Maya Kaczorowski

@mayakaczorowski.com

I love puzzles almost as much as ice cream she/her

Wrote up some thoughts for how Okta is getting squeezed from all sides: squished by Rippling at the bottom, Msft at the top, and other markets and startups in the middle. I hope you love some red string diagrams 🤣 ventureinsecurity.net/p/the-unbund...

The unbundling of Okta: are startups chipping away at Okta?

A guest post from Maya Kaczorowski who breaks down Okta’s competition and how Okta is not being unbundled, but rather squeezed from all sides.

ventureinsecurity.net

I dug into the FedRAMP marketplace data and see just why FedRAMP is so hot right now 🔥: while new authorizations haven't increased much, re-uses are skyrocketing. Take a look at who is selling the most to government, and which agencies are buying: mayakaczorowski.com/blogs/fedramp

FedRAMP by the numbers

FedRAMP authorizations seem to have recently increased. Which providers benefit the most from FedRAMP, and who's buying? Let's look at the data.

mayakaczorowski.com

“Let's say you've got horsepower and bandwidth to burn, and just want to see these AI models burn. ... It's also sort of an art work, just me unleashing shear unadulterated rage at how things are going.” love to see it www.404media.co/developer-cr...

Developer Creates Infinite Maze That Traps AI Training Bots

"Nepenthes generates random links that always point back to itself - the crawler downloads those new links. Nepenthes happily just returns more and more lists of links pointing back to itself."

404media.co

Dear Santa: please no more security dashboards this year. We've got enough tools telling us about problems and that don't work well together — how about some that help the security team scale? My wishlist for better security tools from an imaginary CISO: mayakaczorowski.com/blogs/ciso-wishlist

Dear Santa, all I want for Christmas is better security tools

What CISOs want for Christmas are better security tools -- that solve problems rather than just finding them, work like modern developer tools, consolidate functionality, cover complex environments, a...

mayakaczorowski.com

Zero trust: everyone (was) talking about it, but how far did we get? From inventory basics to the long tail of unsolved challenges, here's a realistic look at where you are in your zero trust journey, from a talk @ericchiang.bsky.social and I gave in 2022 😅 mayakaczorowski.com/blogs/road-t...

The road to zero trust is paved with good intentions

Where is your organization really in your zero trust journey, and how much further do you have to do? Implementing a true zero trust architecture is more aspirational than achievable.

mayakaczorowski.com

What keeps security leaders up at night? I interviewed 57 CISOs and security leaders to find out. The answers were surprisingly consistent: access management challenges, vulnerability management complexity, and limited SaaS visibility. Read the post: mayakaczorowski.com/blogs/what-s...

What sucks in security? Research findings from 50+ security leaders

I interviewed 57 security leaders and asked them "What sucks in security?" Their top pain points were inconsistent access management, vulnerability prioritization and remediation, and obtaining SaaS l...

mayakaczorowski.com