DevelopersDevSecOpsFeaturedLet's TalkSecurityVideo

Companies need a proactive approach to API security, Salt Security can help

0

Salt Security, a regular on TFiR, recently announced the industry’s first API posture governance engine. We invited Nick Rago, Field CTO of Salt Security, to better understand the API Security space and how Salt Security is helping organizations improve their security posture.

Key takeaways

API security platform and emerging threats

  • Rago discusses Salt Security’s API protection platform, emphasizing the importance of API posture governance engine in defending against emerging threats.
  • He highlights the company’s innovative approach to API security, fostering secure API-driven success while minimizing risk.

API security risks and the need for proactive strategy

  • Organizations are struggling with API sprawl and security risks without proper strategy.
  • Organizations lack a proactive approach to API security, leading to reactive measures and potential risks.

API security and governance

  • Rago highlights the importance of API poster governance in addressing security concerns across the API lifecycle, impacting developers, architects, and security teams.
  • Organizations need to establish standards and guardrails for developers to ensure API security, and that testing for known bad practices is crucial but not enough.
  • Organizations are primarily vulnerable to low-sophistication API attacks, with exceptions.

API security posture governance and risk hunting

  • Organizations often overlook API assets they already know about, leading to breaches.
  • Organizations are moving from threat hunting to risk hunting, focusing on API intelligence to identify and protect against risks.
  • Posture governance is critical for security posture, assessing and enforcing standards and policies in the posture framework.

API security and posture governance

  • Organizations are building frameworks for API posture governance, with standards and regulations tailored to their specific verticals and business needs.
  • Salt Security is working on helping customers with posture governance, providing guidance on building standards and benchmarking against other companies in their vertical for improved security.
  • Organization aims to help companies reduce cybersecurity risks through AI-powered threat protection.

Guest: Nick Rago (LinkedIn)
Company: Salt Security (Twitter)
Show: Let’s Talk