@CityCoderUS Bringing intuitive individual trust relationships to the digital native homo sapiens. When everyone and everything is expressing explicitly what is wanted, technology finally behaves trustworthy. My shot is @P3KI.
@LittleDetritus Gerne! Wer wissen will, wie nachvollziehbare, dezentrale Berechtigung und Weitergabe ohne zentrale Datenhalde funktioniert, kann sich gerne melden. Wir stehen mit Rat und Tat zur Seite!
[email protected]
Delegable and user-centric access control at the edge without central infrastructure.
Resilient to blackout scenarios on top of that!
Learn how at @itsa_ITSecurity booth 7-310
Countdown to @itsa_ITSecurity 2022! Come join us at booth 7-310 starting tomorrow!
Can't make it? No problem, make sure to sign up for our upcoming webinar on Nov 14th 13:00 CET.
https://t.co/eoIccr4KJP
We've had a blast at @eco_de#isd22!
If you missed us, make sure to catch our next webinar on Next Generation Authorization on Oct. 17th 10am CEST.
Signup is free: https://t.co/KfbWFAy0HW
Hey folks, we're looking for #rustlang developers to grow our still small team.
If you want to work on the next generation of actually decentralized authorization solutions that are 100% blockchain free, hit us up at [email protected]
Germany preferred, EU possible, fully remote
And that's not even mentioning outsourcing it to an online third party.
Yes, can be done, is done, but by $deity, do a proper risk assessment and put mitigations in place.
Yes, we've been preaching this for... forever. Centralizing mission critical systems or using mission critical systems that depend on central infrastructure is bound to bite you at some point.
Centralizing the security control planes of 1000's of customers, what could possibly go wrong?
The problem is when user identity provided by Okta is sufficient to access systems without any other factors. In theory, a separate control plane for device identity would mitigate.
Danke für die deutlichen Worte, Dr. Habeck!
Als Mitglied des TeleTrustT im speziellen und der ITSEC Community im Allgemeinen fühlen wir uns gehört.
@P3KI steht seit jeher hinter den Prinzipien von "Security made in Germany"
https://t.co/F47sXBgPcN
@GaboHBeaumont "Secure enough for what?" is the first question that comes to mind, tbh. Object capabilities are a good model, though I'm far from an expert. You might also find @P3KI interesting; it treats capabilities in terms of both objects and time. /cc @41414141