Security Intelligence, Decoded
Deep dives into cloud security, real-world breach analysis, compliance automation, and the engineering behind EchelonGraph.
CSPM and PAM After Palo Alto Idira + Versa CSPM: What the Compliance Layer Does Next
Palo Alto Networks shipped Idira (next-gen PAM built on CyberArk) and Versa Networks shipped CSPM in the same week. Both confirm AI has changed the rules. We walk through what each launch gets right, and the compliance layer that now has to keep up — 30-second re-scoring, 21 EU AI Act obligations live, and 7 newly shipped CIS-AWS IAM controls.
EchelonGraph
Founder
More Articles
EU AI Act Compliance: The Complete Guide to August 2, 2026 Enforcement
The EU AI Act starts enforcing high-risk AI system obligations on August 2, 2026. Penalties reach €35M or 7% of global revenue. This is the complete guide — every Article, every deadline, every control, with the technical path to continuous compliance.
EchelonGraph Tier 3 (EcheDeep) is GA — Continuous, Zero-Knowledge eBPF Detection in Your Cluster
Tier 3 ships an eBPF DaemonSet that runs in your customer cluster, redacts PII at the kernel boundary, and submits envelope-encrypted findings sealed by a customer-controlled KMS. We never see your plaintext. Here's what's inside the v3.0.0 release.
What Coupang's $1.17 Billion Data Breach Teaches Us About Insider Threats
A former employee's unrevoked access key exposed 33.7 million customers over 5 months. We break down the timeline, the security failures, and how graph-based security intelligence could have caught it in hours, not months.
Introducing EchelonGraph: Cloud Security Intelligence for the Modern Enterprise
Today we're launching EchelonGraph — a platform that maps your entire cloud attack surface, visualizes blast radius, and automates compliance across AWS, GCP, and Azure.
Understanding Blast Radius: Why Graph-Based Security Matters
Traditional security tools scan in isolation. EchelonGraph uses graph databases to answer the question every CISO asks: 'If this one server gets compromised, what else is at risk?'
8 Compliance Frameworks Every Cloud Team Should Know
From SOC 2 to GDPR to DPDP Act — a practical guide to the compliance frameworks that matter for cloud-native teams, what they require, and how to automate scoring.