31.01.2023 Views

Cyber Defense eMagazine February Edition for 2023

Cyber Defense eMagazine February Edition for 2023 #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cyber security expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group as well as Yan Ross, Editor-in-Chief and many more writers, partners and supporters who make this an awesome publication! Thank you all and to our readers! OSINT ROCKS! #CDM #CDMG #OSINT #CYBERSECURITY #INFOSEC #BEST #PRACTICES #TIPS #TECHNIQUES

Cyber Defense eMagazine February Edition for 2023 #CDM #CYBERDEFENSEMAG @CyberDefenseMag by @Miliefsky a world-renowned cyber security expert and the Publisher of Cyber Defense Magazine as part of the Cyber Defense Media Group as well as Yan Ross, Editor-in-Chief and many more writers, partners and supporters who make this an awesome publication! Thank you all and to our readers! OSINT ROCKS! #CDM #CDMG #OSINT #CYBERSECURITY #INFOSEC #BEST #PRACTICES #TIPS #TECHNIQUES

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Breaches And the Delicate Dance Between<br />

Privileged Credentials and SaaS Applications<br />

By Corey O’Connor, Director of Product Marketing, DoControl<br />

It’s no secret we have seen a spike in insider risks associated with the privileged credentials of Software<br />

as a Service (SaaS) applications. Privileged credentials are the proverbial “keys to the kingdom,” and as<br />

more organizations continue to rapidly adopt cloud-first strategies, they will need to reevaluate their<br />

security posture to ensure these keys are not mishandled. Gone are the days where all data sits within<br />

the confines of your data center walls. It once was a challenge <strong>for</strong> an attacker to gain an initial foothold,<br />

per<strong>for</strong>m reconnaissance, escalate privileges, and ultimately succeed in their nefarious plan to disrupt the<br />

business or exfiltrate sensitive data, not anymore.<br />

The Criticality of Credentials<br />

Today, organizations have more entities accessing an increasing number of applications and generating<br />

cloud-hosted data and files in higher volumes. Applications and their derivative data are what drive the<br />

business <strong>for</strong>ward. Un<strong>for</strong>tunately, security often takes a back seat to driving this business enablement<br />

(and, ultimately, continuity).<br />

It’s not uncommon <strong>for</strong> users to share credentials over a Slack channel or Microsoft Teams. The longer<br />

that credential is exposed over the Slack channel, the more likely it is to fall into the wrong hands. We<br />

<strong>Cyber</strong> <strong>Defense</strong> <strong>eMagazine</strong> – <strong>February</strong> <strong>2023</strong> <strong>Edition</strong> 66<br />

Copyright © <strong>2023</strong>, <strong>Cyber</strong> <strong>Defense</strong> Magazine. All rights reserved worldwide.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!