Kevin Sapp

Co-Founder and CTO

About Author

Kevin Sapp is the co-founder and CTO of Aembit and an entrepreneur and technology executive with extensive experience developing and commercializing new products for large, high-growth markets. He previously co-founded New Edge Labs, which was acquired by Netskope in 2019. Throughout his career, Kevin has focused on enterprise security, cloud, and mobile computing. He is also an inventor on several patents in information systems security. Outside of work, he is an avid sailor.

Expertise

  • Enterprise security
  • Identity and access management
  • Non-human identity
  • Workload identity and access management
  • AI agent identity and access
  • Zero trust
  • Cloud computing
  • Mobile computing
  • Security architecture
  • Security product development
  • Authentication and authorization
  • Enterprise software
  • Technology strategy

Education

  • Bachelor’s degree in computer and information science, University of Maryland Global Campus

Certifications

  • AWS Certified Cloud Practitioner
  • International Certificate for Operators of Pleasure Craft, Royal Yachting Association
  • RYA Day Skipper – Sailing, Royal Yachting Association

Selected Patents

  • Policy-Based Network Packet Inspection and Mediation
  • Mid-link Server Having a Plurality of Access Resource Servers for Policy Control
  • Policy-Controlled Authentication for Internet Communication
  • Zero Trust and Zero Knowledge Application Access System
  • Systems and Methods for Providing and Managing Distributed Enclaves

Articles by Kevin Sapp

An early IETF draft hints at how identity infrastructure may evolve once autonomous software starts acting inside enterprise environments.
The global research and advisory firm is pushing the industry toward a more practical model for securing AI agents and non-human access.
Pipeline breaches keep repeating because static credentials persist. Identity federation replaces stored secrets with runtime tokens.
Gartner’s 2025 PAM Magic Quadrant names machines a core market concern. That shift changes the map for NHI security and workload IAM.
The MCP authorization spec sets a new standard for securing non-human AI agents – with lessons for anyone building autonomous, scalable systems.
Instead of running static workflows, agents are building the system for you, deciding how to connect tools and take action on the fly.
From dynamic workloads to API-driven systems, managing non-human identities requires a new approach to security at scale.
This step-by-step resource helps you deploy workloads, configure policies, and explore Aembit’s approach to securing non-human identities.
The identity layer’s most insidious threat is now setting its sights on a different group of targets. Here’s how to be ready.
As the demand for API access continues to grow, so does the urgency of adopting more secure authentication methods.
Explore how the specifications impact secrets management and workload identity and access management practices across distributed environments.
This compliance serves as a validation of our operational and security controls, offering you greater confidence in our Workload IAM services.