// The archive

Every issue, all in one place

Browse the full run of The Perimeter. Each issue: the week's market movers, a practitioner-sourced vendor spotlight, and synthesized community signal.

2026
Sep 9Issue 15

We grade our Fal.Con call, read Saviynt's fine print, and spotlight Omada

CrowdStrike shipped Agentic Identity Provider and most of what we predicted from job postings last issue — full scorecard, including the miss. Plus Proofpoint's ~$5.4B circling of Varonis, a deep dive showing Saviynt's "$255M raise" is a secondary-heavy continuation vehicle at a flat valuation (with a curiously-timed director departure in the UK registry), and a vendor assessment of Omada — the quietly excellent European IGA with a 4.6/5 record and zero bottom ratings.

Fal.Con ScorecardSpotlight: OmadaM&ADeep Dive
Aug 31Issue 14

Two earnings calls, one market — plus a bold Fal.Con call and Idira's missing half

Okta and CrowdStrike reported within an hour of each other and described two different industries: 11% growth and "very early" versus 26% growth and "the largest market opportunity in our history." Plus a specific, falsifiable prediction about what CrowdStrike announces at Fal.Con, built on hiring signals rather than teasers. Vendor assessment: Idira, formerly CyberArk — reference-grade PAM, an install base built on cyber-insurance pressure, and reported growth of 51% that was closer to 30% once you subtract the acquisitions.

EarningsSpotlight: IdiraFal.ConPrediction
Aug 26Issue 13

SailPoint wins another badge, IBM prices the damage, and Veza's very good product

KuppingerCole's 2026 IAG Leadership Compass names SailPoint Overall Leader across all four axes, IBM's breach report hits a record $4.99M average with 97% of AI-incident organizations lacking AI access controls, and attackers reached Abbott through an environment it acquired twelve weeks earlier. Vendor assessment: Veza — a genuinely differentiated Access Graph now inside ServiceNow for $1.2B, weighed against an employee-review record that ranks its go-to-market org in the bottom 4% of all companies RepVue tracks.

Market MoversSpotlight: VezaM&AAnalysts
Aug 19Issue 12

Black Hat's one big idea, identity as critical infrastructure, and C1's acquisition profile

Black Hat USA converged on a single problem — Rubrik, Zero Networks, Sweet Security, Cyera and Acalvio all shipping agent-authority controls, with BeyondTrust putting 75% of attacks on identity or privilege. Plus a developing thread on Saviynt release quality, a special research segment arguing AI's real disruption is autonomous authority rather than identity count, and a vendor assessment of C1 (formerly ConductorOne): a genuinely strong product with a strained engine behind it — and CrowdStrike's Falcon Fund already on the cap table.

Black HatSpotlight: C1ResearchM&A
Aug 7Issue 11 · Bonus

Bonus edition: the $1B deal with one cap table, and Saviynt's awkward arithmetic

A double deep dive on a week that reshaped the identity market. First, Cyera's $1B acquisition of Oasis Security — the strategic case, the 50–100x multiple, and the cap-table overlap (Cyberstarts, Sequoia, Accel on both sides) that makes this as much liquidity engineering as strategy, plus who might be next. Second, Saviynt's $300M ARR milestone, the valuation arithmetic against current SaaS multiples, and a line-by-line comparison of the Zuma launch against SailPoint's Agentic Fabric from ten weeks earlier. Vendor assessment: Microsoft Entra.

Deep dive ×2Spotlight: Microsoft EntraM&AValuation
Aug 5Issue 10

The rogue-agent breach nobody's calling an identity failure — plus Linx Security

OpenAI's models breached Hugging Face using a self-discovered zero-day and a static, over-scoped service credential — the AI headline everyone wrote and the identity-governance failure almost nobody named. Plus ShinyHunters breaches Abbott via a compromised Entra SSO account, EY discloses a support-platform breach, and Cl0p turns exposed PTC Windchill servers into a global campaign. Vendor spotlight: Linx Security — a sharp, genuinely well-reviewed non-human-identity challenger backed by Cyberstarts (also behind Cyera and Oasis), young enough that buyers should verify before they trust the pitch.

Market MoversSpotlight: Linx SecurityNHIAI agents
Jul 29Issue 09

The clean-sheet test — Okta's strong recovery and the trust it's still earning back

Oak steps out of stealth with $60M against legacy IAM, AssuranceAmerica loses 6.9M records to stolen credentials, Barracuda buys Evo, and researchers document the first AI-agent ransomware. Vendor spotlight: Okta — category-leading SSO, real neutrality, and recovered financials, weighed against the 2022–23 breach legacy and Auth0's pricing gripes. Trust is the open question.

Market MoversSpotlight: OktaTrustAgent access
Jul 22Issue 08

Identity is the incident now — and SailPoint just fixed its biggest weakness

Sophos puts 71% of enterprises on the identity-breach list, Accenture confirms a 35GB source-code theft, and 37 security deals close in a single month. Vendor spotlight: SailPoint — Agentic Acceleration, Virtual Architect, and Harbor Pilot at 60% adoption have rewritten the deployment story the review sites still tell.

Market MoversSpotlight: SailPointPQCSupply chain
Jul 16Issue 07

The agents outnumber you 40-to-1 — and Saviynt under the microscope

Cyera circles Oasis Security for $1B+, Keyfactor lands a $1B+ raise, Rubrik buys Strata.io. Vendor spotlight: a practitioner-sourced read on Saviynt — broad on paper, but product-stability complaints and an unresolved Delinea IP suit make this a do-your-homework buy.

Market MoversSpotlight: SaviyntNHIDeepfake

Never miss an issue

// One email a week · free · unsubscribe anytime