Friday 24 October 2025, 11am-12noon BST
Recent breaches have exposed a critical vulnerability in modern security strategies: The overreliance on endpoint-centric tools. As attackers increasingly exploit third-party integrations and OAuth token abuse to bypass traditional defences, it’s clear that application security is no longer secondary – it’s the new frontline.
This session explored how the focus on endpoint protection has created dangerous blind spots in SaaS and application ecosystems. We dissected one of these breaches, examined token-based compromises, and questioned the assumption that EDR and log-based SIEM tools are sufficient.
We also explored a new approach to modern security, emphasising the correlation of user and entity behaviour across endpoints, applications and cloud services. By stitching together cohesive threat timelines, applying business context and leveraging AI-driven risk scoring, security teams can better detect lateral movement, credential abuse and application-layer threats missed by traditional tools.
Key Takeaways:
• Learn the mechanics and lessons of an application centric breach.
• Identify gaps in endpoint and traditional SIEM strategies.
• See how behavioural analytics and timeline investigations can streamline responses.
Guest chaired by
Simon Mair (info), CISO, Huguenots
Presented by
Jake Anthony (info), Principal Enterprise Sales Engineer, Exabeam