Lalit Choda, founder of the NHI Management Group, recently hosted discussions on non-human identities (NHIs) highlighting the security challenges they present. Participants, including the author and Kirby Fitch from SailPoint, discussed the industry's inconsistency in NHI terminology and the urgent need for standardized governance. The panel underscored the importance of distinguishing between credentials and identities, noting that most organizations struggle to understand who or what can access specific resources, leading to reactive and fragmented governance. Insights from Vincenzo Iozzo and Michael Silva illustrated real-world threats, including a significant increase in credential-based attacks and a demonstration of exploiting NHIs through stolen AWS credentials. The discussions emphasized the necessity of comprehensive identity security involving posture, governance, and orchestration to mitigate risks associated with both human and non-human identities.