API Security

Featured image for Identity Management Day 2022: Are Your Digital Identities Secure?

Identity Management Day 2022: Are Your Digital Identities Secure?

Hosted by the Identity Defined Security Alliance and National Cybersecurity Alliance, Identity Management Day aims to provide education about the dangers of casually or improperly managing and securing digital identities, raising awareness and sharing best practices across the industry.   According to Gartner, APIs are expected to be the most frequent attack vector in 2022, and...
Read More
Featured image for Making Dynamic Authorization an Essential Pillar in Federal Government Zero Trust Architecture Strategies

Making Dynamic Authorization an Essential Pillar in Federal Government Zero Trust Architecture Strategies

Author: Brook Lovatt, Chief Product Officer of Cloudentity The government’s focus on Zero Trust has risen in the past year, as shown by the Biden Administration's May 2021 and January 2022 executive orders and the Cybersecurity and Infrastructure Security Agency’s (CISA) Zero Trust Maturity Model. CISA’s Zero Trust Maturity Model is one of many roadmaps...
Read More
Featured image for Build a GraphQL client application to consume protected GraphQL API resources

Build a GraphQL client application to consume protected GraphQL API resources

This article is part 3 of our GraphQL application protection series. In this article, we will build a GraphQL client that is capable of invoking GraphQL API calls, obtain authorized access tokens from a Cloudentity authorization server and send the authorization token to underlying GraphQL services. Part 1: Externalized authorization for GraphQL using the Cloudentity...
Read More
Featured image for Protecting GraphQL applications through authorization and consent

Protecting GraphQL applications through authorization and consent

This article is part 2 of our GraphQL application protection series. In this article, we will build a GraphQL API server and protect its resources with externalized policies administered in the Cloudentity Authorization SaaS platform. We will also protect the GraphQL API endpoint data with a local policy enforcement/decision point for the app deployed within...
Read More
Featured image for Externalized Authorization for GraphQL

Externalized Authorization for GraphQL

This article is the first part of a series to explore usage of the Cloudentity authorization platform for externalized GraphQL runtime authorization along with policy based access controls for GraphQL native constructs. Modern applications require runtime and flexible authorization controls to manage the security and risk of data exposed using technologies like GraphQL to various...
Read More
Featured image for Identity and Authorization At Cloud Scale

Identity and Authorization At Cloud Scale

The future has a lot to answer for. For decades we’ve been promised super-cool inventions that we still haven’t received - flying cars, jetpacks and IAM platforms that provide security, scale and manageability- all with wrapped up with 21st century automation. George Jetson’s job had two settings ("Start" & "Stop") and the computer did the...
Read More
Featured image for Cloudentity Featured in Gartner 2021 Hype Cycle for APIs: Accelerating Development Velocity with Authorization & Consent Automation

Cloudentity Featured in Gartner 2021 Hype Cycle for APIs: Accelerating Development Velocity with Authorization & Consent Automation

By Nathanael Coffing, CSO and co-founder of Cloudentity We are thrilled to share that Cloudentity was featured in Gartner’s 2021 Hype Cycle for Identity and Access Management (IAM) Technologies. The report serves as a key resource for security and cloud architects who are researching which technologies to implement in order to expedite application delivery and...
Read More
Featured image for Cloudentity Named Product and Innovation Leader in KuppingerCole Leadership Compass for Access Management

Cloudentity Named Product and Innovation Leader in KuppingerCole Leadership Compass for Access Management

By Nathanael Coffing, CSO We’re excited to announce that for the third consecutive year, leading analyst firm KuppingerCole has selected Cloudentity as a “Product and Innovation Leader” in its annual Access Management Leadership Compass.  The Leadership Compass highlights the leaders in innovation, product features and market reach for Access Management for on-premise, cloud, and hybrid...
Read More
Featured image for 5 Reasons to Avoid Traditional IAM’s Bridge to Nowhere

5 Reasons to Avoid Traditional IAM’s Bridge to Nowhere

Even a global pandemic isn’t reducing the demand for digital transformation. As customers look for ways to engage with applications on their smart devices and workforces are increasingly “work from home”, the need for digital transformation has accelerated. Development teams eager to progress app modernization and transformation goals are looking for ways to accelerate the...
Read More