IT Brief India - Technology news for CIOs & IT decision-makers
India
Why identity convergence matters for data centre security

Why identity convergence matters for data centre security

Tue, 1st Sep 2026 (Today)
Prabhuraj Patil
PRABHURAJ PATIL Senior Director, Physical Access Control Solutions, Asean & India Subcontinent HID

Behind every cloud application, digital payment, AI workload and online transaction lies an ecosystem of data centres that power modern economies and societies. As demand for digital services continues to grow across Asia Pacific, these facilities are becoming larger, more interconnected and more business-critical than ever before.

That growing importance is accompanied by higher expectations around security and operational resilience. According to IBM's 2026 Cost of a Data Breach Report, the average cost of a data breach for organisations across ASEAN reached US$4.12 million in 2026, the highest level recorded in the region. Governments are also paying closer attention. In Singapore, the proposed Digital Infrastructure Bill could see major data centre operators face fines of up to S$1 million, or 10% of annual Singapore turnover, whichever is higher, for failing to meet physical and digital security, business continuity and incident reporting requirements.

Against this backdrop, ensuring that the right people have the right access at the right time has become a critical security priority. Yet while physical and digital environments have become deeply interconnected, the identities used to access them are often managed in silos. For data centre operators, that disconnect can create gaps in visibility, governance and accountability at exactly the wrong time.

The challenge of fragmented physical and digital identities

Modern data centres rely on a diverse ecosystem of employees, contractors, vendors, maintenance personnel and service providers, all of whom require varying levels of access to facilities and systems. In many organisations, however, physical and digital identities are administered through separate platforms, processes and teams.

While this approach may have evolved organically over time, it can make it difficult for operators to maintain a consistent view of who has access to critical infrastructure. Physical access records, digital credentials and user permissions often reside across multiple systems, complicating oversight and governance. As data centres continue to scale and support increasingly critical workloads, maintaining visibility across these fragmented access environments becomes more challenging.

What was once an operational inconvenience is increasingly becoming a governance issue. As organisations face greater regulatory scrutiny and higher expectations around resilience, they need confidence that access rights are managed consistently, reviewed regularly and aligned with business requirements. Without a unified view of identity, establishing that level of visibility and accountability can become significantly more difficult.

The case for identity convergence

To address these challenges, organisations should look towards identity convergence: an approach that brings physical and digital access together within a unified governance model. Rather than managing separate systems for facility access and digital credentials, identity convergence enables organisations to establish a more complete view of who has access to critical infrastructure, and whether that access remains appropriate over time.

For data centre operators, the benefits extend beyond stronger security. A unified identity approach can improve visibility across the access lifecycle, strengthen governance and simplify compliance efforts by creating a more consistent way to manage access across both physical and digital environments. As facilities grow in scale and complexity, this can help security teams make better-informed decisions while reducing administrative overhead.

Organisations are increasingly recognising the value of a converged identity approach. According to HID's 2026 State of Security and Identity Report, three out of four organisations globally have either deployed or are evaluating integrated converged credentials. In Asia Pacific, adoption is particularly strong, with 84% of respondents either implementing or assessing technologies that unify physical and digital identity management.

Importantly, identity convergence is not about replacing existing security systems. Rather, it is about connecting them through a unified identity framework. When physical and digital access are governed through a trusted identity, organisations gain a more complete understanding of who is accessing facilities, systems and critical infrastructure, allowing them to respond more effectively to evolving risks.

A security blueprint for the modern data centre

For data centre operators, identity convergence should not be viewed solely as a technology initiative. It is a strategic approach to balancing security, operational efficiency and scalability in increasingly complex environments.

A successful approach starts with establishing a unified view of identities across the organisation. Whether managing employees, contractors or third-party service providers, access rights should be aligned to roles and continuously governed throughout the identity lifecycle. This helps ensure that the right people have access to the right resources, at the right time, while reducing the risk of unnecessary or excessive privileges.

From there, organisations can adopt advanced technologies such as mobile credentials, biometrics and integrated access control systems to strengthen authentication and streamline access management. Equally important is ensuring that physical and digital security teams work from a common operating picture, enabling greater visibility, accountability and resilience across the environment.

As data centres continue to evolve into critical infrastructure underpinning the digital economy, security strategies must evolve alongside them. By moving beyond siloed approaches and embracing identity convergence, organisations can build a stronger foundation for protecting both their physical and digital assets in an increasingly interconnected world.