The Employee Left. The Access Did Not.
Disabling Active Directory is no longer enough. Effective offboarding must revoke distributed human access, long-lived secrets and machine credentials before they become orphaned trust.
Read article →Articles and practical perspectives from Jaiz Anuar on Governance, cybersecurity, governance, and digital trust.
Disabling Active Directory is no longer enough. Effective offboarding must revoke distributed human access, long-lived secrets and machine credentials before they become orphaned trust.
Read article →A decade-old Shellshock finding should trigger questions about asset ownership, deferred remediation, compensating controls, exception expiry and the business dependency keeping vulnerable technology alive.
Read article →AI agents cannot accept risk or legal accountability. High-risk evaluations need enforceable isolation, real-time monitoring, independent shutdown controls and named incident owners before testing begins.
Read article →Third-party assessments capture a moment. Strong vendor security limits connected trust, monitors critical access throughout the lifecycle and prepares the business to contain supplier failure.
Read article →Shadow IT is driven by productivity. The real security problem begins when technology use and information movement become invisible and ungoverned.
Read article →A signed risk acceptance records a conscious decision to proceed. The exposure and accountability still remain with the organisation.
Read article →Shadow AI is spreading through everyday work faster than governance can keep up. Visibility must come before control.
Read article →AI adoption is moving at employee speed while governance moves at organisational speed. The first challenge is visibility.
Read article →