詳細検索

Security


What is AI Security Operations? Practical guide to defense strategies that change with automatic detection and SOAR utilization
Security
March 14, 2026
4分で読めます

What is AI Security Operations? Practical guide to defense strategies that change with automatic detection and SOAR utilization

Now that attackers are leveraging AI, automation is essential for defenders. How will the use of AI change security operations, such as anomaly detection, alert prioritization, and automatic response through SOAR? We will explain realistic defense strategies in which humans and AI work together. |Colorkrew Security

What is security investing? Cyber risk concepts and priorities that management should know
Security
March 13, 2026
5分で読めます

What is security investing? Cyber risk concepts and priorities that management should know

Cyber risk is not an IT problem, but a management risk. Against the backdrop of increasing damage, the spread of RaaS, and tightening regulations, why is security an "investment" now? We will explain the concept of risk and step-by-step investment design that management should understand. |Colorkrew Security

What is lateral movement? A practical guide to defense-in-depth to prevent lateral deployment after intrusion
Security
March 12, 2026
5分で読めます

What is lateral movement? A practical guide to defense-in-depth to prevent lateral deployment after intrusion

To prevent lateral movement after intrusion, it is essential to have a multi-layered defense of privilege management, network isolation, and behavior detection. Based on the concept of Assume Breach, we will explain practical measures that can be used in common with Azure, AWS, and GCP. |Colorkrew Security

Preventing Cloud Privilege Bloat: A JIT/PIM Design Guide for Azure, AWS, and GCP
Security
March 11, 2026
3分で読めます

Preventing Cloud Privilege Bloat: A JIT/PIM Design Guide for Azure, AWS, and GCP

Explains the design of using Azure's Entra PIM, AWS's IAM Identity Center, and GCP's conditional IAM to make cloud permissions "limited". This is a practical guide to how to prevent privilege bloat and attack surface expansion. |Colorkrew Security

What are typical patterns of AWS security breaches? CloudTrail× GuardDuty Practice Checklist
Security
March 9, 2026
2分で読めます

What are typical patterns of AWS security breaches? CloudTrail× GuardDuty Practice Checklist

Almost all breaches of AWS are access key leakage, excessive authority, IAM, and S3 misdisclosure. Continuous monitoring combined with CloudTrail and GuardDuty provides a checklist of practices to efficiently close common entry points. |Colorkrew Security

GCP Security Pitfalls: A Practical Checklist to Prevent with Service Accounts, IAM, and Audit Logs
Security
March 9, 2026
3分で読めます

GCP Security Pitfalls: A Practical Checklist to Prevent with Service Accounts, IAM, and Audit Logs

GCP security incidents are mainly caused by service account key leakage, IAM overprivileges, and lack of audit logs. Learn IAM design best practices and practical steps to enable Cloud Audit Logs in a checklist format. |Colorkrew Security

How does API key token leakage work? Practical Secrets Management from GitHub to CI/CD
Security
February 28, 2026
3分で読めます

How does API key token leakage work? Practical Secrets Management from GitHub to CI/CD

We will explain the four paths of Secrets leakage, such as API key miscommit to Git repositories and CI/CD log leaks, and the creation of a practical mechanism to protect them through three layers: prevention, detection, and rotation. |Colorkrew Security

What is SOC fatigue? Risks in the Age of Alerts and 5 Improvements for Operational Design
Security
February 27, 2026
5分で読めます

What is SOC fatigue? Risks in the Age of Alerts and 5 Improvements for Operational Design

Explain the causes of SOC fatigue due to too many alerts and five practical points for operational design to prevent the risk of missing incidents and personalization. Learn how to build a sustainable SOC with automation, prioritization design, and knowledge standardization. |Colorkrew Security

The Complete Guide to API Security|5 Threats and Unbreakable Design After Authentication
Security
February 26, 2026
3分で読めます

The Complete Guide to API Security|5 Threats and Unbreakable Design After Authentication

"Safe because I authenticated with an API key" is a misconception. We will explain five threats that lurk after authentication, such as BOLA, insufficient rate limiting, input verification omissions, excessive information responses, and lack of audit logs, as well as implementation points for an unbreakable design. |Colorkrew Security

There are logs but can't be detected? Security Operational Pitfalls and 5 Improvements
Security
February 24, 2026
5分で読めます

There are logs but can't be detected? Security Operational Pitfalls and 5 Improvements

Explains the pitfall of security operation, "I take logs but don't notice the attack". From the perspective of an infrastructure engineer, we will introduce five steps to transform logs from mere storage objects into "defensive weapons" using correlation analysis and automatic detection. |Colorkrew Security

[Latest in 2026] EU AI Act and Japan's Regulatory Response|5 Measures Security Personnel Should Take
Security
February 24, 2026
3分で読めます

[Latest in 2026] EU AI Act and Japan's Regulatory Response|5 Measures Security Personnel Should Take

A thorough explanation of the risks unique to AI and measures against the Japanese AI Act, which will come into effect in 2025, and the EU AI Act, which will take effect in 2026. From building governance using Microsoft Purview and Defender to monitoring operations by SOC, we have summarized the practical points that security personnel should work on now. |Colorkrew Security

How to Use Microsoft Sentinel|What is Automation Design to Avoid Missing Critical Incidents?
Security
February 23, 2026
2分で読めます

How to Use Microsoft Sentinel|What is Automation Design to Avoid Missing Critical Incidents?

Experts will explain the setting conditions and "three principles" to ensure that serious incidents are not overlooked regarding automatic closing of alerts, which is an issue in SOC operations. The secrets of safe automation design, such as the importance of Severity limited and logging and weekly reviews to prevent accidents, are now available. Dramatically improve your own operations. |Colorkrew Security