Deep hands-on expertise in Identity and Access Management architecture and implementation across human, workload, service, and AI agent identities, including strong knowledge of IdPs, federation, SSO, OAuth 2.0, OpenID Connect, SAML, SCIM, SPIFFE/SPIRE, workload identity, service accounts, API authentication/authorization, secrets management, least privilege, and policy-based access control. Define and operationalize a Non-Human Identity (NHI) strategy for agentic workflows (agents, tools, service principals, service accounts, bots), including identity issuance and binding to code/runtime, credential rotation and revocation, secrets isolation, step-up and delegated authorization, just-in-time access, and continuous verification to prevent identity sprawl and privilege drift.