Identity Blast Radius: Professor Kai London on Containing the Next Banking Breach
By the Swiss Times Business Desk Professor Kai London — Founder & CEO, Quantum AI Systems Security. Credit: professorkailondon.com When a bank suffers a serious breach, the post-mortem almost always lands on the same word: identity. “In modern financial breaches, the decisive failure is rarely exotic malware,” says Professor Kai London , a senior CISO who advises financial institutions. “It is an identity — human or machine — that logged in when it should have been challenged, and could then reach far more than it ever should have.” His prescription centres on a single, board-friendly idea: manage the blast radius. “You will not prevent every intrusion. But you can decide, in advance, how far any single compromised identity is allowed to spread. In banking, that decision is the difference between an incident and a catastrophe.” The crown-jewel problem Banks run on a dense web of identities: employees, contractors, customers, service accounts, APIs and, increasingly, AI agents...