About Forrester
Forrester Research, Inc. is an independent research company that provides pragmatic and forward-thinking advice to global leaders in business and technology.

Julie serves eBusiness & Channel Strategy Professionals. Julie's 25 years of work experience is balanced between the engineering and management consulting work she did in the first half of her career and her work as an analyst for the past 12 years. The combination of technical and business expertise positions prepared her well to work with business leaders to identify new opportunities offered by mobile technology and to develop strategies to engage with consumers on mobile devices. She has worked with hundreds of clients across retail, travel, banking, insurance, CPG, healthcare, retail, and more to advise and guide the development of their mobile strategies.
Julie's research and analysis have been widely cited in publications including The Wall Street Journal, The New York Times, USA Today, BusinessWeek, RCR Wireless, and The Onion and on CBS, NBC, and PBS.
Prior to becoming an analyst, Julie worked at a contextual services mobile startup in San Francisco and prior to that at Booz Allen & Hamilton.
Julie holds a B.S.E.E. and a Master of Science in electrical engineering and computer science from the Massachusetts Institute of Technology (MIT). She also holds an M.B.A. from the University of Michigan.
Two years ago, the OAuth API protection mechanism was a fairly well-kept secret. It actually won an award at the 2009 European Identity Conference for "best new/improved standard," but most people...
Cloud providers and many federated IAM practitioners are excited about OAuth, a new(ish) security technology on the scene. I’ve written about OAuth in Protecting Enterprise APIs With A Light...
To help security and risk professionals navigate the complex landscape of privacy laws around the world, Forrester created a data privacy heat map that highlights the data protection guidelines and...

Charts & Figures results for

Prepare For Cloud Security Improvements, Along With A Tincture Of Disruption
The Language Of Levels Clarifies The Value Of Assurance
Consumer-facing web applications are beginning to rely on third-party identity providers (IdPs) for user identification, authentication, and attributes delivered at runtime. This reduces costs and...
In approaching the research for my recently published TechRadar™ on strong authentication, at first I struggled a bit with overlapping concepts and terminology (as can be seen in the lively...
A Review Of Budgets, Spending Intentions, Technology Adoption, And Key Trends
To help Forrester clients with their identity and access management (IAM) strategy for 2011, Forrester predicted four significant trends. So how'd we do? We got two right and two half right. Heading...

Personal Identity Management
Customer intelligence (CI) professionals face increasing pressure to give consumers greater control over the data that organizations collect about them. Forrester has published a report predicting...
Back in July, I wrote about a new RESTful API that cloud providers and provisioning vendors are working on for doing identity provisioning and synching: Simple Cloud Identity Management, or SCIM...
With The SCIM Specifications, User Provisioning Goes "Zero Trust"
Business owners are jumping on SaaS services to get quicker wins, and CIOs are finding these services attractive for cutting costs as well. Since it's relatively quick and easy to hook up these...
Protocol gut check. That's how someone recently described some research I've got under way for a report we're calling the "TechRadar™ for Security Pros: Zero Trust Identity...
Six Vendors That Matter Most And How They Stack Up
In Forrester's 15-criteria evaluation of cloud identity and access management (IAM) vendors, we identified the six most significant solution providers in this category — Covisint, Lighthouse...

By 2012, OAuth Will Be The Incumbent Cloud API Security Solution
Enterprises face a tension between the cloud-friendly software environment promoted by the Web, with its easy-to-use REST interface style and proliferation of lightweight services, and the security...
If you're a security and risk professional in charge of protecting consumer-facing applications, you may have heard that OpenID is a “toy,” or it's an insecure protocol, or other...
To help security and risk professionals navigate the complex landscape of privacy laws around the world, Forrester created a data privacy heat map that highlights the data protection guidelines and...
For a new extranet portal, we're looking for the best way to authenticate strongly 5,000 users all around the world. What is the best way at this time? What way is the easiest to manage?
Why Firms Need To Share Data To Become Customer-Obsessed
Enterprises seeking to better understand their customers, market, and competitive landscape can't afford to limit their insights to only what they already know — the data they generate...
The Six Vendors That Matter Most And How They Stack Up
In Forrester's 16-criteria evaluation of risk-based authentication vendors, we identified the six significant vendors in this category — CA Technologies, Entrust, iovation, RSA, Symantec, and...
Road Map: The Identity And Access Management Playbook
This report outlines Forrester's solution to help security and risk (S&R) leaders develop their road map of IAM processes using Forrester's TechRadar™ methodology. The extended enterprise...

If anything exemplifies the extended enterprise, it's the notion of the "API economy": Unlocking value in your organization's unique data and services by publishing open APIs (application...
The rapid adoption of mobile devices and cloud services together with a multitude of new partnerships and customer-facing applications has extended the identity boundary of today’s enterprise....
Our employees are being asked to electronically sign documents from outside our organization. We want to educate these employees on various aspects of the e-signature process. One area is...
A decade after launching the SAML standard and seeing its, shall we say, stately pace of adoption, it’s wild to see real single sign-on and federated attribute sharing starting to take off for...
Andras Cser probed a sore spot in IAM last week with his post, “XACML Is Dead.” It’s a necessary conversation (though I did see a glint in his eye at the Forrester BT Forum after he...
Microsoft announced during last week's RSA conference that it would not be shipping Windows CardSpace 2.0. A lot of design imperatives weighed on that one deliverable: security, privacy,...