grant privileges, then manage those privileges carefully. Sameer Patwardhan saw that model become harder to defend as cloud environments expanded, identities multiplied, and access became more dynamic. 

“The old model is just not efficient. It is the wrong shape for the environment we are running in.”

[ Sameer Patwardhan ]

Cloud & AI Infrastructure Leader

The problem was no longer just administration. Standing accounts, always-on roles, and long-lived credentials created privileged access that remained available even when nobody was actively using it. 

“Most access tools accept that accounts and privileges exist and then try to manage them more carefully.”

[ Sameer Patwardhan ]

Cloud & AI Infrastructure Leader

For Sameer, the better question became more fundamental: why should privilege exist at all when there is no authorized work to perform? 

“Privilege should not exist unless there is work to do. The moment the work is done, it should not exist anymore.”

[ Sameer Patwardhan ]

Cloud & AI Infrastructure Leader

Key issues include: 

Standing access outlives the work: Privileges can remain assigned long after the task that required them is complete. 

Cloud multiplies the access surface: More platforms, environments, and identities create more privileged relationships for teams to govern. 

Long-lived credentials remain reusable: A credential that continues to exist can continue to be used, regardless of whether the original work has ended. 

Different systems create fragmented operations: Teams can end up managing separate tools, access processes, and audit trails across environments. 

AI raises the stakes again: Agentic AI can act faster and more frequently than humans, making persistent privilege even harder to justify. 

A Different Starting Point for Privileged Access

What stood out to Sameer about Britive was not another layer for managing standing access. It was the premise underneath the architecture: privilege should be created when authorized work requires it and removed when that work is finished. 

Access Follows the Work 
An identity requests the access required for a task. Policy determines whether that access is allowed. Privilege exists for the access window and is removed through check-in, expiry, or the applicable revocation path. 

One Model Across Environments 
The same access principle can govern work across cloud, SaaS, databases, servers, and other supported environments instead of forcing teams to accept a different privileged-access model everywhere. 

Privilege Does Not Need to Stand Between Tasks 
The identity can continue to exist while the privileged assignment or temporary access created for the completed work is removed. 

One Platform for a Changing Identity Landscape 
The same core access model can govern agentic AI, NHIs, and humans instead of treating every new identity type as a separate access problem. 

“Once we saw it working, it changed how we thought about the whole access surface, not just one environment.”

[ Sameer Patwardhan ]

Cloud & AI Infrastructure Leader

During his time at Forbes, Sameer saw the operational value of applying a more consistent access lifecycle across environments rather than continuing to accept long-standing permissions as a normal cost of doing business. 

During his time at Forbes, Sameer saw the operational value of applying a more consistent access lifecycle across environments rather than continuing to accept long-standing permissions as a normal cost of doing business. 

“What disappeared from our environment was all these long-standing privileges, the always-on roles, and the long-lived credentials we used to accept as the cost of doing business.”

[ Sameer Patwardhan ]

Cloud & AI Infrastructure Leader

What Changes When Privilege Follows the Work

Less Privilege Left Standing: Access can be removed when the authorized work is complete instead of remaining available indefinitely.

A Consistent Access Lifecycle: Teams can apply the same basic model of request, authorization, temporary access, and removal across supported systems.

Less Operational Fragmentation: A common platform reduces the need to stitch together separate access processes and audit trails for every environment.

A Foundation for More Identity Types: The model can extend across agentic AI, NHIs, and humans without creating a separate access architecture for each.

A Better Starting Point for AI: AI agents can be treated as identities that receive the access required for authorized work rather than broad privileges they retain between tasks.

Velocity Without Persistent Privilege: Teams can enable legitimate work without accepting standing privileged access as the price of moving quickly.

“With Britive, you bridge the gap between velocity and security while keeping the persistent privileged footprint at absolute zero.”

[ Sameer Patwardhan ]

Cloud & AI Infrastructure Leader

What Comes Next?

Agentic AI makes the access question more urgent, not fundamentally different. If organizations would not accept unnecessary standing privilege for engineers, Sameer argues they should not build it into the access model for AI agents either. The opportunity is to establish the architecture now, before persistent agent access becomes another problem teams have to unwind later.