Ty can introduce you to 10+ people at Webflow
or
New to LinkedIn? Join now
By clicking Continue to join or sign in, you agree to LinkedIn’s User Agreement, Privacy Policy, and Cookie Policy.
San Francisco Bay Area
Tel Aviv District, Israel
Greater Minneapolis-St. Paul Area
Mclean, VA
Richmond, VA
Greater Philadelphia
University Park, PA
Hoxhunt
14K followers
Security teams want employees to report more suspicious emails... until they actually do. Then reporting volume spikes, false positives pile up and analysts get buried in manual triage. Users don’t know what was real or if reporting even helped. High reporting without automation doesn’t strengthen detection, it shifts the burden to the SOC. Encouraging users to report is step one. Turning that reporting into clean, actionable signal is what makes it sustainable. Because reporting only works when: • Employees get immediate feedback • Benign emails are cleared automatically • Real threats escalate without manual review • Alert volume doesn’t explode as participation grows When that loop works, reporting becomes a force multiplier. When it doesn’t, teams quietly start wishing volume would slow down. If you’re seeing reporting increase but triage strain grow with it, this is the bottleneck worth fixing. Here’s how automated phishing incident response closes that gap: https://hubs.ly/Q0456L5P0
API ThreatStats
2K followers
🚨Medium Risk Alert🚨: Gitea before 1.23.0 has a vulnerability (CVE-2025-68939) that allows attackers to upload forbidden file types. This highlights the importance of API security and keeping components updated. Stay safe! #Gitea #Vulnerability #OWASP #APISecurity https://lnkd.in/gtk_bXfh
Corelight
23K followers
Alerts tell you something happened. They rarely tell you what it means. Security teams don't struggle because they lack detection. They struggle when alerts arrive without enough context to understand the risk. Corelight Investigator shifts the focus from alert volume to investigation, automatically building understanding around activity so teams can move from notification to clarity. Learn how Corelight Investigator supports investigation workflows within Open NDR: 👉 https://lnkd.in/gAxPJMQJ
Cartisien
139 followers
UI for security products isn’t about pretty graphs. It’s about reducing uncertainty, earning consent, and helping people act with confidence under pressure. When the stakes are high, design choices either build trust—or push users to workarounds. Here are patterns we use to drive adoption and product‑led growth in security tools: - Make permissions a value story, not a wall. Replace “We need org admin” with: - What we need: “Repo:Read to map dependencies.” - Why: “Shows vulnerable packages in under 2 minutes.” - What we’ll never do: “We do not write to your code.” - Control: “Change scopes anytime in Settings.” Link “See exactly what we collect.” Track: permission-accept rate and drop-off by scope. - Progressive disclosure over modal overload. Don’t front‑load every risk knob. Start with secure defaults, then: - Inline “Why this is safe” tooltips. - “Learn more” paths to deeper config when intent is clear. - Contextual previews (dry-run) before applying policies. - Evidence-first alerts. For triage, show: - What happened (artifact, actor, time) + confidence score. - Why it triggered (rule, signals) with link to raw evidence. - Next best actions that match role (Operator vs Admin). Track: time to first meaningful action, false-positive dismissal reason. - Right friction, right moment. Add friction to irreversible moves; remove it from discovery. - Confirmation should include impact summary, blast radius, rollback path, and who will be notified. - Onboarding should offer a safe “simulate” mode to prove value before full deploy. - Explain the tradeoffs. Security is risk management. - When toggling “Aggressive detection,” show expected noise vs coverage delta. - For “Auto-remediate,” show failure modes and audit trail behavior. - Design for least privilege without blocking progress. - Role-aware UI: admins see policy and billing; operators see investigations. - Task scopes: let users complete read-only evaluation before requesting write scopes. - Trust signals, not scare copy. - Plain-language microcopy. No “critical!!” unless it is—and say why. - Visible auditability: who changed what, when, and how to revert. Metrics we like for UI for security products: - Time-to-first-signal (minutes to first credible finding) - Permission consent rate by scope - Dry-run to deploy conversion - Alert action rate and recovery rate after error - % agents/connectors silently disabled (trust erosion signal) If your next sprint touches onboarding, permissions, or alert UX, start here. Small shifts in clarity and control compound into trust—and that’s what unlocks adoption in security.
Private Identity
If your biometric solution stores or transmits biometric data, you’re not just deploying auth—you’re deploying a high-value liability. Centralized repositories become breach magnets. Data in transit widens exposure. And privacy compliance (GDPR, BIPA, HIPAA) becomes an ongoing operational tax. PrivateID takes a different path: ✅ Biometrics run entirely on-device ✅ No biometric data is ever stored or transmitted ✅ Compliance is inherent to the architecture Powered by patented homomorphic tokenization, there’s nothing usable to steal—and nothing sensitive for your team to babysit. Result: passwordless login, secure approvals, and instant recovery— 🚫 no honeypots 🚫 no compliance fire drills 🚫 no “security vs UX” tradeoff Biometrics built for privacy-first security. Rethinking your 2026 authentication strategy? Let’s talk.
Find curated posts and insights for relevant topics all in one place.
Agree & Join LinkedIn