
Identity & Access ManagementAI Security
Permiso Platform
ISPM and ITDR for human, non-human, and AI identities across cloud, SaaS, and on-prem environments.
Permiso Platform Overview
What it does
The Permiso Platform is an identity security platform combining Identity Security Posture Management (ISPM) with Identity Threat Detection and Response (ITDR) for human, non-human, and AI identities across cloud, SaaS, and on-premises environments. Its distinctive mechanism is the Universal Identity Graph, which connects each identity to the credentials it owns, the machines it creates, and the agents it runs, and tracks every action those identities take in real time as they cross authentication boundaries.
How it works
The platform ingests control-plane activity through read-only API integrations with identity providers, cloud service providers, and SaaS applications, then stitches that activity into the Universal Identity Graph, following users across authentication boundaries. A detection engine built by the P0 Labs research team applies 1,500+ detection signals to surface account takeover, credential compromise, and insider threat, while posture modules flag multifactor authentication (MFA) gaps, stale and zombie accounts, and overly permissive policies. The Risk Score Engine scores each identity on behavior, likelihood, and impact, and agent monitoring attributes tool calls and Model Context Protocol (MCP) invocations to the identity behind them.
Credentials and traction
SOC 2 Type I certified. Permiso won the 2026 SC Award for Best Threat Detection Technology, its second consecutive year of SC Awards recognition after winning Most Promising Early-Stage Startup in 2025. Customers include Nutanix, Autodesk, ACV Auctions, Coupa, and Modern Health, and the platform targets enterprise security and identity teams running multi-cloud and SaaS estates.
Key Capabilities
mapped to solution categoriesIntegrates identity data, activity, relationships, and configuration from directories, identity providers, IGA, PAM, cloud platforms, and SaaS applications, including applications not yet connected to any IAM tool, into one correlated inventory of every human and non-human actor with its accounts and entitlements, the single view on which posture assessment and analytics run.
Flags identity-object hygiene problems: dormant and orphaned accounts, accounts without MFA enrolled, shared or generic accounts, weak or non-expiring passwords, and risky discretionary permissions, so they are cleaned up before attackers use them. Configuration of the identity providers and access policies themselves is covered by IAM Policy and Configuration Assessment.
Discovers service accounts, OAuth apps, API keys, JWT tokens, and Kubernetes service accounts alongside human accounts, mapping the complete identity population.
Compares granted permissions against observed usage to identify entitlements that exceed what an identity actually needs, candidates for right-sizing or revocation.
Surfaces indicators of identity compromise from posture and activity telemetry (anomalous login sequences, MFA fatigue patterns, impossible travel, sudden privilege changes) and routes them for response, so posture findings and active-attack signals sit in one risk view. This is the posture-layer signal: real-time detection, response playbooks, and recovery are the Identity Threat Detection and Response (ITDR) niche vocabulary, and EDR identity detection covers endpoint-side behavior.
Scores each identity by aggregated risk signals (excessive permissions, stale credentials, anomalous access patterns, MFA gaps) to prioritize remediation effort.
Compliance
certificationsIntegrations
compatible toolsImplementation & support
Info last updated on September 7, 2026
Buyers
See how Permiso Platform fits your stack
Add Permiso Platform to your shortlist and unlock all evaluation tools.
Vendors
Is this your product?
Claim your profile to connect with the teams looking for your solutions.