Security Stack Logo
Permiso Platform logo

Identity & Access ManagementAI Security

Permiso Platform

ISPM and ITDR for human, non-human, and AI identities across cloud, SaaS, and on-prem environments.

Permiso Platform Overview

What it does

The Permiso Platform is an identity security platform combining Identity Security Posture Management (ISPM) with Identity Threat Detection and Response (ITDR) for human, non-human, and AI identities across cloud, SaaS, and on-premises environments. Its distinctive mechanism is the Universal Identity Graph, which connects each identity to the credentials it owns, the machines it creates, and the agents it runs, and tracks every action those identities take in real time as they cross authentication boundaries.

How it works

The platform ingests control-plane activity through read-only API integrations with identity providers, cloud service providers, and SaaS applications, then stitches that activity into the Universal Identity Graph, following users across authentication boundaries. A detection engine built by the P0 Labs research team applies 1,500+ detection signals to surface account takeover, credential compromise, and insider threat, while posture modules flag multifactor authentication (MFA) gaps, stale and zombie accounts, and overly permissive policies. The Risk Score Engine scores each identity on behavior, likelihood, and impact, and agent monitoring attributes tool calls and Model Context Protocol (MCP) invocations to the identity behind them.

Credentials and traction

SOC 2 Type I certified. Permiso won the 2026 SC Award for Best Threat Detection Technology, its second consecutive year of SC Awards recognition after winning Most Promising Early-Stage Startup in 2025. Customers include Nutanix, Autodesk, ACV Auctions, Coupa, and Modern Health, and the platform targets enterprise security and identity teams running multi-cloud and SaaS estates.

Key Capabilities

mapped to solution categories
Identity Security Posture Management (ISPM)

Integrates identity data, activity, relationships, and configuration from directories, identity providers, IGA, PAM, cloud platforms, and SaaS applications, including applications not yet connected to any IAM tool, into one correlated inventory of every human and non-human actor with its accounts and entitlements, the single view on which posture assessment and analytics run.

Flags identity-object hygiene problems: dormant and orphaned accounts, accounts without MFA enrolled, shared or generic accounts, weak or non-expiring passwords, and risky discretionary permissions, so they are cleaned up before attackers use them. Configuration of the identity providers and access policies themselves is covered by IAM Policy and Configuration Assessment.

Discovers service accounts, OAuth apps, API keys, JWT tokens, and Kubernetes service accounts alongside human accounts, mapping the complete identity population.

Compares granted permissions against observed usage to identify entitlements that exceed what an identity actually needs, candidates for right-sizing or revocation.

Surfaces indicators of identity compromise from posture and activity telemetry (anomalous login sequences, MFA fatigue patterns, impossible travel, sudden privilege changes) and routes them for response, so posture findings and active-attack signals sit in one risk view. This is the posture-layer signal: real-time detection, response playbooks, and recovery are the Identity Threat Detection and Response (ITDR) niche vocabulary, and EDR identity detection covers endpoint-side behavior.

Scores each identity by aggregated risk signals (excessive permissions, stale credentials, anomalous access patterns, MFA gaps) to prioritize remediation effort.

Compliance

certifications
SOC 2 Type I

Integrations

compatible tools
1PasswordAnthropicApollo.ioAsanaAutomoxAWSBambooHRBitbucketCalendlyCisco MerakiCloudflareConfluenceDatabricksDeelDocuSignDropboxDuo SecurityDynatraceGitHubGitLabGoogle Cloud PlatformGoogle WorkspaceGrafanaHubSpotJFrog ArtifactoryJiraMailchimpMicrosoft 365Microsoft AzureMicrosoft Entra IDMiroMonday.comNotionOktaOpenAIPing IdentityPostmanSalesforceSemgrepSentryServiceNowSlackSmartsheetSnowflakeTableauTerraformTrelloVantaWebexXeroZendeskZohoZoom

Implementation & support

Deployment model
SaaS

Info last updated on September 7, 2026

Buyers

See how Permiso Platform fits your stack

Add Permiso Platform to your shortlist and unlock all evaluation tools.

Vendors

Is this your product?

Claim your profile to connect with the teams looking for your solutions.

Security Stack Logo

The curated research platform for enterprise cybersecurity solutions.

Resources

All product and company names, logos, and brands are property of their respective owners and are used on this website for identification purposes only. Security Stack does not endorse any vendor, product, or service listed, and makes no warranties, express or implied, as to the accuracy or completeness of this content, including any warranties of merchantability or fitness for a particular purpose.

© 2026 Security Stack. All rights reserved.