<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>PRIVAL</title>
	<atom:link href="https://www.prival.ca/feed/" rel="self" type="application/rss+xml" />
	<link>https://www.prival.ca</link>
	<description>For up to date IT</description>
	<lastBuildDate>Wed, 29 Apr 2026 13:29:47 +0000</lastBuildDate>
	<language>en-GB</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.9.4</generator>

<image>
	<url>https://www.prival.ca/wp-content/uploads/2025/03/cropped-Favicon-Site-Web-removebg-preview-32x32.png</url>
	<title>PRIVAL</title>
	<link>https://www.prival.ca</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>The shadow pandemic: Why bans and training fall short</title>
		<link>https://www.prival.ca/the-shadow-pandemic-why-bans-and-training-fall-short/</link>
		
		<dc:creator><![CDATA[Robin Almaraz]]></dc:creator>
		<pubDate>Wed, 29 Apr 2026 13:25:22 +0000</pubDate>
				<category><![CDATA[Cybsersecurity]]></category>
		<category><![CDATA[News and Updates]]></category>
		<guid isPermaLink="false">https://www.prival.ca/?p=14483</guid>

					<description><![CDATA[Bans don't work. Training falls short. Here's what actually controls AI risk inside your organization.]]></description>
										<content:encoded><![CDATA[<div class="fusion-fullwidth fullwidth-box fusion-builder-row-1 fusion-flex-container nonhundred-percent-fullwidth non-hundred-percent-height-scrolling" style="--awb-border-radius-top-left:0px;--awb-border-radius-top-right:0px;--awb-border-radius-bottom-right:0px;--awb-border-radius-bottom-left:0px;--awb-margin-bottom-medium:40px;--awb-flex-wrap:wrap;" ><div class="fusion-builder-row fusion-row fusion-flex-align-items-flex-start fusion-flex-content-wrap" style="max-width:calc( 1200px + 0px );margin-left: calc(-0px / 2 );margin-right: calc(-0px / 2 );"><div class="fusion-layout-column fusion_builder_column fusion-builder-column-0 fusion_builder_column_1_1 1_1 fusion-flex-column" style="--awb-bg-blend:overlay;--awb-bg-size:cover;--awb-width-large:100%;--awb-margin-top-large:0px;--awb-spacing-right-large:0px;--awb-margin-bottom-large:0px;--awb-spacing-left-large:0px;--awb-width-medium:100%;--awb-spacing-right-medium:0px;--awb-spacing-left-medium:0px;--awb-width-small:100%;--awb-spacing-right-small:0px;--awb-spacing-left-small:0px;"><div class="fusion-column-wrapper fusion-flex-justify-content-flex-start fusion-content-layout-column"><div class="fusion-text fusion-text-1 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">You&#8217;ve probably already tried to stop it. You&#8217;ve written policies, run training sessions, maybe even blocked some tools through the firewall. And yet your employees are still using unauthorized AI.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Here&#8217;s why that approach is failing, and what actually works.</p>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"></div><div class="fusion-text fusion-text-2"><h3>The numbers that should concern you</h3>
</div><div class="fusion-text fusion-text-3 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p data-pm-slice="0 0 &#091;&#093;">Forrester calls it the &#8220;shadow pandemic&#8221;. Sixty percent of workers are using their own AI tools to do their jobs, deliberately going around their organization&#8217;s security policies.</p>
<p data-pm-slice="0 0 &#091;&#093;">Not because they&#8217;re reckless but because they feel it&#8217;s the most efficient way to get their work done.</p>
<p>Meanwhile, 38% of employees acknowledge sharing sensitive work information with AI tools without their employer&#8217;s permission. And 69% of companies suspect or have seen employees using forbidden generative AI tools.</p>
</div><div class="fusion-text fusion-text-4"><h3 class="font-semibold pdf-heading-class-replace pb-xxs text-lg leading-&#091;30px&#093; &#091;&amp;:not(:first-child)&#093;:pt-&#091;15px&#093; &#091;&amp;_.underline&#093;:underline-offset-&#091;6px&#093; &#091;&amp;_a&#093;:underline-offset-&#091;6px&#093; fusion-responsive-typography-calculated" dir="ltr" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.799999px">Why &#8220;don&#8217;t do that&#8221; doesn&#8217;t work</h3>
</div><div class="fusion-text fusion-text-5 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Here&#8217;s the uncomfortable truth. <strong>Training and policies alone won&#8217;t stop shadow AI.</strong></p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Training is necessary but insufficient. You can tell employees not to paste confidential data into ChatGPT. They&#8217;ll nod, agree, and then do it anyway when they have a deadline and a tool that works.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Bans are even worse. They don&#8217;t eliminate the problem, they hide it. Employees go underground. They use personal devices, home networks, or tools you don&#8217;t know about. You lose visibility, which means you lose the ability to protect data.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">The real issue isn&#8217;t employee intent. It&#8217;s incentive alignment. Your employees are measured on output. The AI tool makes them faster. So they use it, regardless of what the policy says.</p>
</div><div class="fusion-text fusion-text-6"><h3 class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">The missing piece: Active controls at the prompt level</h3>
</div><div class="fusion-text fusion-text-7 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Here&#8217;s what actually works. Don&#8217;t block the tool. Block the data that shouldn&#8217;t go through it.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Modern security solutions are doing something traditional approaches miss. They operate at the prompt level, the actual moment when an employee types information into an AI tool.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">The capabilities being deployed look like this:</p>
<h4 class="text-text-100 mt-2 -mb-1 text-base font-bold">Real-time detection</h4>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Identify when sensitive data is about to be sent to an AI tool before it leaves your network. Personal information, proprietary code, API keys, customer records, financial data. Catch it in the moment.</p>
<h4 class="text-text-100 mt-2 -mb-1 text-base font-bold">Intelligent redaction</h4>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Instead of blocking the entire prompt, redact or mask the sensitive bits. Let employees use the tool, but strip out the data that shouldn&#8217;t go there. This maintains productivity while protecting information.</p>
<h4 class="text-text-100 mt-2 -mb-1 text-base font-bold">Contextual policies</h4>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Different teams have different risk profiles. Marketing can share types of data Finance can&#8217;t. Modern solutions let you set granular policies per department, per role, per data type.</p>
<h4 class="text-text-100 mt-2 -mb-1 text-base font-bold">Visibility without blame</h4>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Log what&#8217;s happening without creating a culture of surveillance. You&#8217;re not trying to catch people breaking rules. You&#8217;re trying to understand the risk and protect data.</p>
<h4 class="text-text-100 mt-2 -mb-1 text-base font-bold">Active enforcement</h4>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Don&#8217;t just alert. Block risky prompts, reroute them, or require additional approval before sensitive data leaves. It&#8217;s like a DLP system, but built for the AI era.</p>
</div><div class="fusion-text fusion-text-8"><h3 class="font-semibold pdf-heading-class-replace pb-xxs text-lg leading-&#091;30px&#093; &#091;&amp;:not(:first-child)&#093;:pt-&#091;15px&#093; &#091;&amp;_.underline&#093;:underline-offset-&#091;6px&#093; &#091;&amp;_a&#093;:underline-offset-&#091;6px&#093; fusion-responsive-typography-calculated" dir="ltr" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.799999px">Why this matters: You&#8217;re already using AI anyway</h3>
</div><div class="fusion-text fusion-text-9 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Here&#8217;s the thing your employees know that you might not. AI is already embedded in the tools you&#8217;ve approved. Slack, Microsoft 365, Salesforce, Google Workspace. They all have AI built in. Your team uses these features every day, often without realizing it.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">So the question isn&#8217;t &#8220;will we use AI?&#8221; It&#8217;s <strong>&#8220;will we use it safely, or will we use it in the shadows?&#8221;</strong></p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Active controls at the prompt level give you a third option. You don&#8217;t have to choose between banning AI and ignoring the risk. You can enable it and protect it simultaneously.</p>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-top:35px;margin-bottom:1%;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-title title fusion-title-1 fusion-sep-none fusion-title-text fusion-title-size-two fusion-animated" style="--awb-text-color:var(--awb-color6);--awb-margin-bottom:40px;--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;--awb-font-size:20px;" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;font-size:1em;--fontSize:20;--minFontSize:20;line-height:1.5;">Worried about shadow AI in your organization?</h2></div><div class="fusion-text fusion-text-10 fusion-animated fusion-text-no-margin" style="--awb-margin-bottom:25px;" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view"><p>Map your AI exposure and set up the right guardrails with the help of our specialists and the right tools, from visibility to active controls.</p>
</div><div style="text-align:center;"><a class="fusion-button button-flat fusion-button-default-size button-default fusion-button-default button-1 fusion-button-default-span fusion-button-default-type fusion-animated" style="--awb-margin-bottom:40px;--button-border-radius-top-left:35px;--button-border-radius-top-right:35px;--button-border-radius-bottom-right:35px;--button-border-radius-bottom-left:35px;--button_typography-font-family:&quot;Montserrat&quot;;--button_typography-font-style:normal;--button_typography-font-weight:600;" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view" target="_self" href="https://outlook.office.com/book/ConsultationTI@prival.ca/s/0IR9ptEJYkO1m4Sns0PGsQ2?ismsaljsauthenabled"><span class="fusion-button-text awb-button__text awb-button__text--default">Start here</span></a></div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"></div><div class="fusion-text fusion-text-11"><h3 class="font-semibold pdf-heading-class-replace pb-xxs text-lg leading-&#091;30px&#093; &#091;&amp;:not(:first-child)&#093;:pt-&#091;15px&#093; &#091;&amp;_.underline&#093;:underline-offset-&#091;6px&#093; &#091;&amp;_a&#093;:underline-offset-&#091;6px&#093; fusion-responsive-typography-calculated" dir="ltr" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.799999px">What comes next</h3>
</div><div class="fusion-text fusion-text-12 fusion-text-no-margin" style="--awb-margin-bottom:50px;"><p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">This is where the real strategy starts. You need:</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;"><strong>1. Visibility into what&#8217;s happening.</strong> What data is flowing where? Which tools are being used? Who&#8217;s doing it?</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;"><strong>2. Clear policies. </strong>Show people how to use AI safely.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;"><strong>3. Active guardrails.</strong> Technology that enforces those policies at the moment of risk.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;"><strong>4. Culture shift.</strong> From &#8220;AI is forbidden&#8221; to &#8220;AI is enabled, but we&#8217;re protecting our data&#8221;.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">None of this is theoretical. Organizations are deploying these capabilities right now. And the ones that move first will have a significant advantage over those still trying to ban their way to safety.</p>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-text fusion-text-13 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p style="font-family: 'Red Hat Display'; font-weight: 400;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">Sources:</p>
<ul>
<li class="whitespace-normal break-words pl-2">Forrester. (2023). <em>Predictions 2024: Generative AI Transitions From Hype To Intent.</em></li>
<li class="whitespace-normal break-words pl-2">Forrester. (2023). <em>Predictions 2024: Cybersecurity, Risk, And Privacy.</em></li>
<li class="whitespace-normal break-words pl-2">IBM. (2024). <em>What Is Shadow AI?</em></li>
<li class="whitespace-normal break-words pl-2">Gartner. (2024). <em>Predicts 2025: Shadow AI Security Breaches Will Affect 40% of Enterprises by 2030.</em></li>
<li class="whitespace-normal break-words pl-2">McKinsey &amp; Company. (2025). <em>The State of AI in 2025: Agents, Innovation, and Transformation.</em></li>
</ul>
</div><div class="fusion-title title fusion-title-2 fusion-sep-none fusion-title-text fusion-title-size-two" style="--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;--fontSize:30;--minFontSize:30;line-height:1.5;"><h2>More insights</h2></h2></div><div class="fusion-recent-posts fusion-recent-posts-1 avada-container layout-default layout-columns-3"><section class="fusion-columns columns fusion-columns-3 columns-3"><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/the-shadow-pandemic-why-bans-and-training-fall-short/" aria-label="The shadow pandemic: Why bans and training fall short" class="hover-type-none"><img fetchpriority="high" decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="Two business colleagues collaborate at a workstation in a modern office, reviewing AI tool usage across the organization to identify shadow AI exposure." srcset="https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-18x10.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-29T08:29:47-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/the-shadow-pandemic-why-bans-and-training-fall-short/">The shadow pandemic: Why bans and training fall short</a></h4></div></article><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/the-ai-adoption-blind-spot-what-the-data-is-telling-you/" aria-label="The AI adoption blind spot: What the data is telling you" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="IT leader assessing AI security risk in his organization" srcset="https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-18x10.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-28T15:09:08-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/the-ai-adoption-blind-spot-what-the-data-is-telling-you/">The AI adoption blind spot: What the data is telling you</a></h4></div></article><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/why-identity-federation-and-sso-are-a-security-priority/" aria-label="Why identity federation and SSO are a security priority" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="" srcset="https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-18x12.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-03-26T14:01:34-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/why-identity-federation-and-sso-are-a-security-priority/">Why identity federation and SSO are a security priority</a></h4></div></article></section></div></div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>The AI adoption blind spot: What the data is telling you</title>
		<link>https://www.prival.ca/the-ai-adoption-blind-spot-what-the-data-is-telling-you/</link>
		
		<dc:creator><![CDATA[Robin Almaraz]]></dc:creator>
		<pubDate>Tue, 28 Apr 2026 20:08:40 +0000</pubDate>
				<category><![CDATA[Cybsersecurity]]></category>
		<category><![CDATA[News and Updates]]></category>
		<guid isPermaLink="false">https://www.prival.ca/?p=14476</guid>

					<description><![CDATA[Gartner just shifted the entire data security playbook for GenAI. Here's what your organization needs to see.]]></description>
										<content:encoded><![CDATA[<div class="fusion-fullwidth fullwidth-box fusion-builder-row-2 fusion-flex-container nonhundred-percent-fullwidth non-hundred-percent-height-scrolling" style="--awb-border-radius-top-left:0px;--awb-border-radius-top-right:0px;--awb-border-radius-bottom-right:0px;--awb-border-radius-bottom-left:0px;--awb-margin-bottom-medium:40px;--awb-flex-wrap:wrap;" ><div class="fusion-builder-row fusion-row fusion-flex-align-items-flex-start fusion-flex-content-wrap" style="max-width:calc( 1200px + 0px );margin-left: calc(-0px / 2 );margin-right: calc(-0px / 2 );"><div class="fusion-layout-column fusion_builder_column fusion-builder-column-1 fusion_builder_column_1_1 1_1 fusion-flex-column" style="--awb-bg-blend:overlay;--awb-bg-size:cover;--awb-width-large:100%;--awb-margin-top-large:0px;--awb-spacing-right-large:0px;--awb-margin-bottom-large:0px;--awb-spacing-left-large:0px;--awb-width-medium:100%;--awb-spacing-right-medium:0px;--awb-spacing-left-medium:0px;--awb-width-small:100%;--awb-spacing-right-small:0px;--awb-spacing-left-small:0px;"><div class="fusion-column-wrapper fusion-flex-justify-content-flex-start fusion-content-layout-column"><div class="fusion-text fusion-text-14 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p class="p2">Gartner is direct about where this is heading. By 2026, <span style="color: var(--awb-color6);">75% of organizations running GenAI initiatives </span><span style="font-family: var(--awb-text-font-family); font-size: var(--awb-font-size); font-style: var(--awb-text-font-style); letter-spacing: var(--awb-letter-spacing); text-align: var(--awb-content-alignment); text-transform: var(--awb-text-transform);"><span style="color: var(--awb-color6);">will reprioritize their data security efforts</span>, shifting spending from structured to unstructured data.</span></p>
<p class="p2">That&#8217;s not a prediction. That&#8217;s a warning.</p>
<p class="p2">We&#8217;re seeing it firsthand. Whether it&#8217;s a municipality, a healthcare clinic, or a manufacturing operation, the <span style="font-family: var(--awb-text-font-family); font-size: var(--awb-font-size); font-style: var(--awb-text-font-style); letter-spacing: var(--awb-letter-spacing); text-align: var(--awb-content-alignment); text-transform: var(--awb-text-transform);">pattern keeps repeating. Teams discover new LLM tools their employees are using. IT blocks one through </span><span style="font-family: var(--awb-text-font-family); font-size: var(--awb-font-size); font-style: var(--awb-text-font-style); letter-spacing: var(--awb-letter-spacing); text-align: var(--awb-content-alignment); text-transform: var(--awb-text-transform);">the firewall. Another appears two weeks later. It&#8217;s whack-a-mole, and it&#8217;s everywhere.</span></p>
<p class="p2">And here&#8217;s what makes it worse. According to Verizon&#8217;s 2025 Data Breach Investigations Report, nearly 50% of data breaches come from employees sending sensitive information to the wrong place, not from external attackers. Now imagine that happening through tools your IT team doesn&#8217;t know exist.</p>
</div><div class="fusion-text fusion-text-15"><h3 class="p1">Why this is happening: The speed of adoption outpaced your governance</h3>
</div><div class="fusion-text fusion-text-16 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><div>
<div class="standard-markdown grid-cols-1 grid &#091;&amp;_&gt;_*&#093;:min-w-0 gap-3">
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Here&#8217;s the structural problem. Your governance framework was built for a different world. IT rollouts? Quarterly. Board approvals? Months. Procurement? Annual cycles.</p>
</div>
</div>
<div>
<div class="standard-markdown grid-cols-1 grid &#091;&amp;_&gt;_*&#093;:min-w-0 gap-3">
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;"><strong>AI doesn&#8217;t play by those rules.</strong></p>
</div>
</div>
<div>
<div class="standard-markdown grid-cols-1 grid &#091;&amp;_&gt;_*&#093;:min-w-0 gap-3">
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Employees sign up for ChatGPT in five minutes. They share access within the hour. By the time your approval process even gets scheduled, the tool is already embedded and data is moving through it.</p>
</div>
</div>
<div>
<div class="standard-markdown grid-cols-1 grid &#091;&amp;_&gt;_*&#093;:min-w-0 gap-3">
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Your framework wasn&#8217;t designed for this pace. And the speed keeps accelerating.</p>
</div>
</div>
</div><div class="fusion-text fusion-text-17"><h3>What this means: You can&#8217;t control what you can&#8217;t see</h3>
</div><div class="fusion-text fusion-text-18 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p data-pm-slice="0 0 &#091;&#093;">So here&#8217;s the realization you need to have. You can&#8217;t write policy for tools you don&#8217;t know exist. You can&#8217;t protect data flowing to systems you&#8217;re not monitoring. You can&#8217;t audit what&#8217;s invisible.</p>
<p>Stop trying to ban AI. That battle is already lost. The real battle is visibility.</p>
</div><div class="fusion-text fusion-text-19"><h3>The consequence: it&#8217;s not just IT anymore</h3>
</div><div class="fusion-text fusion-text-20 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">And here&#8217;s where it gets real. When this breaks, and it will, the pressure won&#8217;t come from your IT team. It&#8217;ll come from:</p>
<ul class="&#091;li_&amp;&#093;:mb-0 &#091;li_&amp;&#093;:mt-1 &#091;li_&amp;&#093;:gap-1 &#091;&amp;:not(:last-child)_ul&#093;:pb-1 &#091;&amp;:not(:last-child)_ol&#093;:pb-1 list-disc flex flex-col gap-1 pl-8 mb-3">
<li class="whitespace-normal break-words pl-2"><strong>Legal.</strong> Where are your controls? What data went where?</li>
<li class="whitespace-normal break-words pl-2"><strong>Compliance.</strong> Did we violate any regulations? What&#8217;s our exposure?</li>
<li class="whitespace-normal break-words pl-2"><strong>Finance.</strong> What&#8217;s the cost of a breach? What&#8217;s our liability?</li>
<li class="whitespace-normal break-words pl-2"><strong>The board.</strong> How did this happen on your watch?</li>
</ul>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">When a regulator asks where your safeguards were, saying &#8220;we didn&#8217;t know employees were using it&#8221; isn&#8217;t a defense. It&#8217;s negligence.</p>
</div><div class="fusion-text fusion-text-21"><h3>What this means for your role</h3>
</div><div class="fusion-text fusion-text-22 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">If you&#8217;re a <strong>CIO</strong>, you&#8217;re seeing operational risk. How do you govern something moving faster than your processes?</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">If you&#8217;re a <strong>CISO</strong>, you&#8217;re seeing compliance exposure. The liability is real.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">If you&#8217;re an <strong>IT manager</strong>, you&#8217;re seeing resource crunch. You&#8217;re already stretched thin, and now there&#8217;s another invisible layer to manage.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Same problem. Different pressures.</p>
</div><div class="fusion-text fusion-text-23"><h3 class="p1">Start here: Three questions for your team</h3>
</div><div class="fusion-text fusion-text-24 fusion-text-no-margin" style="--awb-margin-bottom:50px;"><p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Before you can fix visibility, you need to know what you&#8217;re working with. Ask your team:</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;"><strong>1. What AI tools are people actually using right now?</strong> Not what you&#8217;ve approved. What are they really using? Slack integrations? Browser extensions? Standalone apps? If you can&#8217;t answer this with confidence, you have a visibility gap.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;"><strong>2. What data is flowing into these tools?</strong> Customer information? Proprietary code? Internal strategies? Get specific. This tells you the real risk surface.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;"><strong>3. Which tools have access to your systems or data?</strong> Some AI tools connect to your Microsoft 365, Google Workspace, or CRM. They have permissions you probably forgot about. Find them.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">These three questions won&#8217;t solve the problem. But they&#8217;ll tell you whether you have one, and how big it is.</p>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-text fusion-text-25 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p style="font-family: 'Red Hat Display'; font-weight: 400;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">Sources:</p>
<ul>
<li class="whitespace-normal break-words pl-2">Gartner. (2024). <em>Security Leaders&#8217; Guide to Data Security in the Age of GenAI.</em></li>
<li class="whitespace-normal break-words pl-2">Verizon. (2025). <em>2025 Data Breach Investigations Report.</em></li>
</ul>
</div><div class="fusion-title title fusion-title-3 fusion-sep-none fusion-title-text fusion-title-size-two" style="--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;--fontSize:30;--minFontSize:30;line-height:1.5;"><h2>More insights</h2></h2></div><div class="fusion-recent-posts fusion-recent-posts-2 avada-container layout-default layout-columns-3"><section class="fusion-columns columns fusion-columns-3 columns-3"><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/the-shadow-pandemic-why-bans-and-training-fall-short/" aria-label="The shadow pandemic: Why bans and training fall short" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="Two business colleagues collaborate at a workstation in a modern office, reviewing AI tool usage across the organization to identify shadow AI exposure." srcset="https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-18x10.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-29T08:29:47-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/the-shadow-pandemic-why-bans-and-training-fall-short/">The shadow pandemic: Why bans and training fall short</a></h4></div></article><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/the-ai-adoption-blind-spot-what-the-data-is-telling-you/" aria-label="The AI adoption blind spot: What the data is telling you" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="IT leader assessing AI security risk in his organization" srcset="https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-18x10.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-28T15:09:08-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/the-ai-adoption-blind-spot-what-the-data-is-telling-you/">The AI adoption blind spot: What the data is telling you</a></h4></div></article><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/why-identity-federation-and-sso-are-a-security-priority/" aria-label="Why identity federation and SSO are a security priority" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="" srcset="https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-18x12.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-03-26T14:01:34-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/why-identity-federation-and-sso-are-a-security-priority/">Why identity federation and SSO are a security priority</a></h4></div></article></section></div></div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Why identity federation and SSO are a security priority</title>
		<link>https://www.prival.ca/why-identity-federation-and-sso-are-a-security-priority/</link>
		
		<dc:creator><![CDATA[Robin Almaraz]]></dc:creator>
		<pubDate>Thu, 26 Mar 2026 19:01:34 +0000</pubDate>
				<category><![CDATA[Cybsersecurity]]></category>
		<category><![CDATA[News and Updates]]></category>
		<guid isPermaLink="false">https://www.prival.ca/?p=14451</guid>

					<description><![CDATA[Local accounts create blind spots attackers count on. Here's what identity federation and SSO actually fix, and why centralized authentication matters now.]]></description>
										<content:encoded><![CDATA[<div class="fusion-fullwidth fullwidth-box fusion-builder-row-3 fusion-flex-container nonhundred-percent-fullwidth non-hundred-percent-height-scrolling" style="--awb-border-radius-top-left:0px;--awb-border-radius-top-right:0px;--awb-border-radius-bottom-right:0px;--awb-border-radius-bottom-left:0px;--awb-margin-bottom-medium:40px;--awb-flex-wrap:wrap;" ><div class="fusion-builder-row fusion-row fusion-flex-align-items-flex-start fusion-flex-content-wrap" style="max-width:calc( 1200px + 0px );margin-left: calc(-0px / 2 );margin-right: calc(-0px / 2 );"><div class="fusion-layout-column fusion_builder_column fusion-builder-column-2 fusion_builder_column_1_1 1_1 fusion-flex-column" style="--awb-bg-blend:overlay;--awb-bg-size:cover;--awb-width-large:100%;--awb-margin-top-large:0px;--awb-spacing-right-large:0px;--awb-margin-bottom-large:0px;--awb-spacing-left-large:0px;--awb-width-medium:100%;--awb-spacing-right-medium:0px;--awb-spacing-left-medium:0px;--awb-width-small:100%;--awb-spacing-right-small:0px;--awb-spacing-left-small:0px;"><div class="fusion-column-wrapper fusion-flex-justify-content-flex-start fusion-content-layout-column"><div class="fusion-text fusion-text-26 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><div>
<p><span lang="EN-CA">Your identity environment probably has more accounts than you think, and fewer eyes on them than you&#8217;d like</span></p>
</div>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"></div><div class="fusion-text fusion-text-27 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p style="font-weight: 400;">Here&#8217;s a scenario that plays out more often than most IT teams are comfortable admitting. An employee leaves. Their Active Directory account gets disabled. But the local accounts they had on three internal systems, the shared vendor credential they used for remote access, and the application account tied to their email? Those stay active. Quietly. For months, sometimes years.</p>
<p style="font-weight: 400;">This isn&#8217;t negligence. It&#8217;s the predictable result of managing identities system by system, application by application, without a centralized view of what exists and who has access to what. And according to guidance from the NSA and CISA, it&#8217;s one of the most exploitable gaps in enterprise IAM today.</p>
</div><div class="fusion-text fusion-text-28"><div>
<h2><span lang="EN-CA">The real problem with local accounts at scale</span></h2>
</div>
</div><div class="fusion-text fusion-text-29 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p style="font-weight: 400;">Local accounts feel manageable when you have a handful of systems. At scale, they become something else entirely. Every platform with its own user base, its own password policies, and its own session rules adds another layer of complexity that no team can reasonably monitor in aggregate.</p>
<p style="font-weight: 400;">The NSA and CISA are direct about this: massive volumes of locally provisioned accounts across enterprise systems simply cannot be maintained at a security level that matches the risk they represent. The issues compound quickly. Security event monitoring becomes ineffective because there is no single view of authentication activity.</p>
<p style="font-weight: 400;">Shared accounts make forensic attribution nearly impossible after an incident. And attackers who gain a foothold through one locally managed system can use that access to probe others without generating the cross-system alerts that would otherwise flag the behavior.</p>
</div><div class="fusion-text fusion-text-30"><div>
<h2><span lang="EN-CA">What identity federation and SSO actually fix</span></h2>
</div>
</div><div class="fusion-text fusion-text-31 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p style="font-weight: 400;">Identity federation and SSO are often framed as user experience improvements. One login across multiple applications. Less friction, fewer passwords to remember. That&#8217;s real, but it undersells what these technologies do from a security standpoint.</p>
<p style="font-weight: 400;">When authentication is centralized through an SSO solution tied to an identity provider, administrators gain something they don&#8217;t have in a fragmented local account environment: a single, authoritative view of who is accessing what, from where, and when.</p>
<p style="font-weight: 400;">Anomalous behavior becomes visible because there is a baseline to compare against. Policy enforcement becomes consistent because it happens in one place, not across dozens of independently configured systems.</p>
<p style="font-weight: 400;">Federation also enables a critical operational improvement around access lifecycle management. When an employee leaves, disabling the centralized identity disables access everywhere. There&#8217;s no checklist of systems to manually update and no overlooked local account still sitting open.</p>
<p style="font-weight: 400;">SSO also creates the right foundation for a stronger MFA rollout. Integrating MFA at the centralized authentication layer means you&#8217;re securing one system and covering every application it connects to, rather than attempting to configure and maintain MFA across each application independently.</p>
<p style="font-weight: 400;">The attack surface shrinks. The monitoring becomes more effective. And the user experience stays manageable.</p>
</div><div class="fusion-text fusion-text-32"><div>
<h2><span lang="EN-CA">Where most organizations have gaps</span></h2>
</div>
</div><div class="fusion-text fusion-text-33 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p style="font-weight: 400;">The honest starting point is an inventory question. Most IT teams have a reasonable picture of their primary directory and their major cloud applications. What tends to be less clear is the long tail: legacy systems with local admin accounts, vendor-managed platforms with shared credentials, applications that predate the current IAM architecture and were never brought into federation.</p>
<p style="font-weight: 400;">These are the accounts that don&#8217;t show up in standard reports and don&#8217;t generate alerts when they&#8217;re used outside of normal hours or from unexpected locations. They are exactly the kind of accounts that bad actors target because they exist outside centralized visibility.</p>
<p style="font-weight: 400;">The remediation path isn&#8217;t complicated in principle. It starts with a complete inventory of locally provisioned accounts across all systems. From there, the question is straightforward: which of these can be eliminated by extending SSO to the platform? Which require a local account for operational reasons and therefore need explicit password policies and monitoring? And which are simply legacy accounts that should have been revoked long ago?</p>
</div><div class="fusion-text fusion-text-34"><div>
<h2><span lang="EN-CA">The operational case, not just the security case</span></h2>
</div>
</div><div class="fusion-text fusion-text-35 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p style="font-weight: 400;">There&#8217;s a resource argument here that&#8217;s worth making alongside the security one. Managing multiple identity infrastructures across an organization is expensive. Each system with its own authentication logic represents ongoing configuration work, patch management, and helpdesk load.</p>
<p style="font-weight: 400;">Centralized authentication through federation and SSO reduces that overhead significantly and makes it easier to maintain security standards over time without proportionally increasing the team required to manage it.</p>
<p style="font-weight: 400;">This is part of why the NSA and CISA position identity federation not as an advanced capability but as a foundational one. Organizations that are still operating primarily on local accounts are not in a position to effectively manage the identity risks that exist in modern hybrid and multi-cloud environments.</p>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-top:35px;margin-bottom:1%;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-title title fusion-title-4 fusion-sep-none fusion-title-text fusion-title-size-two fusion-animated" style="--awb-text-color:var(--awb-color6);--awb-margin-bottom:40px;--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;--awb-font-size:20px;" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;font-size:1em;--fontSize:20;--minFontSize:20;line-height:1.5;">Planning to review your IAM environment?</h2></div><div class="fusion-text fusion-text-36 fusion-animated fusion-text-no-margin" style="--awb-margin-bottom:25px;" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view"><p style="font-weight: 400;">If you&#8217;d like to think through where your current IAM environment stands and what improvements would have the most impact, that&#8217;s exactly the kind of conversation we have with IT teams every day.</p>
</div><div style="text-align:center;"><a class="fusion-button button-flat fusion-button-default-size button-default fusion-button-default button-2 fusion-button-default-span fusion-button-default-type fusion-animated" style="--awb-margin-bottom:40px;--button-border-radius-top-left:35px;--button-border-radius-top-right:35px;--button-border-radius-bottom-right:35px;--button-border-radius-bottom-left:35px;--button_typography-font-family:&quot;Montserrat&quot;;--button_typography-font-style:normal;--button_typography-font-weight:600;" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view" target="_self" href="https://outlook.office.com/book/ConsultationTI@prival.ca/s/0IR9ptEJYkO1m4Sns0PGsQ2?ismsaljsauthenabled"><span class="fusion-button-text awb-button__text awb-button__text--default">Start now</span></a></div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"></div><div class="fusion-text fusion-text-37"><div>
<h2><span lang="EN-CA">A practical next step</span></h2>
</div>
</div><div class="fusion-text fusion-text-38 fusion-text-no-margin" style="--awb-margin-bottom:50px;"><p style="font-weight: 400;">If your organization hasn&#8217;t done a full inventory of locally provisioned accounts recently, that&#8217;s the right place to start. Not because the result will necessarily be alarming, but because you can&#8217;t make good decisions about federation and SSO strategy without knowing what you&#8217;re actually working with.</p>
<p style="font-weight: 400;">From there, assessing which applications in your environment currently support SSO federation and which don&#8217;t is the second step. Most modern platforms do. The gaps are usually legacy systems and vendor-managed applications. Knowing where those gaps are is what makes a realistic remediation roadmap possible.</p>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-text fusion-text-39 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p style="font-family: 'Red Hat Display'; font-weight: 400;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">Sources:</p>
<ul>
<li class="paragraph normal ng-star-inserted" data-start-index="11">
<p class="p1">Identity and Access Management: Recommended Best Practices for Administrators</p>
</li>
</ul>
</div><div class="fusion-title title fusion-title-5 fusion-sep-none fusion-title-text fusion-title-size-two" style="--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;--fontSize:30;--minFontSize:30;line-height:1.5;"><h2>More insights</h2></h2></div><div class="fusion-recent-posts fusion-recent-posts-3 avada-container layout-default layout-columns-3"><section class="fusion-columns columns fusion-columns-3 columns-3"><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/the-shadow-pandemic-why-bans-and-training-fall-short/" aria-label="The shadow pandemic: Why bans and training fall short" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="Two business colleagues collaborate at a workstation in a modern office, reviewing AI tool usage across the organization to identify shadow AI exposure." srcset="https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-18x10.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-29T08:29:47-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/the-shadow-pandemic-why-bans-and-training-fall-short/">The shadow pandemic: Why bans and training fall short</a></h4></div></article><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/the-ai-adoption-blind-spot-what-the-data-is-telling-you/" aria-label="The AI adoption blind spot: What the data is telling you" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="IT leader assessing AI security risk in his organization" srcset="https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-18x10.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-28T15:09:08-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/the-ai-adoption-blind-spot-what-the-data-is-telling-you/">The AI adoption blind spot: What the data is telling you</a></h4></div></article><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/why-identity-federation-and-sso-are-a-security-priority/" aria-label="Why identity federation and SSO are a security priority" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="" srcset="https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-18x12.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-03-26T14:01:34-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/why-identity-federation-and-sso-are-a-security-priority/">Why identity federation and SSO are a security priority</a></h4></div></article></section></div></div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Identity Management: 4 Critical Errors to Avoid in 2026</title>
		<link>https://www.prival.ca/identity-management-4-critical-errors-to-avoid-in-2026/</link>
		
		<dc:creator><![CDATA[Robin Almaraz]]></dc:creator>
		<pubDate>Thu, 12 Feb 2026 13:30:34 +0000</pubDate>
				<category><![CDATA[Cybsersecurity]]></category>
		<category><![CDATA[News and Updates]]></category>
		<guid isPermaLink="false">https://www.prival.ca/?p=13913</guid>

					<description><![CDATA[Secure your identities by avoiding four common pitfalls: Neglecting machine identities, static access controls, phishable authentication, and unmonitored third-party access.]]></description>
										<content:encoded><![CDATA[<div class="fusion-fullwidth fullwidth-box fusion-builder-row-4 fusion-flex-container nonhundred-percent-fullwidth non-hundred-percent-height-scrolling" style="--awb-border-radius-top-left:0px;--awb-border-radius-top-right:0px;--awb-border-radius-bottom-right:0px;--awb-border-radius-bottom-left:0px;--awb-margin-bottom-medium:40px;--awb-flex-wrap:wrap;" ><div class="fusion-builder-row fusion-row fusion-flex-align-items-flex-start fusion-flex-content-wrap" style="max-width:calc( 1200px + 0px );margin-left: calc(-0px / 2 );margin-right: calc(-0px / 2 );"><div class="fusion-layout-column fusion_builder_column fusion-builder-column-3 fusion_builder_column_1_1 1_1 fusion-flex-column" style="--awb-bg-blend:overlay;--awb-bg-size:cover;--awb-width-large:100%;--awb-margin-top-large:0px;--awb-spacing-right-large:0px;--awb-margin-bottom-large:0px;--awb-spacing-left-large:0px;--awb-width-medium:100%;--awb-spacing-right-medium:0px;--awb-spacing-left-medium:0px;--awb-width-small:100%;--awb-spacing-right-small:0px;--awb-spacing-left-small:0px;"><div class="fusion-column-wrapper fusion-flex-justify-content-flex-start fusion-content-layout-column"><div class="fusion-text fusion-text-40 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">The network perimeter is gone. Identity is now your first line of defense.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">But deploying tools isn&#8217;t enough. How you manage them defines your security posture.</p>
<p>Here are four common pitfalls that leave organizations vulnerable.</p>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"></div><div class="fusion-text fusion-text-41"><h3 class="font-semibold pdf-heading-class-replace pb-xxs text-lg leading-&#091;30px&#093; &#091;&amp;:not(:first-child)&#093;:pt-&#091;15px&#093; &#091;&amp;_.underline&#093;:underline-offset-&#091;6px&#093; &#091;&amp;_a&#093;:underline-offset-&#091;6px&#093;" dir="ltr">1. Ignoring your &#8220;machine&#8221; workforce</h3>
</div><div class="fusion-text fusion-text-42 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">When you think identity, you think human. Wrong.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Non-Human Identities (NHIs)—bots, service accounts, API keys—now outnumber human identities eight to one. These accounts are often over-privileged and under-monitored. They become prime targets for attackers seeking persistence or lateral movement.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">If your governance strategy doesn&#8217;t audit machines as rigorously as humans, you&#8217;re ignoring the majority of your attack surface.</p>
</div><div class="fusion-text fusion-text-43"><h3 class="font-semibold pdf-heading-class-replace pb-xxs text-lg leading-&#091;30px&#093; &#091;&amp;:not(:first-child)&#093;:pt-&#091;15px&#093; &#091;&amp;_.underline&#093;:underline-offset-&#091;6px&#093; &#091;&amp;_a&#093;:underline-offset-&#091;6px&#093; fusion-responsive-typography-calculated" dir="ltr" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.799999px">2. Neglecting the &#8220;Join, Move, Leave&#8221; process</h3>
</div><div class="fusion-text fusion-text-44 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Identity governance can&#8217;t be static. A critical error: Failing to automate access revocation when employees leave or change roles.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;"><strong>The risk:</strong> Privilege creep. Users retain old rights while gaining new ones. Exposure grows unnecessarily.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;"><strong>The solution:</strong> The NSA confirms it—the most impactful preventive measure is the ability to immediately revoke access when high-risk events are detected or employees depart.</p>
</div><div class="fusion-text fusion-text-45"><h3 class="fusion-responsive-typography-calculated" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.799999px">3. Trusting &#8220;phishable&#8221; MFA</h3>
</div><div class="fusion-text fusion-text-46 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">Not all Multi-Factor Authentication is equal. Simple push notifications or SMS are becoming a liability. Prompt bombing (spamming users until they approve) and token theft are exploding.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;"><strong>The data:</strong> The <span style="color: var(--awb-color6);">2025 Data Breach Investigations Report </span>notes that prompt bombing appeared in 14% of social engineering breaches.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;"><strong>The solution:</strong> Transition to phishing-resistant MFA (like FIDO2/WebAuthn hardware keys) that prevents attackers from replaying credentials or intercepting codes.</p>
</div><div class="fusion-text fusion-text-47"><h3 class="font-semibold pdf-heading-class-replace pb-xxs text-lg leading-&#091;30px&#093; &#091;&amp;:not(:first-child)&#093;:pt-&#091;15px&#093; &#091;&amp;_.underline&#093;:underline-offset-&#091;6px&#093; &#091;&amp;_a&#093;:underline-offset-&#091;6px&#093; fusion-responsive-typography-calculated" dir="ltr" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.799999px">4. Overlooking third-party and shadow IT access</h3>
</div><div class="fusion-text fusion-text-48 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">The 2025 DBIR reveals a massive shift: 30% of breaches now involve a third party. That figure has doubled in one year.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;"><strong>The error:</strong> Assuming your internal identity policies automatically protect data hosted by vendors. High-profile campaigns targeting Snowflake customer accounts succeeded because third-party environments often lacked mandatory MFA or federated SSO. Attackers simply used stolen credentials to log in directly.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;"><strong>Shadow IT:</strong> Additionally, 15% of employees routinely access GenAI systems on corporate devices, often using personal, non-integrated accounts that bypass corporate security monitoring entirely.</p>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-top:35px;margin-bottom:1%;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-title title fusion-title-6 fusion-sep-none fusion-title-text fusion-title-size-two fusion-animated" style="--awb-text-color:var(--awb-color6);--awb-margin-bottom:40px;--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;--awb-font-size:20px;" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;font-size:1em;--fontSize:20;--minFontSize:20;line-height:1.5;">Planning to review your Identity Management strategy?</h2></div><div class="fusion-text fusion-text-49 fusion-animated fusion-text-no-margin" style="--awb-margin-bottom:25px;" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view"><p>Review your Identity Management process with the help of our specialists, guiding you to optimize and strengthen every step from start to finish.</p>
</div><div style="text-align:center;"><a class="fusion-button button-flat fusion-button-default-size button-default fusion-button-default button-3 fusion-button-default-span fusion-button-default-type fusion-animated" style="--awb-margin-bottom:40px;--button-border-radius-top-left:35px;--button-border-radius-top-right:35px;--button-border-radius-bottom-right:35px;--button-border-radius-bottom-left:35px;--button_typography-font-family:&quot;Montserrat&quot;;--button_typography-font-style:normal;--button_typography-font-weight:600;" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view" target="_self" href="https://outlook.office.com/book/ConsultationTI@prival.ca/s/0IR9ptEJYkO1m4Sns0PGsQ2?ismsaljsauthenabled"><span class="fusion-button-text awb-button__text awb-button__text--default">Start now</span></a></div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"></div><div class="fusion-text fusion-text-50"><h3 class="font-semibold pdf-heading-class-replace pb-xxs text-lg leading-&#091;30px&#093; &#091;&amp;:not(:first-child)&#093;:pt-&#091;15px&#093; &#091;&amp;_.underline&#093;:underline-offset-&#091;6px&#093; &#091;&amp;_a&#093;:underline-offset-&#091;6px&#093; fusion-responsive-typography-calculated" dir="ltr" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.799999px">Securing the new identity perimeter</h3>
</div><div class="fusion-text fusion-text-51 fusion-text-no-margin" style="--awb-margin-bottom:50px;"><p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">A password isn&#8217;t enough anymore. You need a holistic strategy that governs human and machine identities, enforces phishing-resistant authentication, and rigorously extends security standards to third-party vendors.</p>
<p class="font-claude-response-body break-words whitespace-normal leading-&#091;1.7&#093;">By avoiding these four errors, you close the &#8220;front doors&#8221; that adversaries are currently finding wide open.</p>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-text fusion-text-52 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p style="font-family: 'Red Hat Display'; font-weight: 400;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">Sources:</p>
<ul>
<li class="paragraph normal ng-star-inserted" data-start-index="11"><span style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">Identity Defined Security Alliance (IDSA)</span><span class="ng-star-inserted" style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-start-index="52" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">. (2025). </span><i class="ng-star-inserted" data-start-index="62"><span style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">2025 Trends in Identity Security: A Survey of IT Security and Identity Professionals</span></i><span class="ng-star-inserted" style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-start-index="146" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">.</span></li>
</ul>
<ul>
<li class="paragraph normal ng-star-inserted" data-start-index="147"><span style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">National Security Agency (NSA) &amp; Cybersecurity and Infrastructure Security Agency (CISA)</span><span class="ng-star-inserted" style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-start-index="235" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">. (2023). </span><i class="ng-star-inserted" data-start-index="245"><span style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">Identity and Access Management: Recommended Best Practices for Administrators</span></i><span class="ng-star-inserted" style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-start-index="322" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">.</span></li>
</ul>
<ul>
<li class="paragraph normal ng-star-inserted" data-start-index="323"><span style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">Verizon</span><span class="ng-star-inserted" style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-start-index="330" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">. (2025). </span><i class="ng-star-inserted" data-start-index="340"><span style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">2025 Data Breach Investigations Report</span></i><span class="ng-star-inserted" style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-start-index="378" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">.</span></li>
</ul>
<ul>
<li class="paragraph normal ng-star-inserted" data-start-index="379"><span style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">World Economic Forum</span><span class="ng-star-inserted" style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-start-index="399" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">. (2023, June). </span><i class="ng-star-inserted" data-start-index="415"><span style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">Reimagining Digital ID: Insight Report</span></i><span class="ng-star-inserted" style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-start-index="453" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">.</span></li>
</ul>
</div><div class="fusion-title title fusion-title-7 fusion-sep-none fusion-title-text fusion-title-size-two" style="--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;--fontSize:30;--minFontSize:30;line-height:1.5;"><h2>More insights</h2></h2></div><div class="fusion-recent-posts fusion-recent-posts-4 avada-container layout-default layout-columns-3"><section class="fusion-columns columns fusion-columns-3 columns-3"><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/the-shadow-pandemic-why-bans-and-training-fall-short/" aria-label="The shadow pandemic: Why bans and training fall short" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="Two business colleagues collaborate at a workstation in a modern office, reviewing AI tool usage across the organization to identify shadow AI exposure." srcset="https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-18x10.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-29T08:29:47-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/the-shadow-pandemic-why-bans-and-training-fall-short/">The shadow pandemic: Why bans and training fall short</a></h4></div></article><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/the-ai-adoption-blind-spot-what-the-data-is-telling-you/" aria-label="The AI adoption blind spot: What the data is telling you" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="IT leader assessing AI security risk in his organization" srcset="https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-18x10.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-28T15:09:08-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/the-ai-adoption-blind-spot-what-the-data-is-telling-you/">The AI adoption blind spot: What the data is telling you</a></h4></div></article><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/why-identity-federation-and-sso-are-a-security-priority/" aria-label="Why identity federation and SSO are a security priority" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="" srcset="https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-18x12.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-03-26T14:01:34-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/why-identity-federation-and-sso-are-a-security-priority/">Why identity federation and SSO are a security priority</a></h4></div></article></section></div></div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>The link between Microsegmentation and cyber resilience</title>
		<link>https://www.prival.ca/the-role-of-microsegmentation-in-cyber-resilience/</link>
		
		<dc:creator><![CDATA[Robin Almaraz]]></dc:creator>
		<pubDate>Thu, 12 Feb 2026 13:00:10 +0000</pubDate>
				<category><![CDATA[Cybsersecurity]]></category>
		<category><![CDATA[News and Updates]]></category>
		<guid isPermaLink="false">https://www.prival.ca/?p=13860</guid>

					<description><![CDATA[Modern hybrid environments face threats that bypass traditional defenses. Cyber resilience means preparing for inevitable breaches. Microsegmentation isolates threats before they spread, maintaining business continuity during attacks.]]></description>
										<content:encoded><![CDATA[<div class="fusion-fullwidth fullwidth-box fusion-builder-row-5 fusion-flex-container nonhundred-percent-fullwidth non-hundred-percent-height-scrolling" style="--awb-border-radius-top-left:0px;--awb-border-radius-top-right:0px;--awb-border-radius-bottom-right:0px;--awb-border-radius-bottom-left:0px;--awb-margin-bottom-medium:40px;--awb-flex-wrap:wrap;" ><div class="fusion-builder-row fusion-row fusion-flex-align-items-flex-start fusion-flex-content-wrap" style="max-width:calc( 1200px + 0px );margin-left: calc(-0px / 2 );margin-right: calc(-0px / 2 );"><div class="fusion-layout-column fusion_builder_column fusion-builder-column-4 fusion_builder_column_1_1 1_1 fusion-flex-column" style="--awb-bg-blend:overlay;--awb-bg-size:cover;--awb-width-large:100%;--awb-margin-top-large:0px;--awb-spacing-right-large:0px;--awb-margin-bottom-large:0px;--awb-spacing-left-large:0px;--awb-width-medium:100%;--awb-spacing-right-medium:0px;--awb-spacing-left-medium:0px;--awb-width-small:100%;--awb-spacing-right-small:0px;--awb-spacing-left-small:0px;"><div class="fusion-column-wrapper fusion-flex-justify-content-flex-start fusion-content-layout-column"><div class="fusion-text fusion-text-53 fusion-text-no-margin" style="--awb-margin-bottom:50px;"><p>Traditional perimeter defenses can no longer protect a modern, hybrid landscape where threats often bypass the gates and move undetected from within.</p>
<p>To achieve true cyber resilience, we must shift our focus from prevention to assuming a breach will happen.</p>
<p>Microsegmentation is a powerful network security concept that helps ensure business continuity, even during cyberattacks.</p>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"></div><div class="fusion-text fusion-text-54"><div>
<h2 class="fusion-responsive-typography-calculated" style="--fontsize: 30; line-height: 1.5; --minfontsize: 30;" data-fontsize="30" data-lineheight="45px"><span lang="EN-US">The problem with flat networks</span></h2>
</div>
</div><div class="fusion-text fusion-text-55 fusion-text-no-margin" style="--awb-margin-bottom:50px;"><p style="font-weight: 400;">Many organizations with flat networks are vulnerable. Once inside, attackers can move across the network with little resistance.</p>
<p style="font-weight: 400;">During this time, attackers explore your network, escalate their privileges, and search for your most valuable data.</p>
<p style="font-weight: 400;">A flat network spreads viruses like an open-plan office, while segmentation contains them like quarantine rooms.</p>
</div><div class="fusion-text fusion-text-56"><h2>The solution</h2>
</div><div class="fusion-text fusion-text-57 fusion-text-no-margin" style="--awb-margin-bottom:50px;"><p style="font-weight: 400;">Traditional segmentation divides a network into broad zones. <span style="font-family: var(--awb-text-font-family); font-size: var(--awb-font-size); font-style: var(--awb-text-font-style); letter-spacing: var(--awb-letter-spacing); text-align: var(--awb-content-alignment); text-transform: var(--awb-text-transform);">Microsegmentation goes deeper.</span></p>
<p style="font-weight: 400;">It applies security policies to individual workloads, applications, and devices and works whether they are on-premises or in the cloud.</p>
</div><div class="fusion-text fusion-text-58"><div>
<h2><span lang="EN-US">4 benefits of microsegmentation</span></h2>
</div>
</div><div class="fusion-title title fusion-title-8 fusion-sep-none fusion-title-text fusion-title-size-four" style="--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;"><h4 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;--fontSize:22;--minFontSize:22;line-height:1.36;">1. Stopping ransomware in its tracks</h4></div><div class="fusion-text fusion-text-59"><ul>
<li style="font-weight: 400;"><strong>How ?</strong> Microsegmentation acts as a containment switch. By applying strict &#8220;allowlist&#8221; policies, you isolate a compromised workload instantly. If ransomware hits one device, microsegmentation ring-fences it. This prevents malware from scanning for other targets or encrypting shared drives. It drastically shrinks the &#8220;blast radius&#8221; of an attack.</li>
</ul>
<ul>
<li><b>Why ?</b> The primary goal is preventing &#8220;lateral movement&#8221;—the technique attackers use to hop from a low-value entry point to high-value servers.</li>
</ul>
</div><div class="fusion-title title fusion-title-9 fusion-sep-none fusion-title-text fusion-title-size-four" style="--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;"><h4 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;--fontSize:22;--minFontSize:22;line-height:1.36;"><div><span style="font-family: var(--h4_typography-font-family); font-size: 1em; font-style: var(--h4_typography-font-style,normal); letter-spacing: var(--h4_typography-letter-spacing); text-transform: var(--h4_typography-text-transform);">2. Protecting your critical systems, data and ensuring compliance</span></div></h4></div><div class="fusion-text fusion-text-60"><ul style="font-weight: 400;">
<li><strong>How?</strong> Microsegmentation helps you wrap a digital security bubble around specific high-value assets or legacy systems that cannot be patched.</li>
</ul>
<ul style="font-weight: 400;">
<li style="list-style-type: none;">
</li>
<ul>
<li>A hospital could apply it to ensure an IoT medical device communicates only with the specific server required to operate it. This blocks access to the wider internet or the email server.</li>
</ul>
</ul>
<ul>
<li><b>Why?</b> Not all data is equal. Your intellectual property, customer PII, and financial records require stricter guardrails than a print server. Regulations like PCI DSS and HIPAA mandate strict isolation of sensitive data.</li>
</ul>
</div><div class="fusion-title title fusion-title-10 fusion-sep-none fusion-title-text fusion-title-size-four" style="--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;"><h4 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;--fontSize:22;--minFontSize:22;line-height:1.36;">3. Securing hybrid and cloud environments</h4></div><div class="fusion-text fusion-text-61"><ul>
<li style="font-weight: 400;"><strong>How?</strong> Microsegmentation decouples security from physical hardware. Instead of relying on IP addresses, it uses <strong>identity-based tags and labels</strong> (e.g., &#8220;Web Server,&#8221; &#8220;Production,&#8221; &#8220;Finance&#8221;). The security policy follows the workload. If you move an application from a local data centre to AWS or Azure, its security rules migrate automatically.</li>
</ul>
<ul>
<li><b>Why? </b>As organizations migrate to the cloud, traditional hardware firewalls struggle. Workloads in the cloud are dynamic; they spin up, spin down, and move between servers. Static IP-based rules become unmanageable.</li>
</ul>
</div><div class="fusion-title title fusion-title-11 fusion-sep-none fusion-title-text fusion-title-size-four" style="--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;"><h4 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;--fontSize:22;--minFontSize:22;line-height:1.36;">4. Unprecedented visibility</h4></div><div class="fusion-text fusion-text-62 fusion-text-no-margin" style="--awb-margin-bottom:50px;"><ul style="font-weight: 400;">
<li><strong>How ?</strong> Modern Microsegmentation tools provide application dependency mapping. This visualizes real-time traffic flows across your entire infrastructure.</li>
</ul>
<ul>
<li style="font-weight: 400; list-style-type: none;">
</li>
<ul style="font-weight: 400;">
<li>Before enforcing a rule, your team sees exactly which business processes depend on a specific server connection. This prevents the fear of &#8220;breaking the application&#8221; when tightening security.</li>
</ul>
</ul>
<ul>
<li><b>Why?</b> You cannot protect what you cannot see. In complex hybrid networks, IT teams often struggle to understand exactly which applications are communicating.</li>
</ul>
</div><div class="fusion-text fusion-text-63"><h2>Our tip for implementation? Start small</h2>
</div><div class="fusion-text fusion-text-64"><p style="font-weight: 400;">A common pitfall is trying to segment the entire network at once. This leads to complexity, frustration, and stalled projects.</p>
<p style="font-weight: 400;">We recommend a phased, risk-based approach:</p>
<ol style="font-weight: 400;">
<li><strong>Gain visibility:</strong> Specific mapping of your application dependencies.</li>
<li><strong>Identify quick wins:</strong> Start by separating non-production environments (Development) from Production.</li>
<li><strong>Ring-fence critical assets:</strong> Isolate your most valuable data or most vulnerable legacy systems first.</li>
<li><strong>Refine policies:</strong> Move from coarse segmentation to granular microsegmentation over time.</li>
</ol>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-title title fusion-title-12 fusion-sep-none fusion-title-text fusion-title-size-two fusion-animated" style="--awb-text-color:var(--awb-color6);--awb-margin-bottom:40px;--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;--awb-font-size:20px;" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;font-size:1em;--fontSize:20;--minFontSize:20;line-height:1.5;"><div><span lang="EN-US">Is your business prepared for the inevitable? </span></div></h2></div><div class="fusion-text fusion-text-65 fusion-animated fusion-text-no-margin" style="--awb-margin-bottom:25px;" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view"><div><span lang="EN-US">We are here to help you explore, test and deploy the right Microsegmentation solution with confidence.</span></div>
</div><div style="text-align:center;"><a class="fusion-button button-flat fusion-button-default-size button-default fusion-button-default button-4 fusion-button-default-span fusion-button-default-type fusion-animated" style="--awb-margin-bottom:40px;--button-border-radius-top-left:35px;--button-border-radius-top-right:35px;--button-border-radius-bottom-right:35px;--button-border-radius-bottom-left:35px;--button_typography-font-family:&quot;Montserrat&quot;;--button_typography-font-style:normal;--button_typography-font-weight:600;" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view" target="_self" href="https://outlook.office.com/book/ConsultationTI@prival.ca/s/KHZZWi0NXk20MWOXOgGdsg2?ismsaljsauthenabled"><span class="fusion-button-text awb-button__text awb-button__text--default">Discover Microsegmentation</span></a></div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"></div><div class="fusion-text fusion-text-66"><div>
<h3><span lang="EN-US">The bottom line</span></h3>
</div>
</div><div class="fusion-text fusion-text-67 fusion-text-no-margin" style="--awb-margin-bottom:50px;"><p style="font-weight: 400;">In 2026, a breach is almost inevitable. A disaster is not. Microsegmentation turns your fragile network into a resilient system. You absorb the impact and keep moving.</p>
</div><div class="fusion-title title fusion-title-13 fusion-sep-none fusion-title-text fusion-title-size-two" style="--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;--fontSize:30;--minFontSize:30;line-height:1.5;"><h2>More insights</h2></h2></div><div class="fusion-recent-posts fusion-recent-posts-5 avada-container layout-default layout-columns-3"><section class="fusion-columns columns fusion-columns-3 columns-3"><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/the-shadow-pandemic-why-bans-and-training-fall-short/" aria-label="The shadow pandemic: Why bans and training fall short" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="Two business colleagues collaborate at a workstation in a modern office, reviewing AI tool usage across the organization to identify shadow AI exposure." srcset="https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-18x10.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-29T08:29:47-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/the-shadow-pandemic-why-bans-and-training-fall-short/">The shadow pandemic: Why bans and training fall short</a></h4></div></article><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/the-ai-adoption-blind-spot-what-the-data-is-telling-you/" aria-label="The AI adoption blind spot: What the data is telling you" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="IT leader assessing AI security risk in his organization" srcset="https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-18x10.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-28T15:09:08-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/the-ai-adoption-blind-spot-what-the-data-is-telling-you/">The AI adoption blind spot: What the data is telling you</a></h4></div></article><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/why-identity-federation-and-sso-are-a-security-priority/" aria-label="Why identity federation and SSO are a security priority" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="" srcset="https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-18x12.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-03-26T14:01:34-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/why-identity-federation-and-sso-are-a-security-priority/">Why identity federation and SSO are a security priority</a></h4></div></article></section></div></div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>The firewall is no longer enough, why identity is the new perimeter</title>
		<link>https://www.prival.ca/the-firewall-is-no-longer-enough-why-identity-is-the-new-perimeter/</link>
		
		<dc:creator><![CDATA[Robin Almaraz]]></dc:creator>
		<pubDate>Fri, 06 Feb 2026 18:40:53 +0000</pubDate>
				<category><![CDATA[Cybsersecurity]]></category>
		<category><![CDATA[News and Updates]]></category>
		<guid isPermaLink="false">https://www.prival.ca/?p=13898</guid>

					<description><![CDATA[Authentication systems are now the front doors to enterprise networks, applications, and data. This makes them the primary target for modern adversaries.]]></description>
										<content:encoded><![CDATA[<div class="fusion-fullwidth fullwidth-box fusion-builder-row-6 fusion-flex-container nonhundred-percent-fullwidth non-hundred-percent-height-scrolling" style="--awb-border-radius-top-left:0px;--awb-border-radius-top-right:0px;--awb-border-radius-bottom-right:0px;--awb-border-radius-bottom-left:0px;--awb-margin-bottom-medium:40px;--awb-flex-wrap:wrap;" ><div class="fusion-builder-row fusion-row fusion-flex-align-items-flex-start fusion-flex-content-wrap" style="max-width:calc( 1200px + 0px );margin-left: calc(-0px / 2 );margin-right: calc(-0px / 2 );"><div class="fusion-layout-column fusion_builder_column fusion-builder-column-5 fusion_builder_column_1_1 1_1 fusion-flex-column" style="--awb-bg-blend:overlay;--awb-bg-size:cover;--awb-width-large:100%;--awb-margin-top-large:0px;--awb-spacing-right-large:0px;--awb-margin-bottom-large:0px;--awb-spacing-left-large:0px;--awb-width-medium:100%;--awb-spacing-right-medium:0px;--awb-spacing-left-medium:0px;--awb-width-small:100%;--awb-spacing-right-small:0px;--awb-spacing-left-small:0px;"><div class="fusion-column-wrapper fusion-flex-justify-content-flex-start fusion-content-layout-column"><div class="fusion-text fusion-text-68 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p class="text-md font-regular leading-&#091;24px&#093; pb-xxs pt-&#091;9px&#093;" dir="ltr">IT security once relied on perimeter defenses like firewalls and VPNs, but today that boundary has disappeared.</p>
<p>The data is clear: the new battleground is not the network edge. It is identity.</p>
<p class="text-md font-regular leading-&#091;24px&#093; pb-xxs pt-&#091;9px&#093;" dir="ltr">Authentication systems are now the front doors to enterprise networks, applications, and data. This makes them the primary target for modern adversaries.</p>
<p>For IT managers, securing the identity layer is the single most critical component of organizational defense.</p>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"></div><div class="fusion-text fusion-text-69"><h3 class="font-semibold pdf-heading-class-replace pb-xxs text-lg leading-&#091;30px&#093; &#091;&amp;:not(:first-child)&#093;:pt-&#091;15px&#093; &#091;&amp;_.underline&#093;:underline-offset-&#091;6px&#093; &#091;&amp;_a&#093;:underline-offset-&#091;6px&#093;" dir="ltr">Attackers are mimicking, not breaking in</h3>
</div><div class="fusion-text fusion-text-70 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p class="text-md font-regular leading-&#091;24px&#093; pb-xxs pt-&#091;9px&#093;" dir="ltr">The most dangerous threat actors today don&#8217;t hack in. They log in. According to the <span class="font-semibold"><a href="https://www.verizon.com/business/resources/reports/2025-dbir-data-breach-investigations-report.pdf">Verizon 2025 Data Breach Investigations Report (DBIR)</a></span>, credential abuse remains the leading initial access vector. It accounts for 22% of breaches.</p>
<p class="text-md font-regular leading-&#091;24px&#093; pb-xxs pt-&#091;9px&#093;" dir="ltr">Malicious actors are actively exploiting Identity and Access Management (IAM) vulnerabilities. By compromising credentials, attackers mimic legitimate activity. They bypass traditional anomaly detection tools.</p>
<p>Once inside, they escalate privileges and move laterally. They are often indistinguishable from a standard user until it is too late.</p>
</div><div class="fusion-text fusion-text-71"><h3 class="font-semibold pdf-heading-class-replace pb-xxs text-lg leading-&#091;30px&#093; &#091;&amp;:not(:first-child)&#093;:pt-&#091;15px&#093; &#091;&amp;_.underline&#093;:underline-offset-&#091;6px&#093; &#091;&amp;_a&#093;:underline-offset-&#091;6px&#093;" dir="ltr">The Blind Spot? Non-human identities</h3>
</div><div class="fusion-text fusion-text-72 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p class="text-md font-regular leading-&#091;24px&#093; pb-xxs pt-&#091;9px&#093;" dir="ltr">When IT managers think of identity, they usually picture a human employee. But today’s IT landscape is increasingly dominated by Non-Human Identities (NHIs). These include service accounts, bots, API keys, and cloud workloads.</p>
<p class="text-md font-regular leading-&#091;24px&#093; pb-xxs pt-&#091;9px&#093;" dir="ltr">Research indicates that NHIs now outnumber human identities on the internet by more than <b><strong class="font-semibold">eight to one</strong></b>. These machine identities are often over-privileged and under-monitored. They create a massive, silent attack surface.</p>
<p>Securing these automated identities is now a top priority. If your strategy only covers humans, you leave the vast majority of your users unprotected.</p>
</div><div class="fusion-text fusion-text-73"><h3>Governance is the new firewall rule</h3>
</div><div class="fusion-text fusion-text-74 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p class="text-md font-regular leading-&#091;24px&#093; pb-xxs pt-&#091;9px&#093;" dir="ltr">In a network-centric model, you managed firewall rules. In an identity centric model, you must manage the <span class="font-semibold">Identity Lifecycle</span>. Identity Governance, specifically the &#8220;Join, Move, and Leave&#8221; (JML) processes, is essential to stopping unauthorized access.</p>
<ul class="pb-xxs pt-&#091;9px&#093; list-disc pl-5xl pt-&#091;5px&#093;">
<li class="text-md font-regular leading-&#091;24px&#093; my-&#091;5px&#093; &#091;&amp;&gt;ol&#093;:!pb-0 &#091;&amp;&gt;ol&#093;:!pt-0 &#091;&amp;&gt;ul&#093;:!pb-0 &#091;&amp;&gt;ul&#093;:!pt-0" dir="ltr" value="1"><b><strong class="font-semibold">Join:</strong></b> Automate access based on roles to prevent over-provisioning.</li>
<li class="text-md font-regular leading-&#091;24px&#093; my-&#091;5px&#093; &#091;&amp;&gt;ol&#093;:!pb-0 &#091;&amp;&gt;ol&#093;:!pt-0 &#091;&amp;&gt;ul&#093;:!pb-0 &#091;&amp;&gt;ul&#093;:!pt-0" dir="ltr" value="2"><b><strong class="font-semibold">Move:</strong></b> Revoke access rights when users change roles to prevent privilege accumulation.</li>
<li class="text-md font-regular leading-&#091;24px&#093; my-&#091;5px&#093; &#091;&amp;&gt;ol&#093;:!pb-0 &#091;&amp;&gt;ol&#093;:!pt-0 &#091;&amp;&gt;ul&#093;:!pb-0 &#091;&amp;&gt;ul&#093;:!pt-0" dir="ltr" value="3"><b><strong class="font-semibold">Leave:</strong></b> Terminate access immediately upon departure.</li>
</ul>
<p class="text-md font-regular leading-&#091;24px&#093; pb-xxs pt-&#091;9px&#093;" dir="ltr">Without rigorous governance, organizations accumulate orphan accounts that attackers can exploit to remain undetected.</p>
</div><div class="fusion-text fusion-text-75"><h3 class="font-semibold pdf-heading-class-replace pb-xxs text-lg leading-&#091;30px&#093; &#091;&amp;:not(:first-child)&#093;:pt-&#091;15px&#093; &#091;&amp;_.underline&#093;:underline-offset-&#091;6px&#093; &#091;&amp;_a&#093;:underline-offset-&#091;6px&#093;" dir="ltr">Zero Trust and the shift to decentralization</h3>
</div><div class="fusion-text fusion-text-76 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p class="text-md font-regular leading-&#091;24px&#093; pb-xxs pt-&#091;9px&#093;" dir="ltr">According to the Identity Defined Security Alliance (IDSA), 95% of organizations are adopting Zero Trust to secure the collapsing network edge, where VPN vulnerability exploits have surged to 22%. Attackers are now using prompt bombing and token theft to bypass standard controls.</p>
<p>This has prompted a shift toward phishing-resistant authentication to counter these evolving threats. As the network perimeter expands into unmanaged Shadow IT, organizations are adapting. </p>
<p>With 15% of employees using GenAI tools outside corporate oversight, many are turning to digital wallets to regain control over decentralized credentials.</p>
</div><div class="fusion-text fusion-text-77"><h3 class="font-semibold pdf-heading-class-replace pb-xxs text-lg leading-&#091;30px&#093; &#091;&amp;:not(:first-child)&#093;:pt-&#091;15px&#093; &#091;&amp;_.underline&#093;:underline-offset-&#091;6px&#093; &#091;&amp;_a&#093;:underline-offset-&#091;6px&#093;" dir="ltr">The takeaway for IT managers</h3>
</div><div class="fusion-text fusion-text-78 fusion-text-no-margin" style="--awb-margin-bottom:25px;"><p class="text-md font-regular leading-&#091;24px&#093; pb-xxs pt-&#091;9px&#093;" dir="ltr">The Identity Perimeter will define the operational landscape of 2026 and beyond. To protect this new perimeter, IT managers must:</p>
<ol class="pb-xxs pt-&#091;9px&#093; pl-5xl list-decimal">
<li class="text-md font-regular leading-&#091;24px&#093; my-&#091;5px&#093; &#091;&amp;&gt;ol&#093;:!pb-0 &#091;&amp;&gt;ol&#093;:!pt-0 &#091;&amp;&gt;ul&#093;:!pb-0 &#091;&amp;&gt;ul&#093;:!pt-0" dir="ltr" value="1"><b><strong class="font-semibold">Assume Access:</strong></b> Build defenses to limit the blast radius of compromised credentials.</li>
</ol>
<ol class="pb-xxs pt-&#091;9px&#093; pl-5xl list-decimal">
<li class="text-md font-regular leading-&#091;24px&#093; my-&#091;5px&#093; &#091;&amp;&gt;ol&#093;:!pb-0 &#091;&amp;&gt;ol&#093;:!pt-0 &#091;&amp;&gt;ul&#093;:!pb-0 &#091;&amp;&gt;ul&#093;:!pt-0" dir="ltr" value="2"><b><strong class="font-semibold">Audit Machine Identities:</strong></b> Inventory and govern service accounts with rigor.</li>
</ol>
<ol class="pb-xxs pt-&#091;9px&#093; pl-5xl list-decimal">
<li class="text-md font-regular leading-&#091;24px&#093; my-&#091;5px&#093; &#091;&amp;&gt;ol&#093;:!pb-0 &#091;&amp;&gt;ol&#093;:!pt-0 &#091;&amp;&gt;ul&#093;:!pb-0 &#091;&amp;&gt;ul&#093;:!pt-0" dir="ltr" value="3"><b><strong class="font-semibold">Automate Governance:</strong></b> Enforce the principle of Least Privilege throughout the employee lifecycle.</li>
</ol>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-top:35px;margin-bottom:1%;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-title title fusion-title-14 fusion-sep-none fusion-title-text fusion-title-size-two fusion-animated" style="--awb-text-color:var(--awb-color6);--awb-margin-bottom:40px;--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;--awb-font-size:20px;" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;font-size:1em;--fontSize:20;--minFontSize:20;line-height:1.5;">Planning to review your Identity Management strategy?</h2></div><div class="fusion-text fusion-text-79 fusion-animated fusion-text-no-margin" style="--awb-margin-bottom:25px;" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view"><p>Review your Identity Management process with the expertise of our specialists, guiding you to optimize and strengthen every step from start to finish.</p>
</div><div style="text-align:center;"><a class="fusion-button button-flat fusion-button-default-size button-default fusion-button-default button-5 fusion-button-default-span fusion-button-default-type fusion-animated" style="--awb-margin-bottom:40px;--button-border-radius-top-left:35px;--button-border-radius-top-right:35px;--button-border-radius-bottom-right:35px;--button-border-radius-bottom-left:35px;--button_typography-font-family:&quot;Montserrat&quot;;--button_typography-font-style:normal;--button_typography-font-weight:600;" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view" target="_self" href="https://outlook.office.com/book/ConsultationTI@prival.ca/s/0IR9ptEJYkO1m4Sns0PGsQ2?ismsaljsauthenabled"><span class="fusion-button-text awb-button__text awb-button__text--default">Start now</span></a></div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"></div><div class="fusion-text fusion-text-80 fusion-text-no-margin" style="--awb-margin-top:35px;--awb-margin-bottom:50px;"><p class="text-md font-regular leading-&#091;24px&#093; pb-xxs pt-&#091;9px&#093;" dir="ltr">By treating Identity as the primary security control, you protect the only perimeter that moves with your data.</p>
</div><div class="fusion-text fusion-text-81 fusion-text-no-margin" style="--awb-margin-bottom:35px;"><p style="font-family: 'Red Hat Display'; font-weight: 400;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">Sources:</p>
<ul>
<li class="paragraph normal ng-star-inserted" data-start-index="11"><span style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">Identity Defined Security Alliance (IDSA)</span><span class="ng-star-inserted" style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-start-index="52" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">. (2025). </span><i class="ng-star-inserted" data-start-index="62"><span style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">2025 Trends in Identity Security: A Survey of IT Security and Identity Professionals</span></i><span class="ng-star-inserted" style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-start-index="146" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">.</span></li>
</ul>
<ul>
<li class="paragraph normal ng-star-inserted" data-start-index="147"><span style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">National Security Agency (NSA) &amp; Cybersecurity and Infrastructure Security Agency (CISA)</span><span class="ng-star-inserted" style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-start-index="235" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">. (2023). </span><i class="ng-star-inserted" data-start-index="245"><span style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">Identity and Access Management: Recommended Best Practices for Administrators</span></i><span class="ng-star-inserted" style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-start-index="322" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">.</span></li>
</ul>
<ul>
<li class="paragraph normal ng-star-inserted" data-start-index="323"><span style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">Verizon</span><span class="ng-star-inserted" style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-start-index="330" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">. (2025). </span><i class="ng-star-inserted" data-start-index="340"><span style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">2025 Data Breach Investigations Report</span></i><span class="ng-star-inserted" style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-start-index="378" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">.</span></li>
</ul>
<ul>
<li class="paragraph normal ng-star-inserted" data-start-index="379"><span style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">World Economic Forum</span><span class="ng-star-inserted" style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-start-index="399" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">. (2023, June). </span><i class="ng-star-inserted" data-start-index="415"><span style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">Reimagining Digital ID: Insight Report</span></i><span class="ng-star-inserted" style="font-family: 'Red Hat Display'; font-weight: 400; font-size: 18px;" data-start-index="453" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="400">.</span></li>
</ul>
</div><div class="fusion-title title fusion-title-15 fusion-sep-none fusion-title-text fusion-title-size-two" style="--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;--fontSize:30;--minFontSize:30;line-height:1.5;"><h2>More insights</h2></h2></div><div class="fusion-recent-posts fusion-recent-posts-6 avada-container layout-default layout-columns-3"><section class="fusion-columns columns fusion-columns-3 columns-3"><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/the-shadow-pandemic-why-bans-and-training-fall-short/" aria-label="The shadow pandemic: Why bans and training fall short" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="Two business colleagues collaborate at a workstation in a modern office, reviewing AI tool usage across the organization to identify shadow AI exposure." srcset="https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-18x10.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-29T08:29:47-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/the-shadow-pandemic-why-bans-and-training-fall-short/">The shadow pandemic: Why bans and training fall short</a></h4></div></article><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/the-ai-adoption-blind-spot-what-the-data-is-telling-you/" aria-label="The AI adoption blind spot: What the data is telling you" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="IT leader assessing AI security risk in his organization" srcset="https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-18x10.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-28T15:09:08-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/the-ai-adoption-blind-spot-what-the-data-is-telling-you/">The AI adoption blind spot: What the data is telling you</a></h4></div></article><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/why-identity-federation-and-sso-are-a-security-priority/" aria-label="Why identity federation and SSO are a security priority" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="" srcset="https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-18x12.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-03-26T14:01:34-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/why-identity-federation-and-sso-are-a-security-priority/">Why identity federation and SSO are a security priority</a></h4></div></article></section></div></div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>An introduction to microsegmentation</title>
		<link>https://www.prival.ca/an-introduction-to-microsegmentation/</link>
		
		<dc:creator><![CDATA[Robin Almaraz]]></dc:creator>
		<pubDate>Fri, 06 Feb 2026 02:01:08 +0000</pubDate>
				<category><![CDATA[Cybsersecurity]]></category>
		<category><![CDATA[News and Updates]]></category>
		<guid isPermaLink="false">https://www.prival.ca/?p=13873</guid>

					<description><![CDATA[Understanding the microsegmentation. A short introduction.]]></description>
										<content:encoded><![CDATA[<div class="fusion-fullwidth fullwidth-box fusion-builder-row-7 fusion-flex-container nonhundred-percent-fullwidth non-hundred-percent-height-scrolling" style="--awb-border-radius-top-left:0px;--awb-border-radius-top-right:0px;--awb-border-radius-bottom-right:0px;--awb-border-radius-bottom-left:0px;--awb-margin-bottom-medium:40px;--awb-flex-wrap:wrap;" ><div class="fusion-builder-row fusion-row fusion-flex-align-items-flex-start fusion-flex-content-wrap" style="max-width:calc( 1200px + 0px );margin-left: calc(-0px / 2 );margin-right: calc(-0px / 2 );"><div class="fusion-layout-column fusion_builder_column fusion-builder-column-6 fusion_builder_column_1_1 1_1 fusion-flex-column" style="--awb-bg-blend:overlay;--awb-bg-size:cover;--awb-width-large:100%;--awb-margin-top-large:0px;--awb-spacing-right-large:0px;--awb-margin-bottom-large:0px;--awb-spacing-left-large:0px;--awb-width-medium:100%;--awb-spacing-right-medium:0px;--awb-spacing-left-medium:0px;--awb-width-small:100%;--awb-spacing-right-small:0px;--awb-spacing-left-small:0px;"><div class="fusion-column-wrapper fusion-flex-justify-content-flex-start fusion-content-layout-column"><div class="fusion-text fusion-text-82 fusion-text-no-margin" style="--awb-margin-bottom:50px;"><p class="text-md font-regular leading-&#091;24px&#093; pb-xxs pt-&#091;9px&#093;" dir="ltr">In the world of cybersecurity, <span class="font-semibold">Microsegmentation</span> is a critical strategy for resilience.</p>
<p class="text-md font-regular leading-&#091;24px&#093; pb-xxs pt-&#091;9px&#093;" dir="ltr">For years, organizations relied on perimeter security, assuming everything inside the network was safe. But today, attackers often find ways to bypass these outer defenses, landing on a flat network where they can move freely to access your most valuable data.</p>
<p class="text-md font-regular leading-&#091;24px&#093; pb-xxs pt-&#091;9px&#093;" dir="ltr">Here is your quick guide to understanding why Microsegmentation is the new standard for resilience.</p>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"></div><div class="fusion-text fusion-text-83"><h2>What is Microsegmentation?</h2>
</div><div class="fusion-text fusion-text-84 fusion-text-no-margin" style="--awb-margin-bottom:50px;"><p class="text-md font-regular leading-&#091;24px&#093; pb-xxs pt-&#091;9px&#093;" dir="ltr">Microsegmentation is a security technique that divides your network into granular zones, down to individual workloads, applications, or devices to secure them separately.</p>
<p class="text-md font-regular leading-&#091;24px&#093; pb-xxs pt-&#091;9px&#093;" dir="ltr">Unlike traditional segmentation, which might just separate the &#8220;Guest Wi-Fi&#8221; from the &#8220;Corporate Network,&#8221; Microsegmentation applies strict security policies to specific traffic flows between servers and applications.</p>
<p class="text-md font-regular leading-&#091;24px&#093; pb-xxs pt-&#091;9px&#093;" dir="ltr">It relies <span style="color: var(--awb-color6);">on </span><span class="font-semibold" style="color: var(--awb-color6);">identity</span>, not just physical network location. It asks: &#8220;Should the Web Server be talking to the Database right now?&#8221; If the answer is no, the door is locked.</p>
</div><div class="fusion-text fusion-text-85"><h3 class="fusion-responsive-typography-calculated" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.799999px">How is it different?</h3>
</div><div class="fusion-text fusion-text-86 fusion-text-no-margin" style="--awb-margin-bottom:50px;"><p>To understand microsegmentation, you must understand the direction of traffic:</p>
<ul class="pb-xxs pt-&#091;9px&#093; list-disc pl-5xl pt-&#091;5px&#093;">
<li class="text-md font-regular leading-&#091;24px&#093; my-&#091;5px&#093; &#091;&amp;&gt;ol&#093;:!pb-0 &#091;&amp;&gt;ol&#093;:!pt-0 &#091;&amp;&gt;ul&#093;:!pb-0 &#091;&amp;&gt;ul&#093;:!pt-0" dir="ltr" value="1"><b><strong class="font-semibold">North-South Traffic:</strong></b> This is traffic entering or leaving your organization. Traditional firewalls are designed to police this.</li>
</ul>
<ul class="pb-xxs pt-&#091;9px&#093; list-disc pl-5xl pt-&#091;5px&#093;">
<li class="text-md font-regular leading-&#091;24px&#093; my-&#091;5px&#093; &#091;&amp;&gt;ol&#093;:!pb-0 &#091;&amp;&gt;ol&#093;:!pt-0 &#091;&amp;&gt;ul&#093;:!pb-0 &#091;&amp;&gt;ul&#093;:!pt-0" dir="ltr" value="2"><b><strong class="font-semibold">East-West Traffic:</strong></b> This is traffic moving <i><em class="italic">inside</em></i> your network (e.g., a server talking to another server).<b style="font-family: var(--awb-text-font-family); font-size: var(--awb-font-size); font-style: var(--awb-text-font-style); letter-spacing: var(--awb-letter-spacing); text-align: var(--awb-content-alignment); text-transform: var(--awb-text-transform);"><strong class="font-semibold"><br />
</strong></b></li>
</ul>
<p><b style="text-align: var(--awb-content-alignment);"><strong class="font-semibold"><span style="font-family: var(--awb-text-font-family);"><span style="font-style: var(--awb-text-font-style); letter-spacing: var(--awb-letter-spacing); text-transform: var(--awb-text-transform);">The </span></span>takeaway?</strong></b><span style="font-family: var(--awb-text-font-family); font-size: var(--awb-font-size); font-style: var(--awb-text-font-style); letter-spacing: var(--awb-letter-spacing); text-align: var(--awb-content-alignment); text-transform: var(--awb-text-transform);"> Traditional firewalls struggle to see or control internal traffic. Microsegmentation is specifically designed to monitor and control this east-west </span><span style="font-family: var(--awb-text-font-family); font-size: var(--awb-font-size); font-style: var(--awb-text-font-style); letter-spacing: var(--awb-letter-spacing); text-align: var(--awb-content-alignment); text-transform: var(--awb-text-transform);">movement.</span></p>
</div><div class="fusion-text fusion-text-87"><h3>Why does it matter today?</h3>
</div><div class="fusion-text fusion-text-88"><p class="text-md font-regular leading-&#091;24px&#093; pb-xxs pt-&#091;9px&#093;" dir="ltr">As threats evolve, the IT landscape becomes more complex. We recognize the challenge of maintaining uptime while securing an expanding perimeter.</p>
<ol class="pb-xxs pt-&#091;9px&#093; pl-5xl list-decimal">
<li class="text-md font-regular leading-&#091;24px&#093; my-&#091;5px&#093; &#091;&amp;&gt;ol&#093;:!pb-0 &#091;&amp;&gt;ol&#093;:!pt-0 &#091;&amp;&gt;ul&#093;:!pb-0 &#091;&amp;&gt;ul&#093;:!pt-0" dir="ltr" value="1"><b><strong class="font-semibold">Reducing the &#8220;blast radius&#8221; of ransomware:</strong></b> Ransomware works by moving laterally. It lands on one device and scans the network to find and encrypt critical servers. Microsegmentation creates a &#8220;containment switch.&#8221; If one device is infected, it is ring-fenced instantly. This prevents the malware from spreading to the rest of the organization.</li>
</ol>
<ol class="pb-xxs pt-&#091;9px&#093; pl-5xl list-decimal">
<li class="text-md font-regular leading-&#091;24px&#093; my-&#091;5px&#093; &#091;&amp;&gt;ol&#093;:!pb-0 &#091;&amp;&gt;ol&#093;:!pt-0 &#091;&amp;&gt;ul&#093;:!pb-0 &#091;&amp;&gt;ul&#093;:!pt-0" dir="ltr" value="2"><b><strong class="font-semibold">The &#8220;assume breach&#8221; mindset:</strong></b> We can no longer promise to prevent every intrusion. Instead, we must <b><strong class="font-semibold">assume a breach will happen</strong></b> and focus on resilience, ensuring the business keeps running even when an intruder gets in.</li>
</ol>
<ol class="pb-xxs pt-&#091;9px&#093; pl-5xl list-decimal">
<li class="text-md font-regular leading-&#091;24px&#093; my-&#091;5px&#093; &#091;&amp;&gt;ol&#093;:!pb-0 &#091;&amp;&gt;ol&#093;:!pt-0 &#091;&amp;&gt;ul&#093;:!pb-0 &#091;&amp;&gt;ul&#093;:!pt-0" dir="ltr" value="3"><b><strong class="font-semibold">The cloud &amp; hybrid world:</strong></b> Data no longer sits in a single building. It is spread across on-premise data centers and cloud providers like AWS or Azure. Microsegmentation decouples security from hardware. This allows protection to follow the workload wherever it moves.</li>
</ol>
</div><div class="fusion-text fusion-text-89"><div>
<h3><span lang="EN-US">Who benefits from it?</span></h3>
</div>
</div><div class="fusion-text fusion-text-90"><p class="text-md font-regular leading-&#091;24px&#093; pb-xxs pt-&#091;9px&#093;" dir="ltr">Microsegmentation is essential for any organization, not just tech giants. It is a vital tool for:</p>
<ul class="pb-xxs pt-&#091;9px&#093; list-disc pl-5xl pt-&#091;5px&#093;">
<li class="text-md font-regular leading-&#091;24px&#093; my-&#091;5px&#093; &#091;&amp;&gt;ol&#093;:!pb-0 &#091;&amp;&gt;ol&#093;:!pt-0 &#091;&amp;&gt;ul&#093;:!pb-0 &#091;&amp;&gt;ul&#093;:!pt-0" dir="ltr" value="1"><b><strong class="font-semibold">Hybrid Enterprises:</strong></b> Organizations managing a mix of physical data centers and cloud infrastructure.</li>
</ul>
<ul class="pb-xxs pt-&#091;9px&#093; list-disc pl-5xl pt-&#091;5px&#093;">
<li class="text-md font-regular leading-&#091;24px&#093; my-&#091;5px&#093; &#091;&amp;&gt;ol&#093;:!pb-0 &#091;&amp;&gt;ol&#093;:!pt-0 &#091;&amp;&gt;ul&#093;:!pb-0 &#091;&amp;&gt;ul&#093;:!pt-0" dir="ltr" value="2"><b><strong class="font-semibold">Critical Infrastructure (OT/IoT):</strong></b> Factories and hospitals use it to separate Operational Technology (like MRI machines or assembly robots) from the IT network. This prevents a hacked laptop from shutting down a production line.</li>
</ul>
<ul class="pb-xxs pt-&#091;9px&#093; list-disc pl-5xl pt-&#091;5px&#093;">
<li class="text-md font-regular leading-&#091;24px&#093; my-&#091;5px&#093; &#091;&amp;&gt;ol&#093;:!pb-0 &#091;&amp;&gt;ol&#093;:!pt-0 &#091;&amp;&gt;ul&#093;:!pb-0 &#091;&amp;&gt;ul&#093;:!pt-0" dir="ltr" value="3"><b><strong class="font-semibold">Compliance-Heavy Industries:</strong></b> Organizations subject to PCI DSS (retail) or HIPAA (healthcare), for example, use it to isolate sensitive data from the rest of the network.</li>
</ul>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-top:35px;margin-bottom:1%;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-title title fusion-title-16 fusion-sep-none fusion-title-text fusion-title-size-two fusion-animated" style="--awb-text-color:var(--awb-color6);--awb-margin-bottom:40px;--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;--awb-font-size:20px;" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;font-size:1em;--fontSize:20;--minFontSize:20;line-height:1.5;">Ready to explore Microsegmentation?</h2></div><div class="fusion-text fusion-text-91 fusion-animated fusion-text-no-margin" style="--awb-margin-bottom:25px;" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view"><p>Whether you want to explore the concept, learn how it works or want to see a solution in action, we can help.</p>
</div><div style="text-align:center;"><a class="fusion-button button-flat fusion-button-default-size button-default fusion-button-default button-6 fusion-button-default-span fusion-button-default-type fusion-animated" style="--awb-margin-bottom:40px;--button-border-radius-top-left:35px;--button-border-radius-top-right:35px;--button-border-radius-bottom-right:35px;--button-border-radius-bottom-left:35px;--button_typography-font-family:&quot;Montserrat&quot;;--button_typography-font-style:normal;--button_typography-font-weight:600;" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view" target="_self" href="https://outlook.office.com/book/ConsultationTI@prival.ca/s/KHZZWi0NXk20MWOXOgGdsg2?ismsaljsauthenabled"><span class="fusion-button-text awb-button__text awb-button__text--default">Let&#8217;s talk microsegmentation</span></a></div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"></div><div class="fusion-text fusion-text-92"><h3>The bottom line</h3>
</div><div class="fusion-text fusion-text-93 fusion-text-no-margin" style="--awb-margin-bottom:50px;"><p style="font-weight: 400;">Microsegmentation shifts your security posture from &#8220;hoping we don&#8217;t get hit&#8221; to &#8220;knowing we can survive the hit.&#8221; By isolating your most critical assets, you ensure that a small breach doesn&#8217;t become a business-ending disaster.</p>
</div><div class="fusion-title title fusion-title-17 fusion-sep-none fusion-title-text fusion-title-size-two" style="--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;--fontSize:30;--minFontSize:30;line-height:1.5;"><h2>More insights</h2></h2></div><div class="fusion-recent-posts fusion-recent-posts-7 avada-container layout-default layout-columns-3"><section class="fusion-columns columns fusion-columns-3 columns-3"><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/the-shadow-pandemic-why-bans-and-training-fall-short/" aria-label="The shadow pandemic: Why bans and training fall short" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="Two business colleagues collaborate at a workstation in a modern office, reviewing AI tool usage across the organization to identify shadow AI exposure." srcset="https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-18x10.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-29T08:29:47-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/the-shadow-pandemic-why-bans-and-training-fall-short/">The shadow pandemic: Why bans and training fall short</a></h4></div></article><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/the-ai-adoption-blind-spot-what-the-data-is-telling-you/" aria-label="The AI adoption blind spot: What the data is telling you" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="IT leader assessing AI security risk in his organization" srcset="https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-18x10.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-28T15:09:08-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/the-ai-adoption-blind-spot-what-the-data-is-telling-you/">The AI adoption blind spot: What the data is telling you</a></h4></div></article><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/why-identity-federation-and-sso-are-a-security-priority/" aria-label="Why identity federation and SSO are a security priority" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="" srcset="https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-18x12.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-03-26T14:01:34-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/why-identity-federation-and-sso-are-a-security-priority/">Why identity federation and SSO are a security priority</a></h4></div></article></section></div></div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Mastering network monitoring in Education</title>
		<link>https://www.prival.ca/mastering-network-monitoring-in-education/</link>
		
		<dc:creator><![CDATA[Robin Almaraz]]></dc:creator>
		<pubDate>Tue, 20 Jan 2026 18:10:04 +0000</pubDate>
				<category><![CDATA[News and Updates]]></category>
		<guid isPermaLink="false">https://www.prival.ca/?p=13780</guid>

					<description><![CDATA[Master your school’s network challenges with AI-powered monitoring, unified dashboards, and strategic outsourcing. Discover how proactive solutions help IT teams deliver secure, uninterrupted learning.]]></description>
										<content:encoded><![CDATA[<div class="fusion-fullwidth fullwidth-box fusion-builder-row-8 fusion-flex-container nonhundred-percent-fullwidth non-hundred-percent-height-scrolling" style="--awb-border-radius-top-left:0px;--awb-border-radius-top-right:0px;--awb-border-radius-bottom-right:0px;--awb-border-radius-bottom-left:0px;--awb-margin-bottom-medium:40px;--awb-flex-wrap:wrap;" ><div class="fusion-builder-row fusion-row fusion-flex-align-items-flex-start fusion-flex-content-wrap" style="max-width:calc( 1200px + 0px );margin-left: calc(-0px / 2 );margin-right: calc(-0px / 2 );"><div class="fusion-layout-column fusion_builder_column fusion-builder-column-7 fusion_builder_column_1_1 1_1 fusion-flex-column" style="--awb-bg-blend:overlay;--awb-bg-size:cover;--awb-width-large:100%;--awb-margin-top-large:0px;--awb-spacing-right-large:0px;--awb-margin-bottom-large:0px;--awb-spacing-left-large:0px;--awb-width-medium:100%;--awb-spacing-right-medium:0px;--awb-spacing-left-medium:0px;--awb-width-small:100%;--awb-spacing-right-small:0px;--awb-spacing-left-small:0px;"><div class="fusion-column-wrapper fusion-flex-justify-content-flex-start fusion-content-layout-column"><div class="fusion-text fusion-text-94"><p>Managing a school network often feels like a balancing act. For small IT teams, the pressure is even greater. You must ensure students can submit their work, teachers can deliver lessons without interruption, and sensitive data remains secure, all while working with limited time and budgets.</p>
<p>Network monitoring is the backbone of the modern digital campus. Yet, current data from industry surveys shows that many institutions struggle to meet the demands of today&#8217;s connected learning environments.</p>
<p>This article explores the challenges facing IT teams in the education sector and the strategies needed to regain control. Drawing on reports like the <span style="font-family: 'Red Hat Display'; font-weight: 600;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="600">Cisco EMEA 2025 Network Survey </span>and the <span style="font-family: 'Red Hat Display'; font-weight: 600;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="600">CA EdTechReport</span>, we provide insights to help IT teams make informed decisions. While some data includes international examples, the lessons are universally applicable to the Canadian educational landscape.</p>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"></div><div class="fusion-text fusion-text-95"><h3 class="" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.8px"><strong class="font-semibold">Challenges of educational networks </strong></h3>
</div><div class="fusion-text fusion-text-96"><h4 style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.8px"><span class="TextRun MacChromeBold SCXW201922630 BCX8" lang="EN-GB" xml:lang="EN-GB" data-contrast="none"><span class="NormalTextRun SCXW201922630 BCX8" data-ccp-parastyle="heading 3">1. Operational complexity and lack of visibility</span></span></h4>
</div><div class="fusion-text fusion-text-97"><p class="text-sm">Modern educational networks are a mix of legacy hardware, new cloud services, and thousands of personal devices. According to the Cisco EMEA 2025 Network Survey, about 50% of IT managers view this operational complexity as a major obstacle. The lack of visibility is even more concerning. International findings reported by Cisco show that approximately 70% of respondents struggle to quickly detect and identify issues. Many teams rely solely on vendor specific dashboards, which creates data silos that prevent a complete view of network health.</p>
</div><div class="fusion-text fusion-text-98"><h4 style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.8px">2. Pressure on budgets and staff</h4>
</div><div class="fusion-text fusion-text-99"><p class="text-sm">In the education sector, funding is a constant challenge. Budgets for cybersecurity and monitoring are scarce. A Q1 report from EdTechReport reveals that over 60% of school districts use general funds for these expenses. This forces difficult choices between hardware upgrades and essential monitoring tools. Staffing is another significant hurdle. Small teams are already overstretched, and the advanced skills needed for threat detection are rare. Consequently, both international and Canadian reports indicate that over 40% of districts now outsource cybersecurity monitoring.</p>
</div><div class="fusion-text fusion-text-100"><h4 style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.8px">3. Time lost to troubleshooting</h4>
</div><div class="fusion-text fusion-text-101"><p class="text-sm">Time is an IT team&#8217;s most valuable resource. Yet, troubleshooting inefficiencies drain it. Surveys cited in the Cisco EMEA 2025 Network Survey Report suggest that about 44% of IT teams spend between 10% and 30% of their time resolving network issues. This reactive cycle prevents staff from focusing on strategic projects that could benefit the entire institution.</p>
</div><div class="fusion-text fusion-text-102"><h3 class="" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.8px">Solutions for smarter monitoring</h3>
</div><div class="fusion-text fusion-text-103"><p class="text-sm">The challenges are significant, but they can be overcome. The path forward involves shifting from a reactive approach to a proactive and strategic one.</p>
</div><div class="fusion-text fusion-text-104"><h4 style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.8px">Adopt AI powered automation</h4>
</div><div class="fusion-text fusion-text-105"><p class="text-sm">When you cannot expand your team, you can adopt smarter technology. The trend is clearly toward automation, with surveys showing that about half of IT managers are looking for automated root cause insights. AI assisted monitoring amplifies what small teams can accomplish. These systems analyze network activity, learn campus patterns, and alert you immediately to unusual behavior. This significantly reduces alert fatigue and allows you to focus on real threats.</p>
</div><div class="fusion-text fusion-text-106"><h4 style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.8px">Strategic outsourcing and remote maintenance</h4>
</div><div class="fusion-text fusion-text-107"><p class="text-sm">You do not have to do it all alone. Surveys of education leaders indicate that about one third of districts use remote maintenance services. Outsourcing certain tasks allows internal teams to focus on user support. Similarly, for cybersecurity, most districts invest in monitoring, detection, and response. External experts can cover the network around the clock, ensuring a level of protection that IT teams cannot provide alone.</p>
</div><div class="fusion-text fusion-text-108"><h4 style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.8px">Unify your tools</h4>
</div><div class="fusion-text fusion-text-109"><p class="text-sm">Switching between management tools wastes precious time. Look for centralized solutions. A unified dashboard, or a single pane of glass, combines data from your entire infrastructure, giving teams the information they need and reducing the hours spent on troubleshooting.</p>
</div><div class="fusion-text fusion-text-110"><h3 class="font-semibold pdf-heading-class-replace pb-xxs text-lg leading-&#091;30px&#093; &#091;&amp;:not(:first-child)&#093;:pt-&#091;15px&#093; &#091;&amp;_.underline&#093;:underline-offset-&#091;6px&#093; &#091;&amp;_a&#093;:underline-offset-&#091;6px&#093;" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.8px"><strong class="font-semibold">Monitoring solutions </strong></h3>
</div><div class="fusion-text fusion-text-111"><p class="text-sm">Modern network monitoring tools are designed to tackle key challenges faced by IT teams in education. With features like AI-driven root cause analysis, predictive alerts, and unified dashboards, these tools reduce downtime and simplify problem resolution. Automation further saves valuable time by streamlining diagnostics, while the rise of remote monitoring services ensures 24/7 coverage and access to the latest threat intelligence. These advancements help schools stay secure and efficient, even with limited resources.</p>
</div><div class="fusion-text fusion-text-112"><h3 class="font-semibold pdf-heading-class-replace pb-xxs text-lg leading-&#091;30px&#093; &#091;&amp;:not(:first-child)&#093;:pt-&#091;15px&#093; &#091;&amp;_.underline&#093;:underline-offset-&#091;6px&#093; &#091;&amp;_a&#093;:underline-offset-&#091;6px&#093;" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.8px"><strong class="font-semibold">The benefits of effective network monitoring </strong></h3>
</div><div class="fusion-text fusion-text-113"><p class="text-sm"><span style="background-color: rgba(0, 0, 0, 0);">Investing in advanced network monitoring is about more than preventing outages. It is a critical catalyst for a high performing educational environment.</span></p>
<ul>
<li><b>Proactive problem solving</b>: AI based tools help detect issues before they impact learning. Early detection, confirmed by survey data, prevents small problems from becoming serious outages.</li>
<li><b>Optimized IT resources:</b> efficiency is a necessity. Automated diagnostics, as highlighted in industry reports, give you back lost hours. You can reinvest this time in improving systems and future planning.</li>
<li><b>Enhanced security:</b> visibility promotes rapid detection and response to ever evolving cyber threats. As cyber insurance premiums rise, a strong monitoring strategy also helps protect institutional budgets.</li>
<li><b>A seamless learning experience</b>: ultimately, IT supports learning and teaching. A stable, invisible network allows classes to proceed without dig<span style="color: var(--awb-color3);">ital inter</span>ruptions.</li>
</ul>
</div><div class="fusion-text fusion-text-114"><h3 class="font-semibold pdf-heading-class-replace pb-xxs text-lg leading-&#091;30px&#093; &#091;&amp;:not(:first-child)&#093;:pt-&#091;15px&#093; &#091;&amp;_.underline&#093;:underline-offset-&#091;6px&#093; &#091;&amp;_a&#093;:underline-offset-&#091;6px&#093; fusion-responsive-typography-calculated" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.8px"><strong class="font-semibold">Conclusion</strong></h3>
</div><div class="fusion-text fusion-text-115"><p><span data-contrast="auto"><span class="TextRun SCXW247025994 BCX8" lang="EN-GB" xml:lang="EN-GB" data-contrast="auto"><span class="NormalTextRun SCXW247025994 BCX8">Network monitoring is much more than a simple technical tool: it is an essential pillar for the success of digital educational environments. By ensuring increased security, proactive management, and resource optimization, it allows IT teams, even the smallest, to effectively meet the growing demands of the sector. Adopting advanced monitoring solutions means guaranteeing reliable and high-performing networks, while offering students and teachers a smooth, uninterrupted learning experience. Investing in network monitoring is investing in the success and sustainability of modern education.</span></span><span class="EOP SCXW247025994 BCX8" data-ccp-props=""> </span></span></p>
</div><div class="fusion-text fusion-text-116"><p><span style="color: #202020;"><b>Sources</b></span>:</p>
</div><div class="fusion-text fusion-text-117"><ul>
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="14" data-list-defn-props="" data-aria-posinset="1" data-aria-level="1"><i><span data-contrast="auto">EdTechLeadership 2025 F2.pdf</span></i><span data-ccp-props=""> </span></li>
</ul>
<ul>
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="14" data-list-defn-props="" data-aria-posinset="2" data-aria-level="1"><i><span data-contrast="auto">Cisco EMEA 2025 Network Survey Report NetOp Cloud.pdf</span></i><span data-ccp-props=""> </span></li>
</ul>
<ul>
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="14" data-list-defn-props="" data-aria-posinset="3" data-aria-level="1"><i><span data-contrast="auto">CA EdTechReport F1.pdf</span></i><span data-ccp-props=""> </span></li>
</ul>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-title title fusion-title-18 fusion-sep-none fusion-title-text fusion-title-size-two fusion-animated" style="--awb-text-color:var(--awb-color6);--awb-margin-bottom:40px;--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;--awb-font-size:20px;" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;font-size:1em;--fontSize:20;--minFontSize:20;line-height:1.5;">How can small IT teams in schools overcome the challenges of modern network complexity?</h2></div><div class="fusion-text fusion-text-118 fusion-animated" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view"><p style="color: #000000;">We help schools improve network visibility, maximize resources, and deliver seamless learning experiences.</p>
</div><div style="text-align:center;"><a class="fusion-button button-flat fusion-button-default-size button-default fusion-button-default button-7 fusion-button-default-span fusion-button-default-type fusion-animated" style="--awb-margin-bottom:40px;--button-border-radius-top-left:25px;--button-border-radius-top-right:25px;--button-border-radius-bottom-right:25px;--button-border-radius-bottom-left:25px;" data-animationType="slideShortInUp" data-animationDuration="1.5" data-animationOffset="top-into-view" target="_self" href="https://www.prival.ca/contact/"><span class="fusion-button-text awb-button__text awb-button__text--default">Let&#8217;s connect</span></a></div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"></div><div class="fusion-title title fusion-title-19 fusion-sep-none fusion-title-text fusion-title-size-two" style="--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;--fontSize:30;--minFontSize:30;line-height:1.5;"><h2>Additional resources</h2></h2></div><div class="fusion-recent-posts fusion-recent-posts-8 avada-container layout-default layout-columns-3"><section class="fusion-columns columns fusion-columns-3 columns-3"><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/the-shadow-pandemic-why-bans-and-training-fall-short/" aria-label="The shadow pandemic: Why bans and training fall short" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="Two business colleagues collaborate at a workstation in a modern office, reviewing AI tool usage across the organization to identify shadow AI exposure." srcset="https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-18x10.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-29T08:29:47-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/the-shadow-pandemic-why-bans-and-training-fall-short/">The shadow pandemic: Why bans and training fall short</a></h4><p class="meta"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-29T08:29:47-05:00</span><span>April 29, 2026</span><span class="fusion-inline-sep">|</span><span class="fusion-comments"><span>Comments Off<span class="screen-reader-text"> on The shadow pandemic: Why bans and training fall short</span></span></span></p><p>Bans don't work. Training falls short. Here's what actually controls AI risk inside your organization.</p></div></article><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/the-ai-adoption-blind-spot-what-the-data-is-telling-you/" aria-label="The AI adoption blind spot: What the data is telling you" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="IT leader assessing AI security risk in his organization" srcset="https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-18x10.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-28T15:09:08-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/the-ai-adoption-blind-spot-what-the-data-is-telling-you/">The AI adoption blind spot: What the data is telling you</a></h4><p class="meta"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-28T15:09:08-05:00</span><span>April 28, 2026</span><span class="fusion-inline-sep">|</span><span class="fusion-comments"><span>Comments Off<span class="screen-reader-text"> on The AI adoption blind spot: What the data is telling you</span></span></span></p><p>Gartner just shifted the entire data security playbook for GenAI. Here's what your organization needs to see.</p></div></article><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/why-identity-federation-and-sso-are-a-security-priority/" aria-label="Why identity federation and SSO are a security priority" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="" srcset="https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-18x12.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-03-26T14:01:34-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/why-identity-federation-and-sso-are-a-security-priority/">Why identity federation and SSO are a security priority</a></h4><p class="meta"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-03-26T14:01:34-05:00</span><span>March 26, 2026</span><span class="fusion-inline-sep">|</span><span class="fusion-comments"><span>Comments Off<span class="screen-reader-text"> on Why identity federation and SSO are a security priority</span></span></span></p><p>Local accounts create blind spots attackers count on. Here's what identity federation and SSO actually fix, and why centralized authentication matters now.</p></div></article></section></div></div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Optimizing network monitoring for the union sector</title>
		<link>https://www.prival.ca/optimizing-network-monitoring-for-the-union-sector/</link>
		
		<dc:creator><![CDATA[Robin Almaraz]]></dc:creator>
		<pubDate>Thu, 11 Dec 2025 14:21:52 +0000</pubDate>
				<category><![CDATA[Case Studies]]></category>
		<category><![CDATA[Government & Public sector]]></category>
		<guid isPermaLink="false">https://www.prival.ca/?p=13523</guid>

					<description><![CDATA[Enhanced network visibility, streamlined monitoring, and reduced operational costs with a tailored solution for the union sector.]]></description>
										<content:encoded><![CDATA[<div class="fusion-fullwidth fullwidth-box fusion-builder-row-9 fusion-flex-container nonhundred-percent-fullwidth non-hundred-percent-height-scrolling" style="--awb-border-radius-top-left:0px;--awb-border-radius-top-right:0px;--awb-border-radius-bottom-right:0px;--awb-border-radius-bottom-left:0px;--awb-margin-bottom-medium:40px;--awb-flex-wrap:wrap;" ><div class="fusion-builder-row fusion-row fusion-flex-align-items-flex-start fusion-flex-content-wrap" style="max-width:calc( 1200px + 0px );margin-left: calc(-0px / 2 );margin-right: calc(-0px / 2 );"><div class="fusion-layout-column fusion_builder_column fusion-builder-column-8 fusion_builder_column_1_1 1_1 fusion-flex-column" style="--awb-bg-blend:overlay;--awb-bg-size:cover;--awb-width-large:100%;--awb-margin-top-large:0px;--awb-spacing-right-large:0px;--awb-margin-bottom-large:0px;--awb-spacing-left-large:0px;--awb-width-medium:100%;--awb-spacing-right-medium:0px;--awb-spacing-left-medium:0px;--awb-width-small:100%;--awb-spacing-right-small:0px;--awb-spacing-left-small:0px;"><div class="fusion-column-wrapper fusion-flex-justify-content-flex-start fusion-content-layout-column"><div class="fusion-text fusion-text-119" style="--awb-font-size:20px;"><p><b>Optimizing the network </b></p>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"></div><div class="fusion-title title fusion-title-20 fusion-sep-none fusion-title-text fusion-title-size-two" style="--awb-margin-bottom:2%;--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;--awb-font-size:40px;"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;font-size:1em;--fontSize:40;line-height:1.5;"><h2>Objectives</h2></h2></div><ul style="--awb-iconcolor:#0076e9;--awb-line-height:28.9px;--awb-icon-width:28.9px;--awb-icon-height:28.9px;--awb-icon-margin:11.9px;--awb-content-margin:40.8px;" class="fusion-checklist fusion-checklist-1 fusion-checklist-default type-icons"><li class="fusion-li-item" style=""><span class="icon-wrapper circle-no"><i class="fusion-li-icon fa-arrow-right fas" aria-hidden="true"></i></span><div class="fusion-li-item-content">
<p>Centralize the monitoring of Fortinet equipment (APs, switches) with real-time graphs showing status and user counts.</p>
</div></li><li class="fusion-li-item" style=""><span class="icon-wrapper circle-no"><i class="fusion-li-icon fa-arrow-right fas" aria-hidden="true"></i></span><div class="fusion-li-item-content">Monitor the status, bandwidth, and availability of VPN tunnels with alerts.</div></li><li class="fusion-li-item" style=""><span class="icon-wrapper circle-no"><i class="fusion-li-icon fa-arrow-right fas" aria-hidden="true"></i></span><div class="fusion-li-item-content">Set up custom monitoring for Audiocode devices.</div></li><li class="fusion-li-item" style=""><span class="icon-wrapper circle-no"><i class="fusion-li-icon fa-arrow-right fas" aria-hidden="true"></i></span><div class="fusion-li-item-content">
<p>Reduce operational costs with endpoint-based pricing.</p>
</div></li></ul><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:4%;width:100%;"></div><div class="fusion-title title fusion-title-21 fusion-sep-none fusion-title-text fusion-title-size-two" style="--awb-margin-bottom:2%;--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;--awb-font-size:40px;"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;font-size:1em;--fontSize:40;line-height:1.5;"><h2 class="fusion-responsive-typography-calculated" data-fontsize="40" data-lineheight="60px">Technologies</h2></h2></div><div class="fusion-image-element " style="--awb-caption-title-font-family:var(--h2_typography-font-family);--awb-caption-title-font-weight:var(--h2_typography-font-weight);--awb-caption-title-font-style:var(--h2_typography-font-style);--awb-caption-title-size:var(--h2_typography-font-size);--awb-caption-title-transform:var(--h2_typography-text-transform);--awb-caption-title-line-height:var(--h2_typography-line-height);--awb-caption-title-letter-spacing:var(--h2_typography-letter-spacing);"><span class=" fusion-imageframe imageframe-none imageframe-1 hover-type-none"><img decoding="async" width="300" height="62" title="image-4-300&#215;62" src="https://www.prival.ca/wp-content/uploads/2025/12/image-4-300x62-1.png" alt class="img-responsive wp-image-13529" srcset="https://www.prival.ca/wp-content/uploads/2025/12/image-4-300x62-1-200x41.png 200w, https://www.prival.ca/wp-content/uploads/2025/12/image-4-300x62-1.png 300w" sizes="(max-width: 1024px) 100vw, (max-width: 740px) 100vw, 300px" /></span></div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:4%;width:100%;"></div><div class="fusion-title title fusion-title-22 fusion-sep-none fusion-title-text fusion-title-size-two" style="--awb-margin-bottom:2%;--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;--awb-font-size:40px;"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;font-size:1em;--fontSize:40;line-height:1.5;"><h2>The Challenge</h2></h2></div><div class="fusion-text fusion-text-120"><p>Our client, operating within a complex Windows server environment with multiple switches and Fortinet firewalls, was struggling with a lack of visibility. Critical information about the status of their access points (APs) and switches was siloed within their FortiGate. This required manual and reactive checks, which proved inefficient.</p>
<p>They also needed to monitor a specific Audiocode device used for VoIP. The challenge was to centralize monitoring, automate alerts, and replace a solution deemed less effective and more costly.</p>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"></div><div class="fusion-title title fusion-title-23 fusion-sep-none fusion-title-text fusion-title-size-two" style="--awb-margin-bottom:2%;--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;--awb-font-size:40px;"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;font-size:1em;--fontSize:40;line-height:1.5;"><h2>The solution</h2></h2></div><div class="fusion-text fusion-text-121"><div class="relative">
<p><span style="background-color: rgba(0, 0, 0, 0);">Prival deployed <span style="font-family: 'Red Hat Display'; font-weight: 500;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="500">blësk</span> monitoring solution to meet the client’s needs, configuring the automatic extraction of status data from FortiGate and developing custom dashboards for real-time visualization.</span></p>
<div id="bc919d3e-a9d8-4867-ad23-6e5156254ff7-content" class="w-full">
<div class="group mx-auto w-full max-w-&#091;720px&#093; @container" data-testid="copilot-node-bc919d3e-a9d8-4867-ad23-6e5156254ff7">
<div class="flex flex-col gap-2">
<div class="flex gap-2 mt-2.5 flex-col">
<div class="space-y-4 text-primary" data-testid="copilot-node-content-jasper">
<div class="break-words">
<p>A proactive alert system was implemented to flag any anomalies, such as a switch failure, with a tailored integration carried out for the Audiocode device, showcasing the flexibility of our solution.</p>
</div>
</div>
</div>
</div>
</div>
</div>
</div>
</div><div class="fusion-title title fusion-title-24 fusion-sep-none fusion-title-text fusion-title-size-two" style="--awb-margin-bottom:2%;--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;--awb-font-size:40px;"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;font-size:1em;--fontSize:40;line-height:1.5;"><h2>Results</h2></h2></div><div class="fusion-text fusion-text-122"><ul>
<li><strong>Centralized visibility: comprehensive and automated monitoring of the entire network infrastructure.</strong></li>
<li><strong>Increased proactivity: real-time alerts enable quick problem resolution before they impact operations.</strong></li>
<li><strong>Cost optimization: significant cost reduction thanks to a more advantageous pricing model.</strong></li>
</ul>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-text fusion-text-123"><h3 class="fusion-responsive-typography-calculated" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.8px">Facing a <span style="color: var(--awb-color6);">network visibility challenge</span><span style="color: var(--awb-color6);">?</span></h3>
</div><div class="fusion-text fusion-text-124"><p><strong class="font-semibold">Let’s simplify it</strong>. We’re here to help.</p>
<p>Book a<strong> free 15-minute consultation</strong> with a specialist.</p>
</div><div style="text-align:center;"><a class="fusion-button button-flat fusion-button-default-size button-custom fusion-button-default button-8 fusion-button-default-span fusion-button-default-type" style="--button_accent_color:var(--awb-color1);--button_accent_hover_color:var(--awb-color1);--button_border_hover_color:var(--awb-color1);--button-border-radius-top-left:35px;--button-border-radius-top-right:35px;--button-border-radius-bottom-right:35px;--button-border-radius-bottom-left:35px;--button_gradient_top_color:#0076e9;--button_gradient_bottom_color:#0076e9;--button_gradient_top_color_hover:var(--awb-color6);--button_gradient_bottom_color_hover:var(--awb-color6);" target="_self" href="https://outlook.office.com/book/ConsultationTI@prival.ca/s/i5ObXwdnrUqfwvuAuHG2QQ2"><span class="fusion-button-text awb-button__text awb-button__text--default">Find a time slot</span></a></div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"></div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:2%;width:100%;"></div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div></div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
		<item>
		<title>Legacy Systems in education: A critical IT challenge for schools</title>
		<link>https://www.prival.ca/legacy-systems-in-education-a-critical-it-challenge-for-schools/</link>
		
		<dc:creator><![CDATA[Robin Almaraz]]></dc:creator>
		<pubDate>Wed, 10 Dec 2025 14:01:13 +0000</pubDate>
				<category><![CDATA[News and Updates]]></category>
		<guid isPermaLink="false">https://www.prival.ca/?p=13511</guid>

					<description><![CDATA[Learn how legacy systems impact IT security in schools and discover practical ways to modernize. Protect data and support safe learning in education.]]></description>
										<content:encoded><![CDATA[<div class="fusion-fullwidth fullwidth-box fusion-builder-row-10 fusion-flex-container nonhundred-percent-fullwidth non-hundred-percent-height-scrolling" style="--awb-border-radius-top-left:0px;--awb-border-radius-top-right:0px;--awb-border-radius-bottom-right:0px;--awb-border-radius-bottom-left:0px;--awb-margin-bottom-medium:40px;--awb-flex-wrap:wrap;" ><div class="fusion-builder-row fusion-row fusion-flex-align-items-flex-start fusion-flex-content-wrap" style="max-width:calc( 1200px + 0px );margin-left: calc(-0px / 2 );margin-right: calc(-0px / 2 );"><div class="fusion-layout-column fusion_builder_column fusion-builder-column-9 fusion_builder_column_1_1 1_1 fusion-flex-column" style="--awb-bg-blend:overlay;--awb-bg-size:cover;--awb-width-large:100%;--awb-margin-top-large:0px;--awb-spacing-right-large:0px;--awb-margin-bottom-large:0px;--awb-spacing-left-large:0px;--awb-width-medium:100%;--awb-spacing-right-medium:0px;--awb-spacing-left-medium:0px;--awb-width-small:100%;--awb-spacing-right-small:0px;--awb-spacing-left-small:0px;"><div class="fusion-column-wrapper fusion-flex-justify-content-flex-start fusion-content-layout-column"><div class="fusion-text fusion-text-125"><p>Legacy systems continue to support daily operations in many schools, but they present significant challenges to IT infrastructure. These outdated technologies are ill-equipped to handle modern security threats and operational demands. This makes them a critical liability. Identifying and mitigating these risks is essential for IT teams. It is the only way to design secure, robust, and scalable systems that meet long-term educational goals.</p>
<p>Based on <span style="font-family: 'Red Hat Display'; font-weight: 500;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="500"><span style="font-family: 'Red Hat Display'; font-weight: 600;" data-fusion-font="true" data-fusion-google-font="Red Hat Display" data-fusion-google-variant="600">Trend Micro&#8217;s 2025 Cyber Risk Report</span>,</span> we will examine the technical challenges of legacy systems. It provides actionable strategies for IT teams to modernize infrastructure while minimizing disruptions. We will analyze the risks and present a clear roadmap for sustainable IT modernization in educational environments.</p>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"></div><div class="fusion-text fusion-text-126"><h3 class="fusion-responsive-typography-calculated" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.8px"><strong class="font-semibold">The true cost of outdated systems </strong></h3>
</div><div class="fusion-text fusion-text-127"><p class="text-sm"><strong class="font-semibold" style="color: #000000; background-color: rgba(0, 0, 0, 0); font-family: 'Bricolage Grotesque'; font-size: 22px;"><span style="color: #202020; font-family: 'Red Hat Display', Arial, Helvetica, sans-serif; font-size: 19px; font-weight: 400; background-color: rgba(0, 0, 0, 0);">Legacy systems are more than outdated equipment; they introduce multiple technical risks. The 2025 Cyber Risk Report outlines how unsupported hardware, software, and unpatched applications create active security vulnerabilities. Without recent security updates, these systems are especially prone to attacks like ransomware, phishing, and unauthorized access.</span></strong></p>
<p><strong class="font-semibold" style="background-color: rgba(0, 0, 0, 0); color: #000000; font-family: 'Bricolage Grotesque'; font-size: 22px;"><span style="color: #202020; font-family: 'Red Hat Display', Arial, Helvetica, sans-serif; font-size: 19px; font-weight: 400; background-color: rgba(0, 0, 0, 0);">The report highlights that educational networks, often managing thousands of endpoints, see misconfigurations escalate. This is especially true with the growth of remote learning. Attackers exploit these gaps, increasing the likelihood of data breaches and operational downtime. Relying on this aging infrastructure can disrupt critical services like online learning platforms and student records, affecting both safety and continuity. Each unpatched vulnerability is an open invitation for an attack. Proactive risk management is essential.</span></strong></p>
</div><div class="fusion-text fusion-text-128"><h3 class="fusion-responsive-typography-calculated" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.8px"><strong>An expanding attack surface</strong></h3>
</div><div class="fusion-text fusion-text-129"><p class="text-sm"><strong class="font-semibold" style="color: #000000; font-family: 'Bricolage Grotesque'; font-size: 22px; background-color: rgba(0, 0, 0, 0);"><span style="color: #202020; font-family: 'Red Hat Display', Arial, Helvetica, sans-serif; font-size: 19px; font-weight: 400; background-color: rgba(0, 0, 0, 0);">End-of-life (EOL) systems no longer receive critical security patches. As highlighted in the 2025 Cyber Risk-Report, this means every new vulnerability remains unaddressed. It effectively creates open backdoors for attackers. The report notes that unpatched applications and outdated hardware expand the attack surface. This is particularly true in school environments with a high number of networked devices. This unprotected state allows ransomware and other malware to spread rapidly. It increases the risk of operational shutdowns, data loss, and extended recovery times.</span></strong></p>
</div><div class="fusion-text fusion-text-130"><h3 class="font-semibold pdf-heading-class-replace pb-xxs text-lg leading-&#091;30px&#093; &#091;&amp;:not(:first-child)&#093;:pt-&#091;15px&#093; &#091;&amp;_.underline&#093;:underline-offset-&#091;6px&#093; &#091;&amp;_a&#093;:underline-offset-&#091;6px&#093;" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.8px"><strong class="font-semibold">Operational inefficiencies of legacy systems </strong></h3>
</div><div class="fusion-text fusion-text-131"><p class="text-sm"><strong class="font-semibold" style="color: #000000; font-family: 'Bricolage Grotesque'; font-size: 22px; background-color: rgba(0, 0, 0, 0);"><span style="color: #202020; font-family: 'Red Hat Display', Arial, Helvetica, sans-serif; font-size: 19px; font-weight: 400; background-color: rgba(0, 0, 0, 0);">Beyond security risks, legacy systems create operational bottlenecks that hinder efficiency. Their inability to integrate with modern platforms limits scalability and stifles innovation. As schools rely more on digital tools for administration and learning, outdated systems fail to meet these evolving demands.</span></strong></p>
</div><div class="fusion-text fusion-text-132"><h3 class="font-semibold pdf-heading-class-replace pb-xxs text-lg leading-&#091;30px&#093; &#091;&amp;:not(:first-child)&#093;:pt-&#091;15px&#093; &#091;&amp;_.underline&#093;:underline-offset-&#091;6px&#093; &#091;&amp;_a&#093;:underline-offset-&#091;6px&#093;" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.8px"><strong class="font-semibold">System downtime and maintenance costs </strong></h3>
</div><div class="fusion-text fusion-text-133"><p class="text-sm"><strong class="font-semibold" style="color: #000000; font-family: 'Bricolage Grotesque'; font-size: 22px; background-color: rgba(0, 0, 0, 0);"><span style="color: #202020; font-family: 'Red Hat Display', Arial, Helvetica, sans-serif; font-size: 19px; font-weight: 400; background-color: rgba(0, 0, 0, 0);">Legacy hardware and software are prone to frequent failures. This results in prolonged downtime and high maintenance costs. IT teams often spend significant time on troubleshooting or temporary fixes, diverting resources from strategic projects. The total cost of ownership for legacy systems can eventually exceed the investment needed for modern solutions.</span></strong></p>
</div><div class="fusion-text fusion-text-134"><h3 class="font-semibold pdf-heading-class-replace pb-xxs text-lg leading-&#091;30px&#093; &#091;&amp;:not(:first-child)&#093;:pt-&#091;15px&#093; &#091;&amp;_.underline&#093;:underline-offset-&#091;6px&#093; &#091;&amp;_a&#093;:underline-offset-&#091;6px&#093;" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.8px"><strong class="font-semibold">Incompatibility with modern tools </strong></h3>
</div><div class="fusion-text fusion-text-135"><p class="text-sm"><strong class="font-semibold" style="color: #000000; font-family: 'Bricolage Grotesque'; font-size: 22px; background-color: rgba(0, 0, 0, 0);"><span style="color: #202020; font-family: 'Red Hat Display', Arial, Helvetica, sans-serif; font-size: 19px; font-weight: 400; background-color: rgba(0, 0, 0, 0);">Legacy systems typically do not support new technologies. This includes cloud-based platforms, scalable storage, or advanced analytics. This lack of compatibility limits the ability to adopt solutions that improve efficiency and learning experiences. IT teams are often left managing fragmented systems, which increases complexity.</span></strong></p>
</div><div class="fusion-text fusion-text-136"><h3 class="font-semibold pdf-heading-class-replace pb-xxs text-lg leading-&#091;30px&#093; &#091;&amp;:not(:first-child)&#093;:pt-&#091;15px&#093; &#091;&amp;_.underline&#093;:underline-offset-&#091;6px&#093; &#091;&amp;_a&#093;:underline-offset-&#091;6px&#093;" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.8px"><strong class="font-semibold">Steps for IT modernization in schools </strong></h3>
</div><div class="fusion-text fusion-text-137"><p class="text-sm">Modernizing IT infrastructure does not require a complete overhaul. IT teams can adopt a phased approach. This allows you to prioritize high-risk areas while balancing budgets and operational needs.</p>
<h4 class="" style="--fontsize: 22; line-height: 1.36; --minfontsize: 22;" data-fontsize="22" data-lineheight="29.92px"><span class="TextRun MacChromeBold SCXW241068473 BCX8" lang="EN-GB" xml:lang="EN-GB" data-contrast="auto"><span class="NormalTextRun SCXW241068473 BCX8">Step 1: conduct a comprehensive audit</span></span></h4>
<p><span data-contrast="auto">Start with a detailed assessment of your IT environment. Document all hardware, software, and network components. Identify systems that are unsupported or nearing end-of-life. Highlight high-risk areas, such as those hosting sensitive data, and evaluate their impact on security and performance.</span></p>
<p><strong>Key metrics to evaluate: </strong></p>
<ul>
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="14" data-list-defn-props="{" data-aria-posinset="1" data-aria-level="1"><span data-contrast="auto">Percentage of systems no longer receiving security updates.</span></li>
</ul>
<ul>
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="14" data-list-defn-props="{" data-aria-posinset="2" data-aria-level="1"><span data-contrast="auto">Results from vulnerability scans and exposure levels.</span></li>
</ul>
<ul>
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="14" data-list-defn-props="{" data-aria-posinset="3" data-aria-level="1"><span data-contrast="auto">Frequency and duration of system downtime.</span></li>
</ul>
<ul>
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="14" data-list-defn-props="{" data-aria-posinset="4" data-aria-level="1"><span data-contrast="auto">Compatibility issues with modern platforms.</span></li>
</ul>
<h4 class="" style="--fontsize: 22; line-height: 1.36; --minfontsize: 22;" data-fontsize="22" data-lineheight="29.92px"><b><span data-contrast="auto">Step 2: Prioritize risk mitigation</span></b></h4>
<p><span data-contrast="auto">Based on the audit, focus on the most critical vulnerabilities. Key steps include:</span></p>
<ul>
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="15" data-list-defn-props="{" data-aria-posinset="1" data-aria-level="1"><span data-contrast="auto">Replacing unsupported operating systems with modern, secure alternatives.</span></li>
</ul>
<ul>
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="15" data-list-defn-props="{" data-aria-posinset="2" data-aria-level="1"><span data-contrast="auto">Migrating on-premise servers to cloud-based platforms for better scalability and maintenance.</span></li>
</ul>
<ul>
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="15" data-list-defn-props="{" data-aria-posinset="3" data-aria-level="1"><span data-contrast="auto">Implementing network segmentation to isolate legacy systems and reduce the attack surface.</span></li>
</ul>
<ul>
<li aria-setsize="-1" data-leveltext="" data-font="Symbol" data-listid="15" data-list-defn-props="{" data-aria-posinset="4" data-aria-level="1"><span data-contrast="auto">Considering advanced security tools like endpoint detection and response (EDR) or a zero-trust architecture (ZTA).</span></li>
</ul>
<h4 class="" style="--fontsize: 22; line-height: 1.36; --minfontsize: 22;" data-fontsize="22" data-lineheight="29.92px"><b><span data-contrast="auto">Step 3: Leverage funding for incremental upgrades</span></b></h4>
<p><span data-contrast="auto">Educational institutions often have strict budgets. However, targeted funding sources like grants can support incremental upgrades. Focus on high-impact areas, such as systems managing student data. Subscription-based cloud solutions can also provide cost-effective alternatives to on-premise infrastructure.</span></p>
<h4 class="" style="--fontsize: 22; line-height: 1.36; --minfontsize: 22;" data-fontsize="22" data-lineheight="29.92px"><b><span data-contrast="auto">Step 4: Embrace cloud migration</span></b></h4>
<p><span data-contrast="auto">A phased cloud migration offers a practical path to modernization. Begin with non-critical systems, such as email, and gradually move core operations. Cloud solutions improve scalability and eliminate the burden of maintaining physical hardware. This allows IT teams to focus on more strategic tasks.</span></p>
<h4 class="" style="--fontsize: 22; line-height: 1.36; --minfontsize: 22;" data-fontsize="22" data-lineheight="29.92px"><b><span data-contrast="auto">Step 5: Build a culture of continuous improvement</span></b></h4>
<p><span data-contrast="auto">IT modernization is an ongoing process. Establish regular evaluation and update cycles. This ensures systems remain secure and aligned with institutional goals. Encourage collaboration between IT teams and school administrators to align technology with long-term educational objectives.</span></p>
</div><div class="fusion-text fusion-text-138"><h3 class="font-semibold pdf-heading-class-replace pb-xxs text-lg leading-&#091;30px&#093; &#091;&amp;:not(:first-child)&#093;:pt-&#091;15px&#093; &#091;&amp;_.underline&#093;:underline-offset-&#091;6px&#093; &#091;&amp;_a&#093;:underline-offset-&#091;6px&#093; fusion-responsive-typography-calculated" style="--fontsize: 26; line-height: 1.3; --minfontsize: 26;" data-fontsize="26" data-lineheight="33.8px"><strong class="font-semibold">Conclusion: </strong></h3>
</div><div class="fusion-text fusion-text-139"><p><span data-contrast="auto">For IT teams in education, legacy systems pose significant challenges to security and efficiency. Unpatched vulnerabilities and escalating maintenance costs make these systems unsustainable. With a structured approach to modernization, educational institutions can overcome these challenges.</span><span data-ccp-props=""> </span></p>
<p><span data-contrast="auto">By conducting comprehensive audits, prioritizing risks, leveraging funding, and embracing cloud technologies, schools can improve efficiency. Continuous improvement and strategic planning will allow your IT team to protect sensitive data, enhance performance, and support long-term educational success.</span><span data-ccp-props=""> </span></p>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-title title fusion-title-25 fusion-sep-none fusion-title-text fusion-title-size-two fusion-animated" style="--awb-text-color:var(--awb-color6);--awb-margin-bottom:40px;--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;--awb-font-size:20px;" data-animationType="slideInUp" data-animationDuration="1.5" data-animationOffset="top-into-view"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;font-size:1em;--fontSize:20;--minFontSize:20;line-height:1.5;">Could legacy systems be the weakest link in your school&#8217;s IT security?</h2></div><div class="fusion-text fusion-text-140 fusion-animated" data-animationType="slideInUp" data-animationDuration="1.5" data-animationOffset="top-into-view"><p>By implementing strategic modernization plans, including cloud migration and advanced security measures, we’ve empowered schools to protect sensitive data and ensure operational continuity.</p>
</div><div style="text-align:center;"><a class="fusion-button button-flat fusion-button-default-size button-default fusion-button-default button-9 fusion-button-default-span fusion-button-default-type fusion-animated" style="--awb-margin-bottom:40px;--button-border-radius-top-left:25px;--button-border-radius-top-right:25px;--button-border-radius-bottom-right:25px;--button-border-radius-bottom-left:25px;" data-animationType="slideInUp" data-animationDuration="1.5" data-animationOffset="top-into-view" target="_self" href="https://www.prival.ca/contact/"><span class="fusion-button-text awb-button__text awb-button__text--default">Let&#8217;s connect</span></a></div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"><div class="fusion-separator-border sep-single sep-solid" style="--awb-height:20px;--awb-amount:20px;--awb-sep-color:var(--awb-color2);border-color:var(--awb-color2);border-top-width:1px;"></div></div><div class="fusion-text fusion-text-141"><p><span style="color: #202020;"><b>Sources</b></span>:</p>
</div><div class="fusion-text fusion-text-142"><ul>
<li>Trend Micro&#8217;s 2025 Cyber Risk Report.</li>
</ul>
</div><div class="fusion-separator fusion-full-width-sep" style="align-self: center;margin-left: auto;margin-right: auto;margin-bottom:1%;width:100%;"></div><div class="fusion-title title fusion-title-26 fusion-sep-none fusion-title-text fusion-title-size-two" style="--awb-margin-top-small:10px;--awb-margin-right-small:0px;--awb-margin-bottom-small:10px;--awb-margin-left-small:0px;"><h2 class="fusion-title-heading title-heading-left fusion-responsive-typography-calculated" style="margin:0;--fontSize:30;--minFontSize:30;line-height:1.5;"><h2>Additional resources</h2></h2></div><div class="fusion-recent-posts fusion-recent-posts-9 avada-container layout-default layout-columns-3"><section class="fusion-columns columns fusion-columns-3 columns-3"><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/the-shadow-pandemic-why-bans-and-training-fall-short/" aria-label="The shadow pandemic: Why bans and training fall short" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="Two business colleagues collaborate at a workstation in a modern office, reviewing AI tool usage across the organization to identify shadow AI exposure." srcset="https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-18x10.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/04/prival-shadow-ai-governance-hero-1600x900-1-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-29T08:29:47-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/the-shadow-pandemic-why-bans-and-training-fall-short/">The shadow pandemic: Why bans and training fall short</a></h4><p class="meta"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-29T08:29:47-05:00</span><span>April 29, 2026</span><span class="fusion-inline-sep">|</span><span class="fusion-comments"><span>Comments Off<span class="screen-reader-text"> on The shadow pandemic: Why bans and training fall short</span></span></span></p><p>Bans don't work. Training falls short. Here's what actually controls AI risk inside your organization.</p></div></article><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/the-ai-adoption-blind-spot-what-the-data-is-telling-you/" aria-label="The AI adoption blind spot: What the data is telling you" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="IT leader assessing AI security risk in his organization" srcset="https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-18x10.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/04/prival-ai-adoption-blind-spot-hero-1600x900-1-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-28T15:09:08-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/the-ai-adoption-blind-spot-what-the-data-is-telling-you/">The AI adoption blind spot: What the data is telling you</a></h4><p class="meta"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-04-28T15:09:08-05:00</span><span>April 28, 2026</span><span class="fusion-inline-sep">|</span><span class="fusion-comments"><span>Comments Off<span class="screen-reader-text"> on The AI adoption blind spot: What the data is telling you</span></span></span></p><p>Gartner just shifted the entire data security playbook for GenAI. Here's what your organization needs to see.</p></div></article><article class="post fusion-column column col col-lg-4 col-md-4 col-sm-4"><div class="fusion-flexslider fusion-flexslider-loading flexslider flexslider-hover-type-none"><ul class="slides"><li><a href="https://www.prival.ca/why-identity-federation-and-sso-are-a-security-priority/" aria-label="Why identity federation and SSO are a security priority" class="hover-type-none"><img decoding="async" width="700" height="441" src="https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-700x441.jpg" class="attachment-recent-posts size-recent-posts" alt="" srcset="https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-18x12.jpg 18w, https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-320x202.jpg 320w, https://www.prival.ca/wp-content/uploads/2026/03/professional-man-laptop-web-700x441.jpg 700w" sizes="(max-width: 700px) 100vw, 700px" /></a></li></ul></div><div class="recent-posts-content"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-03-26T14:01:34-05:00</span><h4 class="entry-title"><a href="https://www.prival.ca/why-identity-federation-and-sso-are-a-security-priority/">Why identity federation and SSO are a security priority</a></h4><p class="meta"><span class="vcard" style="display: none;"><span class="fn"><a href="https://www.prival.ca/author/ralmaraz/" title="Posts by Robin Almaraz" rel="author">Robin Almaraz</a></span></span><span class="updated" style="display:none;">2026-03-26T14:01:34-05:00</span><span>March 26, 2026</span><span class="fusion-inline-sep">|</span><span class="fusion-comments"><span>Comments Off<span class="screen-reader-text"> on Why identity federation and SSO are a security priority</span></span></span></p><p>Local accounts create blind spots attackers count on. Here's what identity federation and SSO actually fix, and why centralized authentication matters now.</p></div></article></section></div></div></div></div></div>
]]></content:encoded>
					
		
		
			</item>
	</channel>
</rss>
