Q1: Why is identity considered Tier 0 infrastructure?
Identity systems are classified as Tier 0 because they represent the primary gateway to all enterprise applications, data, and users. If an IdP is compromised, systemic recovery becomes impossible because downstream workloads cannot validate trusted access without a reliable identity foundation.
Q2: How does identity resilience differ from standard identity backup?
Standard backups merely duplicate static user lists and directory objects. Identity resilience continuously tracks the evolving states, access metadata, conditional policies, and interconnected relationships over time, providing the full behavioral context needed to execute a clean cyber recovery.
Q3: What are non-human identities (NHIs) and why do they need protection?
Non-human identities include service accounts, automated scripts, tokens, and API keys used by applications to interact without human intervention. Because they often possess elevated privileges and minimal behavioral monitoring, they are highly targeted by hackers attempting to establish persistence.
Q4: What is a forest-level recovery in Active Directory?
A forest-level recovery is the orchestrated process of restoring an entire Active Directory environment—including all domains, configuration trees, schema definitions, and trust relationships—following a catastrophic failure or ransomware attack that compromises every domain controller.
Q5: Can adversaries delete or alter Druva's identity backups?
No, they cannot. Druva utilizes an air-gapped architecture that physically and logically isolates identity backups from the production source tenant. Combined with immutable storage constraints, data cannot be modified or deleted even if a hacker gains full admin control over the local infrastructure.