Ori Litman

Product Manager @ Frontegg | AI Agent Identity · NHI · ITDR | Active Directory · Entra ID · Zero Trust | IDF Intelligence Directorate

Tel Aviv District, Israel

About

I build identity security products that stop breaches before they start. Every role in my career has been in identity. At PlainID, I owned an authorization policy platform for enterprise IAM, working directly with the business buyers who defined access policies without writing code. At build.security, I took the opposite angle: a developer-facing OPA-based authorization platform, joining as the first PM in an 8-person startup, taking it from MVP to GA, and watching it get acquired by Elastic in under eight months. At Semperis I ran two distinct products back to back. Purple Knight is a free community tool for AD security assessment used by thousands of organizations. I drove adoption, community engagement, and go-to-market from scratch. DSP (Directory Services Protector) is the company's flagship enterprise ITDR platform, where I led four major releases, launched a Linux-based real-time analytics engine, built a 100+ rule security detection framework across AD Change and AD Logon events, and shipped service account discovery and governance for non-human identity. These two products taught me both ends of the identity market: one is go-to-market and developer experience; the other is deep technical complexity and Fortune 500 deployment. Now at Frontegg I'm tackling what comes next: securing AI agents. As AI agents become first-class actors in SaaS, calling APIs, accessing data, and making autonomous decisions, the identity and authorization layer becomes critical. I'm building the product that makes AI agents secure, observable, and trustworthy. What ties everything together is one skill: translating a human need into technology that solves it. I learned it as a communications officer in the IDF, where I spent 13 years connecting operational requirements on the ground to the systems that had to support them. The need has shifted from mission-critical ops to identity security. The core work is the same. Outside work: Really like cooking , and outnumbered by two cats. Working in identity security, AI agent authorization, or Zero Trust? Let's connect.

Experience

  • Product Manager at Frontegg
    Apr 2026 - Present · 4 mos

    Identity infrastructure for B2B SaaS is a solved problem for human users. For AI agents, it is not. That is the gap Frontegg is closing. I own Agent.co , Frontegg's MCP-based identity platform for AI agents. My work is defining how AI agents authenticate, authorize, and operate with appropriate permissions inside SaaS products, bringing the same rigor applied to human IAM to the machine-identity layer. Focus areas: agent identity lifecycle, runtime authorization policy, observability and audit for agentic workflows, developer experience for PLG adoption.

  • Product Manager at Semperis
    Apr 2021 - May 2026 · 5 yrs 2 mos

    Purple Knight (2021 – 2023) Purple Knight is a free community tool for Active Directory security assessment, used by thousands of organizations worldwide. It is Semperis' most recognized brand asset in the identity security market. I owned product, go-to-market, and community from the ground up: adoption strategy, feedback loop design, content and community engagement, and partnership with the security research team on new assessment indicators. This role was not classic enterprise PM. It was product plus marketing plus community management, all in parallel. The constraint was developer experience and trust, not feature depth. DSP — Directory Services Protector (2023 – 2026) DSP is Semperis' flagship ITDR platform, deployed at Fortune 500 organizations for real-time Active Directory and Entra ID threat detection and response. Shipped four major releases in the DSP 5.x series. Launched the Identity Analytics Server (IAS): a Linux-based real-time analytics engine for high-throughput AD event processing. Built a security detection framework from scratch: 100+ rules across AD Change and AD Logon events, covering lateral movement, privilege escalation, and persistence. Shipped service account discovery and governance: the NHI capability that lets organizations find, classify, and control machine identities in AD. Delivered SIEM integrations, RBAC, compliance reporting, and managed upgrade paths across complex enterprise deployments. Ran complex technical escalations with Fortune 500 security teams.

  • Product Manager at build.security (acquired by Elastic)
    Aug 2020 - Apr 2021 · 9 mos

    Developer-facing audience and technical product: my counterpart to the business-buyer authorization experience I had at PlainID. Between them, I covered both sides of the authorization market. The company was acquired by Elastic approximately eight months after I joined.

  • Product Manager at PlainID - The Authorization Company
    Jul 2018 - May 2020 · 1 yr 11 mos

    This was my first identity product role and it shaped my entire career direction. The domain was authorization, the audience was enterprise business buyers. Counterpoint to build.security, which I joianed next: PlainID was business-facing policy management; build.security was developer-facing OPA. Both sides of the same authorization problem. Different solution - PlainID created policy engine to manage your auto authorization request Build.security use OPA open source

  • Prime Minister's Office at IDF - Israel Defence Forces
    Jul 2016 - Mar 2018 · 1 yr 9 mos

    Senior Communications Officer responsible for communication systems and technology infrastructure at the Prime Minister of Israel's Office. This role sits separately from the IDF timeline: different employer, civilian government context, senior-level technology responsibility.