Mission Control Blog

Discover how to advance your security program with the latest content from our community.
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Identifying & Avoiding Insider Threats - Cybersecurity Summit Dallas
May 13, 2021
Blog
Identifying & Avoiding Insider Threats - Cybersecurity Summit Dallas

In this panel originally recorded for CyberSecurity Summit 2021 in Dallas, speakers from JupiterOne, Cobalt, Code42, Netenrich, Securonix, Spirion, and Venafi discuss

  • CAASM
Tyler Shields
Identifying & Avoiding Insider Threats - Cybersecurity Summit Nashville
May 6, 2021
Blog
Identifying & Avoiding Insider Threats - Cybersecurity Summit Nashville

In this panel originally recorded for CyberSecurity Summit 2021 in Nashville, speakers from JupiterOne, Code42, Venafi, and Abnormal Security discuss the various fact

  • CAASM
Tyler Shields
How Cyber Assets Are Like Star Trek's Tribbles Problem
May 5, 2021
Blog
How Cyber Assets Are Like Star Trek's Tribbles Problem

When I was in middle school, my science teacher, Mr. B., introduced me to the original Star Trek series. And it had me shook. Ever since, the series has been my stand

  • CAASM
Jennie Duong
JupiterOne Raises $30 Million Series-B Led by Sapphire Ventures
May 4, 2021
Blog
JupiterOne Raises $30 Million Series-B Led by Sapphire Ventures

For Star Wars fans, May the 4th is a very special day. We get to make all sorts of silly puns, memes, and jokes based on our love of a series of movies.

Erkang Zheng
Map Your Cyber Relationship Graph Before Your Adversaries Do
April 28, 2021
Blog
Map Your Cyber Relationship Graph Before Your Adversaries Do

I was watching the movie Heat today. For those of you that don’t know anything about the movie, it’s an amazing cops and robbers story featuring an all star cast that

  • CAASM
Tyler Shields
Make Compliance = Real Security in HealthCare
April 22, 2021
Blog
Make Compliance = Real Security in HealthCare

JupiterOne CEO Erkang Zheng has traveled the journey of a healthtech CISO with 20+ years of cybersecurity experience. In this fireside chat delivered at HealthConDX

  • GRC
Erkang Zheng
I didn't want to be CISO - Sounil Yu joins JupiterOne
April 21, 2021
Blog
I didn't want to be a CISO - Sounil Yu joins JupiterOne

Over the past year, I thoroughly enjoyed my time at YL Ventures as their CISO-in-Residence, meeting brilliant entrepreneurs and brainstorming creative approaches for

Sounil Yu
Podcast: The Cyber Defense Matrix
April 21, 2021
Blog
Podcast: The Cyber Defense Matrix

In 2020, Security Magazine listed Sounil Yu as one of the most Influential People in Security, in part because of his work on the Cyber Defense Matrix, a framework

  • CAASM
Sounil Yu
Two Truths And A Lie About Cloud Security
April 8, 2021
Blog
Two Truths And A Lie About Cloud Security

Cloud technology saved many businesses from catastrophe during this past year, but it's also introduced additional challenges to security, compliance, and governance

  • CSPM
Ashleigh Lee
Stunt Kites and Security Tools
April 5, 2021
Blog
Stunt Kites and Security Tools

I rode my bicycle across the United States in 1996 (Everett, Washington to Washington DC), and up into Nova Scotia. That summer I logged over 4400 miles on my bike.

  • CAASM
Mark Miller
You Can Not Secure What You Can Not See
April 2, 2021
Blog
You Can Not Secure What You Can Not See

"The future of application development and infrastructure is in public clouds — and for many organizations, it's not just the future; it's today. Securing data, apps,

  • CAASM
Mark Miller
Video: How to modify out-of-the-box dashboards
April 1, 2021
Blog
Video: How to modify out-of-the-box dashboards

The purpose of the JupiterOne Dashboards is to have a centralized set of dashboards that can be used by your security team to view, edit, and share with all teams in

Jayson Jensen
TadPole Viewer Released in the Wild
April 1, 2021
Blog
TadPole Viewer Released in the Wild

At JupiterOne, we are always trying to find new and exciting ways for you to draw meaning from your data. Every spring we are reminded that digital assets and living

Carter Hesterman
Turn 10,000 AppSec Findings into 10 Actual Risks
March 31, 2021
Blog
Turn 10,000 AppSec Findings into 10 Actual Risks

You’ve seen it, you’ve been a part of it. Alert fatigue sets in with warnings coming from multiple domains: cloudsec, infrasec, netsec, data security, appsec, seceng

  • SecOps
  • Vuln Mgmt
George Tang
Podcast: The 2021 OWASP Top 10
March 26, 2021
Blog
Podcast: The 2021 OWASP Top 10

The OWASP Top 10 is considered one of the most important community contributions to come out OWASP. In 2003, just two years after the organization was started, the

Mark Miller
JupiterOne, DevOps Connect at RSAC 2021
March 24, 2021
Blog
JupiterOne, DevOps Connect at RSAC 2021

DevOps Connect: DevSecOps, this year co-organized by JupiterOne and MediaOps, has been part of the RSA Conference agenda for 5 years. Each spring, we put together

Mark Miller
Integrations and APIs - OH MY!
March 18, 2021
Blog
Integrations and APIs - OH MY!

As recently as just a few years ago, products, infrastructure, and security tooling were all on-premise and designed without thought for API-based integrations.

  • CAASM
Tyler Shields
How to Create Customized Dashboards
March 17, 2021
Blog
How to Create Customized Dashboards

The JupiterOne Insights Application allows you to create customized dashboards in multiple ways. In this video, Jayson Jensen shows you customization strategies using

Jayson Jensen
Video: Insights Application Overview
March 15, 2021
Blog
Video: Insights Application Overview

In this session, Jayson Jensen, takes a quick look at the Insights Application of JupiterOne, with a high-level overview of how to use the tool. The Insights App

Jayson Jensen
CyberSecurity Summit 2021 - Spotlight Demo
March 12, 2021
Blog
CyberSecurity Summit 2021 - Spotlight Demo

Visibility is a problem we all have when it comes to cyber assets and security. How do we keep track of all of the cloud assets we have in AWS, GCP, and Azure? What

Akash Ganapathi
Fireside Chat: Security as a Basic Right
March 12, 2021
Blog
Fireside Chat: Security as a Basic Right

Tyler Shields and Erkang Zheng presented at Cybersecurity 2021 on March 4, 2021. Instead of the usual slidedeck presentation, they had a little chat to talk through

  • CAASM
Tyler Shields
Video: Workflows within the J1 Compliance App
March 10, 2021
Blog
Video: Workflows within the J1 Compliance App

Compliance Workflows make it possible to collaborate internally with your team members or externally with your auditors. George Tang shows how to use the pre-built

  • GRC
George Tang
JupiterOne Adds Strategic Investors to Drive Expansion of Its Innovative Cyber Asset Security and Governance Platform
March 9, 2021
Blog
JupiterOne Adds Strategic Investors to Drive Expansion of Its Innovative Cyber Asset Security and Governance Platform

We announced today that several new industry leaders across SaaS and Cybersecurity organizations have joined their strategic board of investors. Frederic Kerrest, Exe

Jennie Duong
Video: Update Your Vulnerable NPM Packages
March 5, 2021
Blog
Video: Update Your Vulnerable NPM Packages

In this "Bite-size Security Showcase", Erich Smith walks through a common developer security scenario, dealing with vulnerable third party dependencies.

Erich Smith
We Are JupiterOne
March 4, 2021
Blog
We Are JupiterOne

Brand is perception, and perception is important. We all want to be seen by others as having certain values, ethics, morals, and vision. The interesting thing about

Tyler Shields
Video: Evidence Collection with the Compliance App
March 3, 2021
Blog
Video: Evidence Collection with the Compliance App

For compliance purposes, whether going through an external audit or for an internal initiative, it will be required to demonstrate to auditors or other stakeholders

  • GRC
George Tang
Video: How to Map GRC Policies and Procedures
March 2, 2021
Blog
Video: How to Map GRC Policies and Procedures

George Tang continues his exploration of JupiterOne GRC capabilities with this video on how to map policies and procedures to specific controls or requirements within

  • GRC
George Tang
Security is a Basic Right
March 2, 2021
Blog
Security is a Basic Right

We live in a world where security is something that you have to do, and very rarely something that you want to do. In the world of young companies and startups,

  • CSPM
  • CAASM
  • GRC
  • SecOps
Erkang Zheng
Video: Managing GRC with JupiterOne
February 24, 2021
Blog
Video: Managing GRC with JupiterOne

George Tang has recorded a series of videos to show how JupiterOne can be used for GRC. In this session, George covers the usage of policies and procedures within J1

  • GRC
George Tang
3 Steps for Continuous Improvement in Cloud Security | JupiterOne
February 2, 2021
Blog
3 Steps for Continuous Improvement in Cloud Security

Relationships make life rich. Together, we can do so much more than a single person alone – inspire change on micro and macro levels, recover and restore hope from

  • CSPM
  • GRC
Ashleigh Lee
Podcast: Spotlight Interview with Damon Edwards | JupiterOne | Simplified Security Operations
January 29, 2021
Blog
Podcast: Spotlight Interview with Damon Edwards

When Shannon Lietz and the team at DevSecOps.org published the DevSecOps Manifesto six years ago, security was uppermost in their minds. The manifesto starts with a

  • SecOps
Mark Miller
People, Process, Technology: The Podcast | JupiterOne | Simplified Security Operations
January 27, 2021
Blog
Podcast: People, Process, Technology

You might have noticed something different, a new name for the podcast, at the beginning of the program today. Keeping a feel of the pulse of the industry is one of

  • SecOps
Mark Miller
S3 Buckets Granted Full Access to Someone Other Than Account OwnerInterrogate Your AWS Environments | JupiterOne | Simplified Security Operations
January 21, 2021
Blog
Video: S3 Buckets Granted Full Access to Someone Other Than Account Owner

In this J1 Query example, we're going to be searching for people who are not the owners of an S3 bucket, but still have full control and meta-permissions for that

Akash Ganapathi
Unencrypted S3 Buckets Containing CloudTrail Logs | JupiterOne
January 21, 2021
Blog
Video: Unencrypted S3 Buckets Containing CloudTrail Logs

This is one in a series of short, simple J1 queries that will help you interrogate your AWS environments. The JupiterOne platform used to run these queries is free.

Akash Ganapathi
People, Process, Technology: The Missing Factor | JupiterOne
January 7, 2021
Blog
People, Process, Technology: The Missing Factor

You've heard it before, "People, Process, and Technology". It's become a meme and a mantra that has lost meaning through overuse. It headlines hundreds of slide

Mark Miller
2020 JupiterOne Year in Review - Bigger, Better, Easier | JupiterOne
December 29, 2020
Blog
2020 JupiterOne Year in Review - Bigger, Better, Easier

Thank you for being part of our growing community at JupiterOne. Sincerely, thanks for your support in 2020 as we continue to grow the J1 universe. We are truly happy

Mark Miller
JupiterOne Visual Query BuilderVideo Overview (4 minutes)
December 21, 2020
Blog
JupiterOne Visual Query Builder Video Overview (4 minutes)

Hello, my name is Henry Garrett. I developed the J1 Visual Query Builder to help you understand our query language and use a "no code" solution to write your own J1QL

Henry Garrett
Cyber Asset Relationships Matter - Analyzing Relationship Mapping
December 17, 2020
Blog
Cyber Asset Relationships Matter - Analyzing Relationship Mapping

In Cyber Asset Relationships Matter – Part One, we defined what the term "cyber asset relationship" means and explained the importance of modeling those relationship

  • CAASM
  • SecOps
JupiterOne Team
`deferred-maintenance` CLI tool | JupiterOne
December 14, 2020
Blog
`deferred-maintenance` CLI tool

As we go through our days as developers, there is a tendency for certain types of maintenance activity to be deprioritized or forgotten about. It might be because

  • SecOps
Erich Smith
Cyber Asset Relationships Matter - Part One | JupiterOne
December 11, 2020
Blog
Cyber Asset Relationships Matter - Part One

Relationships matter. They matter in life, they matter in business, they matter in nearly everything we do. This is especially true when it comes to your cyber assets

  • CAASM
  • SecOps
JupiterOne Team
Cyber Assets - The Future of Cybersecurity | JupiterOne
December 3, 2020
Blog
Cyber Assets - The Future of Cybersecurity

In 2020, as we round out what has turned out to be a terrible start to the new decade, cyberattacks and breaches continue trending up. Threats are growing faster than

Tyler Shields
Sampling Based Security – An Outdated Approach | JupiterOne
November 11, 2020
Blog
Sampling Based Security – An Outdated Approach

If all it takes is one bad apple to spoil the entire bunch, should the owner of an apple orchard do a statistical sampling to look for the bad apple, or should they

  • CAASM
  • GRC
Erkang Zheng
JupiterOne Announces $19M A Round | JupiterOne
September 17, 2020
Blog
JupiterOne Announces $19M A Round

Three years ago, I joined LifeOmic, the latest of three companies founded by successful serial entrepreneur Donald Brown, with the crazy idea of building a startup in

Erkang Zheng
Finding risky OAuth scopes in G Suite | JupiterOne
September 10, 2020
Blog
Finding risky OAuth scopes in G Suite

I recently discovered an open source Google Apps script from Slack that describes some difficult questions one of their engineers was asking about their G Suite organ

  • CAASM
  • SecOps
Austin Kelleher
JupiterOne Completes SOC 2 Type 2 | JupiterOne
May 12, 2020
Blog
JupiterOne Completes SOC 2 Type 2

LifeOmic, the creator of JupiterOne, the LIFE mobile apps and the Precision Health Cloud platform in use at major medical and cancer centers, today announced the

JupiterOne Team
Why Do Compliance as Code | JupiterOne
May 12, 2020
Blog
Why Do Compliance as Code

Whether it's a self-assessment or an official audit or examination, evidence collection is central to how you evaluate your organization's compliance with security

  • GRC
JupiterOne Team
What is Asset Discovery? | JupiterOne | Simplified Security Operations
May 8, 2020
Blog
What is Asset Discovery?

For most organizations – whether cloud-native or going through a digital transformation – managing your cloud and non-cloud digital assets has followed form with

  • CAASM
  • SecOps
JupiterOne Team
Building a Streamlined Cyber Risk Assessment Process using Jira and JupiterOne | JupiterOne | Simplified Security Operations
April 10, 2020
Blog
Building a Streamlined Cyber Risk Assessment Process using Jira and JupiterOne

Risk assessment is a foundational step to any security governance program. It is a mandatory step by regulations and compliance frameworks like HIPAA and GDPR.

  • SecOps
Erkang Zheng
Quickly Spot Desk Top Vulnerabilities | JupiterOne | Simplified Security Operations
April 1, 2020
Blog
Quickly Spot Desk Top Vulnerabilities

Printed confidential information remains one of the leading culprits of data breaches organizations faced. But why is something like this still happening when a

JupiterOne Team
RSA 2020 | JupiterOne | Simplified Security Operations
March 30, 2020
Blog
How Reddit Uses a Graph-Based CMDB

RSA 2020 | JupiterOne | Simplified Security Operations

  • SecOps
JupiterOne Team
Intelligent Security Remediation | JupiterOne
March 26, 2020
Blog
Enabling Intelligent Security Remediation

For most cloud-based organizations, the number of resources, services and users make keeping up with changes across your digital environment nearly impossible.

  • CAASM
  • SecOps
JupiterOne Team
Reduce Noise when Analyzing User MFA Status with Graph Queries
March 17, 2020
Blog
Reduce Noise when Analyzing User MFA Status with Graph Queries

There is no doubt multi-factor authentication (MFA) is a simple and effective way to reduce account compromise, yet only 11% of all enterprise accounts use a MFA

  • SecOps
Erkang Zheng
The Devil's in the (Meta) Details | JupiterOne
March 11, 2020
Blog
The Devil's in the (Meta) Details

Whether you are gathering evidences for SOC 2 Type II or just doing some vulnerability analysis and reporting, data reliability is critical. Your confidence in your

  • CAASM
  • SecOps
JupiterOne Team
JupiterOne & Reddit at RSA | JupiterOne
March 4, 2020
Blog
JupiterOne & Reddit at RSAC

Last week, LifeOmic CISO and JupiterOne Founder Erkang Zheng spoke with Reddit CISO Sean Catlett at RSA Confererce 2020.

  • CAASM
JupiterOne Team
Building Compliance Evidence Download with a Functional Pipeline
February 5, 2020
Blog
Building Compliance Evidence Download with a Functional Pipeline

One of the newer features of JupiterOne is the ability to download all evidence for a compliance standard. This feature collects the compliance requirements, question

  • GRC
JupiterOne Team
Vuls & Gitleaks Integrations | JupiterOne
January 22, 2020
Blog
Vuls & Gitleaks Integrations

Cloud-based organizations are increasingly leveraging open-sourced tools to help in their security and compliance monitoring. Whether it's trying to keep a handle on

  • SecOps
JupiterOne Team
2019 Year in Review | JupiterOne | Simplified Security Operations
December 23, 2019
Blog
2019 Year in Review

As we look forward to the last week of 2019, with 2020 patiently waiting for us, we wanted to dive into some of the data highlighting how JupiterOne is helping dozens

JupiterOne Team
SecOps Breadth vs Depth | JupiterOne | Simplified Security Operations
December 13, 2019
Blog
SecOps Breadth vs Depth - Which Wins

Which approach to managing security operations has a greater impact on security posture?

  • CSPM
  • SecOps
JupiterOne Team
Out of the Box Insights | JupiterOne | Simplified Security Operations
November 13, 2019
Blog
Out of the Box Insights

When you know exactly what you are looking for, it should be easier – not harder – to get to the data. But security teams know this is rarely the case. Think about

  • CAASM
  • SecOps
JupiterOne Team
Finding Security Budget | JupiterOne | Simplified Security Operations
November 13, 2019
Blog
Making the Case For Security Budget

Security budgets are growing and that trend is expected to continue in the coming year. However, that growth is built more on security fears, privacy concerns and

  • CAASM
  • GRC
JupiterOne Team
This is some text inside of a div block.
This is some text inside of a div block.
This is some text inside of a div block.
This is some text inside of a div block.

Lorem ipsum dolor sit amet, consectetur adipiscing elit. Suspendisse varius enim in eros elementum tristique. Duis cursus, mi quis viverra ornare, eros dolor interdum nulla, ut commodo diam libero vitae erat. Aenean faucibus nibh et justo cursus id rutrum lorem imperdiet. Nunc ut sem vitae risus tristique posuere.

  • This is some text inside of a div block.
  • This is some text inside of a div block.
  • This is some text inside of a div block.
  • This is some text inside of a div block.
  • This is some text inside of a div block.