Sonraí Security

1.1K posts

Sonraí Security banner
Sonraí Security

Sonraí Security

@SonraiSecurity

https://t.co/VwyPD5ytB3 the one and only Cloud Permissions Firewall. Least privilege on AWS/GCP/Azure. No more policy editing.

New York, NY Katılım Aralık 2017
281 Takip Edilen4.7K Takipçiler
Sonraí Security
Sonraí Security@SonraiSecurity·
Thanks to @robtlee @philvenables @rmogull and the other authors for putting this out. For Risk #3, "Unmanaged AI Agent Attack Surface," we're recommending (at least in our world of the cloud) starting with IAM guardrails. For AWS users, start here: sonraisecurity.com/enforcing-ai-g…
Phil Venables@philvenables

The “AI Vulnerability Storm”: Building a “Mythos-ready” Security Program. labs.cloudsecurityalliance.org/mythos-ciso/ labs.cloudsecurityalliance.org/wp-content/upl…

English
0
0
0
80
Sonraí Security
Sonraí Security@SonraiSecurity·
@andresribeiroo The children yearn for the JSON (you can grab a tenant with us to check out per-service permission automations)
English
0
0
0
29
André Ribeiro
André Ribeiro@andresribeiroo·
Ever since I was a kid I wanted to work configuring access permissions for more than 200 services in AWS IAM
English
1
0
1
45
Sonraí Security retweetledi
Christophe Limpalair
Christophe Limpalair@christophelimp·
Solving cloud sec at scale is hard. You have zombies, unused services, a need to grant *just* the right access at the right time, ... This month I'm looking at how @SonraiSecurity is solving this problem with their Cloud Permissions Firewall. Try it out: sonrai.co/cybr
Christophe Limpalair tweet media
English
2
1
7
310
Sonraí Security retweetledi
Last Week in AWS
Last Week in AWS@LastWeekinAWS·
Permissions Security has long been an issue for enterprise businesses. @SonraiSecurity found a way to deliver a safer, faster, and more scalable solution through their one-of-a-kind Cloud Permissions Firewall. Listen to Co-Founder Sandy Bird explain more: youtu.be/i_ydnfKUWzE
YouTube video
YouTube
Last Week in AWS tweet media
English
1
1
3
721
Sonraí Security retweetledi
Cloud Security Podcast
Cloud Security Podcast@CloudSecPod·
🎙️New Episode Alert dropping Tuesday, May 14th, 10am PST/6PM BST! 🎉 🔐 Navigating least privilege in multi-cloud setups can be tricky! Join us as Jeff Moncrief from @SonraiSecurity discusses why identity is the new network in our cloud-driven world. 🌐 #cloudsecurity
Cloud Security Podcast tweet media
English
0
2
6
309
Sonraí Security retweetledi
Cloud Security Podcast
Cloud Security Podcast@CloudSecPod·
🔐 From on-prem to the cloud, identity management has evolved! 🌐 Identity is now the new network. Every VM, service, and app relies on roles & managed identities We spoke to @_securityjeff , Field CTO at @SonraiSecurity Security, on our podcast about this. #cloudsecurity
English
1
1
4
193
Sonraí Security retweetledi
John Hammond
John Hammond@_JohnHammond·
Previously I shared a video on the “cloud permissions firewall” from friends at @SonraiSecurity! It’s pretty cool to see cloud security settings distilled down to the ones that actually matter & a single-click easy button to lock it all down. Check it out: jh.live/Iwxr4xQ-yqY
English
1
3
27
8K
Sonraí Security retweetledi
Ashish Rajan 🤴🏾
Ashish Rajan 🤴🏾@hashishrajan·
As a Cybersecurity Content Creator, I am privileged to get access to information/solutions under embargo. I can finally talk about “Cloud Permissions Firewall” from @SonraiSecurity This solution addresses the complexities orgs face when building out IAM policies at scale or trying to maintain least privilege. How? 1️⃣Scaling least privilege by centrally restricting access to the most sensitive cloud permissions across AWS/Azure/GCP 2️⃣Disabling unused regions and unused services 3️⃣ Quarantining Zombie identities so they’re useless to attackers 4️⃣Maintaining least privilege with a default deny policy so new identities are protected Who I can see using it: 💪🏾Organisations looking to tackle least privilege access for machine identities 💪🏾Organisations with the flexibility to implement iam security controls and collaborate across developers and product managers 💪🏾Organisations feeling too overwhelmed at the prospect of even trying least privilege 🎂Note - this is not a solution that will blanket work for every organisation – there are specific use cases for where their Cloud Permission Firewall should be implemented. There is more to the solution than what I have called out and if you are one of the organisations that wants to explore this solution or if you are curious to know more about how least privilege at scale in one-click is possible, visit the link in the comments. This is a sponsored post, but the opinions shared are my own.
London, England 🇬🇧 English
2
1
8
532
Sonraí Security retweetledi
John Hammond
John Hammond@_JohnHammond·
I caught wind of @SonraiSecurity’s “Cloud Permissions Firewall” and the idea is really cool: ☁️ Abstracting tens of thousands of AWS/Azure/GCP permissions down to the hundreds that matter most ❎Centralized management of unused risky permissions with an allow-by-exception approach 🌐Automatic restricting of regions, identities, and services that aren’t used to limit your attack surface It’s like the principle of least privilege can be achievable, uncomplicated, fast and sustainable at scale – all without disrupting development. I think it’s pretty slick, check it out! jh.live/sonrai
English
2
3
18
8.1K
Sonraí Security
Sonraí Security@SonraiSecurity·
There are so many cloud security solutions; they’re all claiming to do the same things! We break down the differences between us and a market-favorite, Wiz. ✨ Explore the two solutions here → ow.ly/8rjZ50Q58Jf
Sonraí Security tweet media
English
0
0
0
120
Sonraí Security
Sonraí Security@SonraiSecurity·
We can't make cloud security easy...but we can try! Here's Sonrai's 4 step process for reducing identity risks. 👉 ow.ly/5Twn50Q8pW3
English
0
0
0
140
Sonraí Security
Sonraí Security@SonraiSecurity·
Are you a Wiz customer? Great choice! ✨ But how can you make that investment even better? 🤔 We cover what Wiz offers you and what they're missing in cloud identity and access management. Check out the blog: ow.ly/EEUo50Q58yv
Sonraí Security tweet media
English
0
0
0
105
Sonraí Security
Sonraí Security@SonraiSecurity·
These 3 breaches all have one thing in common. 👇 The attackers abused cloud permissions to get what they wanted. This latest blog analyzes what happened, how it happened, and how a CIEM could have helped in these three stories. ow.ly/IPvh50Q4JqV
English
0
0
0
83
Sonraí Security
Sonraí Security@SonraiSecurity·
What session got people so stirred up it's won 'Most Interactive'? 🎮 Live Hack: The Anatomy of a Cloud Attack, here we go @TheJeffMoncrief You can see for yourself on-demand here: ow.ly/KMMm50PXQwm
English
0
0
0
59
Sonraí Security
Sonraí Security@SonraiSecurity·
Are these 3 identity risks in your cloud? After offering the Cloud Identity Diagnostic for months, we've compiled some of the most common issues we unearth for organizations. More in the blog. ➡️ ow.ly/Keeg50Q16XJ
English
0
1
0
116
Sonraí Security
Sonraí Security@SonraiSecurity·
ACCESS Summit 'Hidden Gem' session. ✨💎 Mapping the Battlefield by Untanglinging Cloud IAM. @SecUnfPodcast walks us through every identity risk you could face in the cloud. On-demand session available here: ow.ly/U90Z50PXQbX
English
0
1
1
137