Focus Area: Zero Trust

Michelle Drolet

The Canvas compromise is like a lesson in SaaS security for organizations that have operational dependency on SaaS platforms. The Canvas global community includes more than 8,000 institutions across more than 100 countries, and Canvas is used by 100% of Ivy League universities. No surprise, then, that this compromise took both an operational and a reputational toll

Michelle Drolet

With the rapid adoption of AI and with quantum threats on the horizon, the security team’s reaction window is compressing fast. AI is not only accelerating attacks but also making these easier to scale. Quantum computing is forcing leaders to question whether today’s cryptographic protections will be enough in a quantum world. It is therefore important to understand

Michelle Drolet

Cybersecurity has generally kept pace with the growing sophistication of threats. It has evolved from firewall and antivirus to next-gen firewalls, comprehensive endpoint security suites and intelligence-driven approaches such as EDR, XDR and MDR—solutions based on the assumption that systems behave predictably and that risks can be mapped, monitored and mitigated within specific guardrails. But even

Greg Neville

Lacking formal AI risk frameworks allows shadow AI to proliferate unchecked, but a structured approach to governance can prevent dangerous blind spots. AI is being leveraged across organizations to boost productivity, accelerate innovation and optimize business processes. The problem is that adoption has outpaced discipline. Only a minority (23.8%) of organizations have formal AI risk

Michelle Drolet

About 63% of organizations worldwide have partially or fully implemented a zero-trust strategy. For those who don’t know what zero trust means, it’s basically a security model that enforces strict verification for every user and device that is trying to access applications or other company assets. So why is zero trust suddenly so popular? There are several

Michelle Drolet

Consider this advice to successfully replace a perimeter approach to security with a zero trust framework. Despite organizations upping their spend on cybersecurity technology, infrastructure, and services each year, threat actors are still finding ways to slip through the cracks. There are two main reasons for this: One, human error: Unfortunately, many users still don’t take security