Category: Uncategorized

2024 Should Be the Year of Resilience. But You’ll Need to Put In Some Work.
According to Merriam-Webster, The English word resilience is derived from the Latin word resilire, which means “to jump back” or “to recoil.”…

Zero Trust Policies must be Automated, Transparent, and Meaningful
It’s easy to make a system secure, but unusable — just take it off the network, and keep it in a locked…

The 0.1.2: December Edition
Data Resilience, how many tools are “too many?”, and fried chicken! It’s December, and therefore time for our contractually-obligated reflections on the…

The Zero Trust Data Resilience Architecture
Welcome back to our blog series on the new Zero Trust Data Resilience concept, which we introduced in part 1. In today’s…

Data Backup and Recovery: An Unexamined Part of Zero Trust
Zero Trust is a security strategy, and by necessity is broad in scope. In fact, we believe that this strategy is the…

“Log in with” Misconfigurations, Convenience, and a Recommendation to Tier Your Accounts
I’ve been following a recent series of excellent blog posts from Salt Security, explaining how on several websites, an OAuth misconfiguration (technically…

The 0.1.2: August Edition
Stepping off the patch treadmill, watching the watchmen, and ice cream While much of the world enjoys summer vacation, many of us…

The 0.1.2: July Edition
Popcorn, an Unreliable Power Adapter, Widgets, and a Zero Trust Readiness Survey It may be the middle of summer (at least here…

The State of Zero Trust: Survey Results
It’s July, and therefore a great time for a mid-year assessment of the state of Zero Trust. To that end, the Numberline…

Don’t Patch. Hide.
I don’t like criticizing vendors when they have a well-publicized vulnerability. All vendors will have occasional security issues or CVEs, and most…