Inside DigitalOcean’s SOX Compliance Playbook
  • /images/blog-harbleed-header.png

    HARBleed: When History Doesn't Repeat, But It Does Rhyme

    ·
    Paul Querna
    The cybersecurity landscape is marked by breaches that serve as learning pivots. The Okta's recent incident shares a thematic lineage with one of the most notorious security lapses in history: Heartbleed. Delve into the C1 coined concept termer "HARBleed," which highlights its procedural kinship with Heartbleed and emphasizing the lurking danger represented by bearer tokens.
  • /images/copy-of-c1-resource-graphics-22.png

    Embracing the SaaS Mindset: "There's an App for That"

    ·
    Paul Querna
    "There's an app for that" has become the new norm to navigate the growing software ecosystem. Automation is key to finding this balance.
  • /images/decentralize2.png

    Rethinking Access Management: Centralization vs. Decentralization

    ·
    Paul Querna
    Rethinking access management and finding a balance between centralization and decentralization is vital to ensure your organization remains responsive to these changes.
  • /images/dosilekko_vector_art_style_image_that_visually_represents_the_c_148e620b-acfe-4e57-9e9b-b5530ae3160d.png

    Secrets, Key Rotation, and the Role of Automation

    ·
    Paul Querna
    GitHub's accidental leak of their SSH RSA server private key sheds light on security best practices. What can we do to prevent other such breaches and increase our security posture. Our CTO Paul Querna gives his take.
  • /images/c1-perspectives.png

    SOC2 and Least Privilege Access Control

    ·
    Alex Bovee
    Least privilege access control has become the guiding principle for granting ass for SOC 2 compliance, but it can seem daunting to tackle this challenge with so much gray area. Learn how can you practically implement least privilege access controls.
  • /images/when-threat-models-collide.png

    When Threat Models Collide

    ·
    Paul Querna
    Insider and outsider threats are starting to look the same - hackers are stealing identities or logged in sessions. Our approach to a solution? A pragmatic least privilege maturity curve.
  • /images/c1-perspectives.png

    ChatGPT and How AI will Impact Security

    ·
    Alex Bovee
    Thoughts on ChatGPT, AI, and the long ranging security impacts - especially to phishing and social engineering based attacks.
  • /images/c1-perspectives.png

    Achieve Least Privilege Access with ConductorOne + Okta

    ·
    Samira Kahangi
    Learn how organizations using Okta can supercharge their IAM security strategy and achieve least privilege access with ConductorOne
  • /images/c1-perspectives.png

    How to Be SOC2 Compliant: A Checklist for Security Teams

    ·
    Shanelle Rucker
    Your first SOC2 audit can seem daunting. Use this checklist to build a strong security strategy that will put you on the right path to compliance.