With one valid account, an attacker stops fighting your security and starts using it. Identity has become the most targeted layer, yet few organisations have ever tested whether they could rebuild it after an attack. This piece reframes identity as a business continuity issue, not just an IAM process.