[Demo] ConductorOne's Policy Engine
  • /images/2024_NYDFS-23-NYCRR-500.jpg

    NYDFS 23 NYCRR 500 and Least Privilege Access

    ·
    Alex Bovee
    Earlier this year, amendments were made to the NYDFS 23 and NYCRR 500. Both changes reflecting a response to the significant growth in cybersecurity threats. Learn more about the these amendments, how they're related to the principle of least privilege, and how organizations can ensure compliance with them.
  • /images/2024_Legacy-Survivors.jpg

    Moving on from Legacy IGA—Why Users Won’t Go Back

    ·
    Brittany Smail
    Legacy IGA solutions have been the norm in the identity space for a long time. However, these solutions are not without issues. Check out this blog post to learn more about the common challenges legacy IGA poses through real world examples.
  • /images/5-take-Aways.jpg

    Five Takeaways from the Snowflake Attack

    ·
    Alex Bovee
    Breaches are far from uncommon in the cybersecurity landscape, however, each incident can serve as a learning experience. The recent Snowflake attack serves as a similar scenario. Dive into ConductorOne CEO Alex Bovee's thoughts on how this breach came to happen, what we can learn from it, and the best steps companies can take moving forward to prevent reoccurrences.
  • /images/2024-12-zero-trust-in-practice-frame.jpg

    Zero Trust in Practice: How We Keep Customer Data Secure at ConductorOne

    ·
    Brittany Smail
    Our company mission to “secure the workforce” guides not only how we design our platform but also our multilayered internal approach to protecting customer data.
  • /images/blog-header-1.png

    Traditional PAM is Dead, Long Live Just in Time Access

    ·
    Alex Bovee
    For the modern, cloud-forward company, strategies for securing infrastructure and identity are changing at a breakneck pace. MFA and trditional PAM are not sufficient for securing access in the cloud. Dive into the future of PAM through least privilege and JIT access in this blog.
  • /images/blog-harbleed-header.png

    HARBleed: When History Doesn't Repeat, But It Does Rhyme

    ·
    Paul Querna
    The cybersecurity landscape is marked by breaches that serve as learning pivots. The Okta's recent incident shares a thematic lineage with one of the most notorious security lapses in history: Heartbleed. Delve into the C1 coined concept termer "HARBleed," which highlights its procedural kinship with Heartbleed and emphasizing the lurking danger represented by bearer tokens.
  • /images/copy-of-c1-resource-graphics-22.png

    Embracing the SaaS Mindset: "There's an App for That"

    ·
    Paul Querna
    "There's an app for that" has become the new norm to navigate the growing software ecosystem. Automation is key to finding this balance.
  • /images/decentralize2.png

    Rethinking Access Management: Centralization vs. Decentralization

    ·
    Paul Querna
    Rethinking access management and finding a balance between centralization and decentralization is vital to ensure your organization remains responsive to these changes.
  • /images/dosilekko_vector_art_style_image_that_visually_represents_the_c_148e620b-acfe-4e57-9e9b-b5530ae3160d.png

    Secrets, Key Rotation, and the Role of Automation

    ·
    Paul Querna
    GitHub's accidental leak of their SSH RSA server private key sheds light on security best practices. What can we do to prevent other such breaches and increase our security posture. Our CTO Paul Querna gives his take.