YoVDO

Reducing Mixtape to Master Key Scenarios - How to Block the Dark Army from Mayhem Using API-Driven Access Control

Offered By: Security BSides San Francisco via YouTube

Tags

Security BSides Courses Cybersecurity Courses Authorization Courses Key Management Courses Privileged Access Management Courses

Course Description

Overview

Explore strategies for implementing API-driven access control to enhance security and reduce the risks associated with "master key" privileges in this informative conference talk from BSidesSF 2017. Discover how to prevent unauthorized access and potential security breaches by implementing temporary, context-based privileged access. Learn about innovative approaches such as granting sudo permissions based on on-call schedules or requiring approved Jira tickets for sensitive database access. Gain insights into building a more secure infrastructure by eliminating permanent "master keys" and implementing dynamic, API-driven access control mechanisms that align with specific operational needs and security best practices.

Syllabus

Introduction
What is a mixtape
Master Keys
Authorization
Key Management
Options


Taught by

Security BSides San Francisco

Related Courses

Computer Security
Stanford University via Coursera
Cryptography II
Stanford University via Coursera
Malicious Software and its Underground Economy: Two Sides to Every Story
University of London International Programmes via Coursera
Building an Information Risk Management Toolkit
University of Washington via Coursera
Introduction to Cybersecurity
National Cybersecurity Institute at Excelsior College via Canvas Network