Upwind’s Runtime Vulnerability Management

Denise Ashur September 05, 2023
Upwind’s Runtime Vulnerability Management
Contents

Further Reading

snowflake-hero

Upwind Now Secures Snowflake from AI Down to the Storage Underneath It

Ask a security team where the company's most sensitive data lives and they'll say Snowflake without pausing. Ask who can reach it and the room goes quiet, because that answer belongs to the data team. It isn't negligence, it's vocabulary. Snowflake speaks in roles, grants, warehouses and schemas. Your cloud security program speaks in IAM,…
What IAM Sees That You Don't

What IAM Sees That You Don’t

Every IAM policy you write depends on condition keys - they're the precision layer that turns "can call S3" into "can call S3 only from our VPC, using our identity, on resources we own." They're the backbone of least-privilege, data perimeters, and SCP guardrails. But here's the thing: for every request, the IAM engine assembles…
Let Me Speak to Your Manager (Account)

Let Me Speak to Your Manager (Account)

The management account is the most privileged account in any AWS Organization. It controls SCPs, creates and deletes member accounts, manages IAM Identity Center, and is itself exempt from SCPs. Getting its 12-digit account ID is the first step in targeting it. The documented way to get it is organizations:DescribeOrganization - but security-conscious environments restrict…
Add the Upwind RSS Feed to Slack
Connect the Upwind RSS Feed to your Slack.
Follow the how-to here.
Threat RSS
Add the Upwind RSS Feed to Slack
Connect the Upwind RSS Feed to your Slack.
Follow the how-to here.
Main RSS