Managing Cloud Compliance and Security Posture with Cloud Compliance Tools
March 8, 2023Why compliance and access security in the public cloud are so challenging – and how carefully-chosen CSPM tools can help.
How to Implement CIEM – A Checklist
February 8, 2023What differentiates a CIEM solution from other cloud security platforms, and how should a CIEM be used in an organization? Read on to find out.
How Attackers Can Exploit GCP’s Multicloud Workload Solution
February 1, 2023A deep dive into the inner workings of GCP Workload Identity Federation, taking a look at risks and how to avoid misconfigurations.
EmojiDeploy: Smile! Your Azure web service just got RCE’d ._.
January 19, 2023The Tenable Cloud Security research team discovered a remote code execution vulnerability affecting Microsoft Azure cloud services such as Function Apps, App Service, Logic Apps and others, as well as other cloud sovereigns.
Microsoft Azure Virtual Machines: Public IP Configuration Is Not Always As It Seems
January 16, 2023If you’re not familiar enough with the SKU attribute of the Azure public IP address, you may think you’re configuring your virtual machines as public to the internet … but you aren’t.
Why JIT Access is an Essential Part of Cloud Security
January 8, 2023Automating JIT in the cloud is win-win for improving security and business productivity -- and cracks a nut that PAM can’t.
Cloud Native Application Protection Platform (CNAPP): An Evolving Approach to Cloud Security
December 20, 2022A look at how IAM works and how CIEM enhances IAM security in the cloud.
Your Guide to IAM – and IAM Security in the Cloud
December 20, 2022A look at how IAM works and how CIEM enhances IAM security in the cloud.
Sealing Off Your Cloud’s Blast Radius
November 23, 2022Understand the challenges of securing your cloud and key best practices for minimizing your cloud’s blast radius
6 Cloud Security Tips For 3rd-Party Risk
November 16, 2022It's critical to understand the security risk that third parties pose to your cloud infrastructure and how managing third-party access using secure practices can help.
How to Improve Your Incident Response in the Cloud
November 3, 2022A look at the security best practices and mindset to adopt to better detect and recover from malicious activity in your cloud infrastructure.
What You Should Know about the New OpenSSL Vulnerability
October 31, 2022How to detect which OpenSSL version you’re running and if your organization is exposed to the critical OpenSSL vulnerabilities - CVE-2022-3602 (Remote Code Execution) and CVE-2022-3786 (Denial of Service) - and what to do about it.