Security Misconfigurations

A security misconfiguration is a setting that’s valid, functional, and quietly leaves you exposed, which is exactly why scanners and EDR routinely miss it. These articles cover the misconfigurations behind real breaches, why they persist through audits, and how to detect and correct them at scale.

Automated Remediation: Closing the Gap Between Risk Hunting & Hardening

Automated Remediation: Closing the Gap Between Risk Hunting & Hardening

Automated remediation closes the gap between finding risk and maintaining a hardened state – turning security findings into prioritized, validated, reversible fixes that stay enforced as environments change.

Learn more

Topic

Author

ncsc-caf-cyber-attacks-defense

Implementing NCSC CAF and Ensuring Device Security at Scale

Thriving through the NCSC CAF means turning secure configuration into an operational discipline, with continuous enforcement, safe remediation, and measurable posture gains.

Jamie Byers
Jamie Byers
Mar 29, 2023 | 5 min read
Photo of an hourglass, captioned 'Time is money. Are you wasting yours?'

Are Configuration Changes Costing You Too Much Time?

When every configuration change requires manual validation, coordination, and follow-up, the cost adds up fast. Learn how to reduce delays, control configuration drift, and improve endpoint posture with continuous enforcement and measurable outcomes.

Matt Rowe
Matt Rowe
Oct 6, 2022 | 4 min read

Want updates?

Capture the noteworthy, cut the noise!

Get Remedio’s monthly endpoint security briefing on emerging risks, hardening strategies, and what’s new in enterprise security.

Subscribe to our newsletter to stay up-to-date and in the loop.

One email a month. Unsubscribe anytime.

Illustration of the Follina vulnerability with a Microsoft Office logo, captioned 'Find and fix Follina in one fell swoop'

Taking Follina From Headache to Handled

Follina is a reminder that detection alone doesn’t reduce exposure. This post breaks down why Microsoft’s initial guidance left gaps, what a fuller remediation approach looks like, and how security teams can reduce the attack surface quickly without adding more operational friction.

Tal Kollender
Tal Kollender
Jun 2, 2022 | 7 min read
remediation-risk-free-without-regrets

Making Remediation Risk-Free for Stable Security

Managing configurations, patching, and updating system controls is one of the most notably difficult things that any CISO has to deal with. Yet it is also among the most critical, as systems that are exposed through outdated patches or excessive access permissions become prime targets for attackers. Our research confirms that misconfigurations and overlooked gaps […]

Tomer Talgam
Tomer Talgam
Oct 20, 2021 | 5 min read
what-are-security-misconfigurations

Misconfigurations – The Overlooked Risk Fueling 1 in 3 Breaches

Misconfigurations don’t just create risk, they create preventable exposure. See why they fuel 1 in 3 breaches and how safe remediation helps close the gap.

Jamie Byers
Jamie Byers
Jul 29, 2021 | 5 min read
top-active-directory-threats-to-be-aware-of

Are You Effectively Managing the Top Active Directory Threats?

Managing Active Directory threats means more than spotting misconfigurations. Learn where AD exposure builds, how posture degrades over time, and how to close the gap with safe remediation.

Tal Kollender
Tal Kollender
Jul 12, 2021 | 6 min read
cyber-posture-you-cant-stop-trying

How Remedio Helps Organizations Improve their Cyber Posture

Cyber posture doesn’t improve just because you can see the problem. It improves when misconfigurations are hardened, configuration drift is controlled, and safe remediation happens fast enough to shrink the exposure gap. This post breaks down how Remedio helps organizations move from visibility to continuous enforcement, stronger endpoint posture, and measurable risk reduction.

Ran Shiftan
Ran Shiftan
Dec 16, 2020 | 5 min read
ntlm-security-dilemma

NTLM Security in a Cloud-First World: Why It’s Time to Let Go

NTLM still shows up in cloud-first environments more often than security teams would like, and that’s the problem. This legacy authentication protocol keeps extending the exposure gap between what you’ve modernized and what adversaries can still exploit. In this article, we break down why NTLM remains a stubborn source of risk, where it hides in real enterprise environments, and what operators can do to phase it out without creating operational chaos.

Mor Bikovsky
Mor Bikovsky
Aug 26, 2020 | 5 min read