Security | Threat Detection | Cyberattacks | DevSecOps | Compliance

Datadog Apps: Build and Ship Apps Securely and Natively

In today’s AI-first world, anyone can build an app. The hard part is shipping it securely where your teams already work. Datadog Apps lets you build and deploy apps natively in Datadog, with your existing data, integrations, permissions, governance, and observability built in. The next chapter of app development starts now.

Aligning Application Security Software with Business Growth Objectives

AppSec teams know application risk is growing, but budget conversations are often won and lost outside the security team, in rooms full of executives who speak the language of revenue and delivery velocity, not CVSS scores. The core argument: application security software is easier to fund when it is tied to growth, resilience, compliance, and delivery outcomes… not just technical findings.

How to Make Smart Security Decisions in the AI Era

AI is changing the speed and scale of cyber risk, but the fundamentals of security remain the same. Elisa Costante, VP of Software Engineering at Forescout, discusses why visibility, risk assessment, and adaptive controls are essential for protecting organizations against rapidly evolving threats. Learn more.

The Critical Asset Nobody Thought to Protect

Ask an organization about its most critical assets and you'll hear the usual answers: health records, PHI, sensitive data. Then one person said fertilizer. The room laughed until he explained. With large grounds to maintain, the organization kept big stores of it on site, and in the wrong hands, that becomes a serious physical threat. Insider risk isn't only about files. It's about anything that could cause harm if someone misused it.

Is Your OT Jump Server Giving Vendors More Access Than They Need?

A vendor can bypass MFA and sign in with an individual account while still being able to reach industrial systems unrelated to the job. Before replacing your current setup, follow one real service request from approval through completion. The exercise can reveal outdated permissions, unnecessary network connectivity, shared credentials, or records that are difficult to retrieve when you need them.

How Active Roles by One Identity supports IAM in a university environment

Managing user accounts, permissions and security access across a university environment involves significant administrative work. For institutions that rely on Microsoft Active Directory, keeping that infrastructure organized, secure and current can quickly become resource-intensive as student and staff populations shift each semester. This type of challenge grows when IT teams must handle onboarding, access changes and offboarding manually for each individual.

What Does NIST IR 8587 Mean for API Security?

On September 15, 2026, NIST published Internal Report 8587, “Protecting Tokens and Assertions from Forgery, Theft, and Misuse.” It’s built to extend NIST Special Publication 800-53 Release 5.1.1, and on paper it reads like an SSO hardening document for government agencies and their cloud vendors.