Technology Magazine March 2023 | Page 31

Fast 500
using to protect themselves , and that ’ s why they are still very , very vulnerable .
Once a criminal has access to AD , they can move laterally within the networks of the business taking down one system after another reading the data . Companies hold vast amounts of valuable data – critical customer information – and the very secrets of the companies themselves . In this sense , AD is something of a treasure trove . It contains the keys to the kingdom ; a map that reveals where their resources that contain value are .

Fast 500

In December , Semperis ranked No . 64 on the Deloitte Technology Fast 500 , a ranking of the 500 fastest-growing technology , media , telecommunications , life sciences , fintech , and energy tech companies in North America . In a statement , the company said it ' s more than 2,800 % revenue growth was down to high market demand for identity protection in AD environments .
Q . HOW CAN AD SECURITY BE BUILT FOR TODAY ’ S FAST- CHANGING TECH LANDSCAPE ?

» The best approach for securing AD is implementing a layered defence strategy that protects AD before , during , and after an attack . Organisations need solutions that address every stage of the attack lifecycle , including identifying and mitigating vulnerabilities , detecting advanced attacks , automatically remediating malicious changes , and ensuring a malware-free AD recovery in the event of a cyberattack .

Given that many AD attacks are successful , organisations should prepare for the worst by having a tested AD forest recovery plan in place so they can resume business operations as quickly as possible after an attack .
Q . WHAT TOOLS AND TECHNOLOGIES ARE YOU EXCITED ABOUT IN FUTURE ?

» We are entering a phase of increased focus on identity protection – after all , hackers don ’ t break in , they log in ! As such , easily determining unknown vulnerabilities that allow compromising the most critical components of any identitysystem – the so-called “ top tier ” or “ tier 0 ” objects – is a key capability I am excited about .

Semperis is already offering the powerful Purple-Knight vulnerability scanning tool for validating AD and Azure-AD environments for wellknown misconfigurations .
Semperis will also be releasing a free version of another powerful graph-based security tool , named Forest Druid , which will allow locating those company-specific risks within AD that do not fit into existing patterns . Utilising these technologies in concert will further help to improve the security posture of companies , making life harder for the cybercriminals to succeed on their vicious path of destruction .
technologymagazine . com 31