Obsidian Security
@obsidiansec
Followers
1K
Following
1K
Media
242
Statuses
2K
We're the all-in-one SaaS and AI security platform, built to protect what matters most.
Newport Beach, CA
Joined January 2017
☕ It’s #CybersecurityAwarenessMonth! Every Wednesday, we’ll share a fact to help you stay cybersmart. Did You Know? Scattered Spider was able to pivot into an org's network <4 minutes after gaining access through SaaS. That’s faster than your coffee run😳 Learn more below
1
0
0
Our threat research team has identified a novel attack vector in the wild: abuse of the Azure AD self-service password reset (SSPR) feature https://t.co/tkMMe1pyeB
#SaaS #Azure #CyberSecurity
obsidiansecurity.com
Investigate Azure AD SSPR abuse in real breaches. Learn how attackers exploit self-service password reset and how to secure this critical feature.
0
0
4
Understanding the phases of the #SaaS incident response lifecycle is vital. Watch our co-founder and CTO @chicagoben explain how to apply NIST’s four principles of security incident handling to your own SaaS incident response program.
obsidiansecurity.com
Obsidian Security delivers complete SaaS security—gain control, stop threats, and ensure compliance across all your business apps.
0
1
8
Our Co-Founder and CTO, @chicagoben recently wrote that security leaders should encourage strategic thinking, then move the culture needle to promote that policy. Read that piece also in @DarkReading:
darkreading.com
Cybersecurity benefits from a focus on the vital few chores rather than the trivial many. Find the "right things" to encourage strategic thinking, then move the culture needle to promote that policy.
0
0
1
In his latest for @DarkReading, our CTO @chicagoben describes how we can make sure we're providing functional value to our organizations: ��� Measure and test results ✅ Focus on items of greatest impact ✅ Get C-suite members involved Read more ⬇️
darkreading.com
Always reach for defense in depth with proposed security changes. Measure and test results, focus on items of greatest impact, and get C-suite members involved to drive better outcomes.
1
1
2
Pure Storage is leading the way for forward-thinking organizations that understand the unique but substantial security challenges posed by their #SaaS ecosystem. Learn about how they’ve achieved success and the lessons they’ve learned in the process. ⬇️
obsidiansecurity.com
Pure Storage case study launching SaaS security program. Enterprise implementation journey and lessons learned.
0
1
1
Did you hear the news? 📰 We're so excited to say that 94% of our employees say this is a great place to work! We care about giving people an opportunity to do meaningful, rewarding work. Learn about opportunities to join our team 👇 https://t.co/57mX9dibwn
0
0
1
Want to secure data in your critical #SaaS applications, but unsure where to start? Start your journey to safer SaaS today with a customized risk assessment. Check it out ⬇️
0
0
0
Working at Obsidian means contributing to an industry-leading cybersecurity product in an environment where customer satisfaction, privacy, and data ethics are paramount. And did we mention that we're @GPTW_US certified? If you're #OpenToWork, reach out to us!
0
0
3
We're proud to be certified as a Great Place to Work for the 2nd year in a row! And we're #hiring! See our open roles here: https://t.co/57mX9diJlV
0
0
2
Read our blog for details what exactly the exploit is and how to implement proactive measures based on your unique Teams instance that will minimize risk without causing any surprise disruptions to business operations. https://t.co/2dsjq8WN0y
obsidiansecurity.com
Understand Microsoft Teams phishing exploits. How attackers abuse collaboration features and what controls prevent manipulation.
0
0
0
To ensure the integrity and privacy of sensitive Salesforce data, security teams should tightly control the permission and access levels of these unauthenticated guest users. How? Let's talk about it 👇 https://t.co/Wn3x3LF35X
obsidiansecurity.com
Identify Salesforce misconfigurations exposing sensitive data. Common security gaps and hardening recommendations.
0
0
0
Whether by an update, a miscommunication, or just a simple mistake, application configurations can change discreetly over time. We help your team stay on top of #SaaS configuration drift. Learn more ⬇️
obsidiansecurity.com
Obsidian Security delivers complete SaaS security—gain control, stop threats, and ensure compliance across all your business apps.
0
0
0
We want to give people an opportunity to do meaningful, rewarding work. If you’re dedicated to solving real #cybersecurity problems, you’ll like it here. If you're #OpenToWork, we're #hiring engineers, account executives, and more. Learn about our open positions:
0
0
1
ICYMI: Last week, we announced an extension of our Posture Hardening capabilities. We're dedicated to optimizing security for a rapidly expanding mesh of SaaS applications, without burdening customers with the complexities of an SDK approach. Learn more ⬇️
0
0
0
Adapting #SaaS security strategies for the new era requires: ✅ the adoption of automation ✅ embracing collaboration to include more stakeholders ✅ advancing the strength of controls and policies It's no easy task. But we can help ⬇️
obsidiansecurity.com
Discover how regulatory amendments increasingly focus on SaaS. Understand common themes across global privacy and security frameworks.
0
0
0
SaaS Ransomware Attack Hit Sharepoint Online Without Using a Compromised Endpoint -
securityweek.com
A SaaS ransomware attack against a company’s Sharepoint Online was done without using a compromised endpoint.
0
0
0
With cybersecurity, essentialism is more necessary than ever. Our Co-Founder and CTO, @chicagoben writes that security leaders should encourage strategic thinking, then move the culture needle to promote that policy. Read more in @DarkReading:
darkreading.com
Cybersecurity benefits from a focus on the vital few chores rather than the trivial many. Find the "right things" to encourage strategic thinking, then move the culture needle to promote that policy.
0
0
1
Our Threat Research team observed a #SaaS #ransomware attack against a company’s Microsoft 365 without using a compromised endpoint. Check out all the details of how our team and product were leveraged to determine the specifics of the attack. ⬇️
0
1
1