Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Featured Post

Trust as the currency of innovation: Data Privacy Day 2026

When data privacy goes wrong, we can see how damaging its ripple effects can be. This narrative has spurred a change in leaders, who are keen to mitigate risk. With this strategic shift, data privacy has moved far beyond policy documents and annual audits. In 2026, it underpins how organisations operate, innovate, and earn confidence at every level of the business. Secure, well-governed data is what enables teams to collaborate, scale, and make decisions at speed.
Featured Post

Passwords a necessary evil: Are we ready for a passwordless world?

For decades, passwords have been the gatekeepers of our digital lives. From logging into emails and banking apps to accessing social media and workplace systems, passwords have been the standard tool for authentication. Yet, as cyberattacks grow in sophistication and frequency, and as users juggle dozens of complex logins, it's clear that passwords are not only inconvenient, but they are increasingly insecure.

Preemptive Security, Governed Autonomy, and the Reality of Modern SOC Operations

Artificial intelligence is now central to every conversation about the future of security operations. Terms like autonomous, agentic, and preemptive are everywhere. Yet much of the discussion skips the harder question CISOs, SOC leaders, and boards actually care about: how AI can be applied responsibly, predictably, and at scale in real-world security operations. If we get this wrong, we do not just risk wasted investment. We risk eroding trust in the SOC itself.

How to Implement AI Code Generation Securely in Your SDLC

AI adoption is no longer a future state; it’s the current reality. According to the 2025 Stack Overflow Developer Survey, 84% of respondents are using or planning to use AI tools in their development process. But speed without guardrails creates debt, and in the case of AI, it creates security debt at an alarming rate. Recent data shows that nearly half of the time, AI assistants are likely introducing risky, known vulnerabilities directly into your codebase.

Are we trusting AI too much?

Gone are the days when attackers had to break down doors. Now, they just log in with what look like legitimate credentials. This shift in tactics has been underway for a while, but the rapid adoption of artificial intelligence is adding a new layer of complexity. AI is a powerful tool, but our growing reliance on it comes with a catch: it’s eroding our critical thinking skills.

ServiceNow and CyberArk: New REST API integration for enhanced credential management

ServiceNow’s External Credential Storage and Management Application is designed to help organizations securely retrieve and manage credentials from external vaults during IT operations, like discovery and orchestration, without storing sensitive data in ServiceNow. This helps ensure compliance, reduces risk, and strengthens privileged access security across hybrid environments.

Reach Security Recognized as a Representative Provider of ASCA in the Gartner Innovation Insight: Automated Security Control Assessment

In its January 2026 research report, Innovation Insight: Automated Security Control Assessment, Gartner discusses why misconfigured security controls remain one of the most persistent drivers of breaches and why automation is now required to address the problem at scale.

December Threat Intelligence Spotlight Report

Each month, our Cyber Threat Intelligence team compiles data from our engagements to determine key industry trends. We look at the initial access methods threat actors are using to gain entry into a network, types of incidents most commonly impacting organizations, which sectors are being more heavily targeted, and which threat groups are most prevalent.

Securing OT Access with Identity and Visibility: Kroll, Saviynt and Nozomi Networks

Industrial organizations face a new era of risk. As operational technology (OT) environments become more connected, the challenge of securing access and maintaining visibility continues to grow. In response, Kroll, Saviynt, Nozomi Networks and CrowdStrike have joined forces to deliver a unified solution that empowers organizations to protect their critical infrastructure without disrupting operations.