0:00
/
0:00
Transcript

Resilient Cyber w/ Cory Michal (AppOmni) - Unpacking the SaaS Security Supply Chain Landscape

In this episode of Resilient Cyber, I sit down with SaaS Security leader AppOmni's VP of Information Security, Cory Michal, to discuss the State of SaaS and Software Supply Chain Security.

This comes on the heels of the Salesloft/Salesforce SaaS supply chain attacks and AppOmni's recent State of SaaS Security 2025 Report.

Prefer to Listen? Spotify & Apple Podcasts


Thanks for reading the Resilient Cyber Newsletter! Subscribe for FREE and join 45,000+ readers to receive weekly updates with the latest news across AppSec, Leadership, AI, Supply Chain, and more for Cybersecurity


Interested in sponsoring an issue of Resilient Cyber?

This includes reaching over 45,000 subscribers, ranging from Developers, Engineers, Architects, CISO’s/Security Leaders and Business Executives

Reach out below!

-> Contact Us! <-


Cory and I discussed:

  • The recent Salesloft Drift/Salesforce incident that impacted 700~ organizations and involved compromised OAuth tokens

  • Challenges involving OAuth in SaaS environments, such as over-permissive access, limited monitoring and unsecured storage of secrets

  • The broader rising trend of SaaS supply chain attacks

  • The false sense of security organizations have when it comes to compliance of SaaS vendors, and the unaccounted for risks associated with integrations, credentials, configurations, data and more

  • AppOmni’s State of SaaS Security Report and key takeaways

  • The rise of Non-Human Identities (NHI)’s and Agentic AI and its implications for SaaS access control and incidents

  • The lack of widespread SSPM adoption and the oversights and gaps that leaves for organizations when it comes to SaaS security

Discussion about this video

User's avatar