Reducing Mixtape to Master Key Scenarios - How to Block the Dark Army from Mayhem Using API-Driven Access Control
Security BSides San Francisco via YouTube
Launch a New Career with Certificates from Google, IBM & Microsoft
Become an AI & ML Engineer with Cal Poly EPaCE — IBM-Certified Training
Overview
Google, IBM & Meta Certificates — All 10,000+ Courses at 40% Off
One annual plan covers every course and certificate on Coursera. 40% off for a limited time.
Get Full Access
Explore strategies for implementing API-driven access control to enhance security and reduce the risks associated with "master key" privileges in this informative conference talk from BSidesSF 2017. Discover how to prevent unauthorized access and potential security breaches by implementing temporary, context-based privileged access. Learn about innovative approaches such as granting sudo permissions based on on-call schedules or requiring approved Jira tickets for sensitive database access. Gain insights into building a more secure infrastructure by eliminating permanent "master keys" and implementing dynamic, API-driven access control mechanisms that align with specific operational needs and security best practices.
Syllabus
Introduction
What is a mixtape
Master Keys
Authorization
Key Management
Options
Taught by
Security BSides San Francisco