Demonstrated expertise identifying and mitigating identity threats such as adversary-in-the-middle phishing, credential and token theft, session hijacking, MFA bypass, password attacks, consent phishing, OAuth abuse, privilege escalation, and nonhuman identity compromise. Threat-model identity architectures and remediate attack paths involving credentials, tokens, sessions, federation trusts, privileged roles, delegated permissions, and nonhuman identities.