fwd:cloudsec EU is just around the corner! ☁️ If you’re attending, be sure to stop by our happy hour with Maze. We’re taking over Flight Club Victoria to keep the fun alive after hours with food, drinks, and great company. Whether you’re looking to meet new people, catch up with familiar faces, or show off your darts skills, join us! 🎯 Link to register is in the comments 👇
About us
- Website
-
https://act.security/
External link for Act
- Industry
- Computer and Network Security
- Company size
- 11-50 employees
- Type
- Privately Held
Employees at Act
Updates
-
Act reposted this
190 Million Affected. $3.1 Billion in Direct Damage. 1 Unlocked Door. The 2024 Change Healthcare breach wasn't just a national crisis—it exposed a fundamental flaw in enterprise security architecture. A single remote access portal lacking MFA gave attackers entry. But what caused $3.1B+ in response costs, crippled 15 billion annual healthcare transactions, and compromised over 50% of the U.S. population was what happened next: 9 days of undetected lateral movement and privilege escalation. "Getting reports and visibility and endless findings... it just doesn't cut it anymore. CISOs want problems solved." While traditional tools flood security teams with alerts after an attacker is inside, Act Security goes back to first principles: stop breaches at the access root. Co-founders Jonathan Langer and Stephan Goldberg have reunited with an all-star team formerly from Claroty and Medigate—including Kobi Rubin, Offir Levy, Paul Goldweitz, Tal Vasser, and Maya Avneri. Without question, this synergy of success and teamwork will carry over to Act Security as they build a core piece of the new enterprise stack. Stephan Goldberg Kobi Rubin Offir Levy Here’s how Act's architecture is built to mitigate or prevent a Change Healthcare-level failure: Eliminate Unused & Over-Scoped Access: Stolen credentials only carry value if they grant broad internal access. Act continuously purges dormant, over-permissioned access paths—ensuring a compromised perimeter account leads to a dead end. Deterministic Blast Radius Reduction: By enforcing automated, infrastructure-level boundary policies, Act prevents attackers from traversing digital corridors, escalating privileges, or reaching core transaction databases. Action-Oriented Prevention Over Endless Visibility: Instead of generating thousands of passive alerts while threat actors move undetected for days, Act actively closes permission gaps and enforces zero-trust boundaries natively in the cloud. When a single breach can freeze an entire nation's healthcare revenue cycle, "visibility" is no longer enough. The future of enterprise defense is proactive, deterministic prevention.
-
Vegas, round two! 🎲 The Act team is heading to Fal.Con 2026: Meet us at our Cosmo suite to grab some drinks and discuss how to cut off excessive access right at the infrastructure layer, before attacks unfold. 👉 Book your meeting here: https://lnkd.in/dfv-8TUW
-
Act reposted this
For years, cloud security has been stuck surfacing misconfigurations. In this week's #VendorWatchSeries, we explore how Act Security bets that the real control point is buried deeper, at the intersection of identity and network access. Two weeks ago, Act came out of stealth with a prevention-first model built on what they call the access fabric. The core idea: identity and network controls are converging into a single defence layer across cloud infrastructure. The real problem is not just excessive permissions. Rather, it’s that configured access creates viable attack paths that no one intended, and most teams can’t see them well enough to eliminate. Act’s research puts a number on it: up to 96% of cloud permissions go unused, exposing a massive gap between granted access and what is actually needed. Act tackles this elegantly by mapping the delta between configured access and observed use, then pinpointing which reachability paths can be cut off at the source. Three reasons why this approach stands out: → It targets viable access paths, not just isolated misconfigurations. A single access issue can ripple across identities, services, and network relationships, thereby multiplying exposure. → It enforces through the cloud-native controls you already have. No agents means no extra enforcement layer. Remediation happens through the provider controls already in your stack. → It unifies identity and network security into a single operating model. In cloud infrastructure, permissions and connectivity are no longer treated as if they were separate problems. Together, they define what can reach what, and under which conditions. For CISOs and cloud security leaders, this shifts the evaluation question. It is not just about spotting excessive access. The real test is whether a platform can identify which access paths are truly unnecessary, remove them safely, and prove that business access still works as intended. Act was founded by Jonathan Langer and Itay Kirshenbaum, previously co-founders of Medigate, alongside Stephan Goldberg and Ilai Fallach. The company launched with $60 million in funding from Team8, Bessemer Venture Partners, Notable Capital, and other investors. The broader signal to take note of here is that cloud security is moving from simply finding exposure to eliminating the conditions that make exposure exploitable. Learn more about Act Security: https://lnkd.in/gQPAiaND #CloudSecurity #Cybersecurity #IdentitySecurity #CNAPP #CISO #SecurityArchitecture
-
-
Act 🤝 WestCap “Traditional tools are great at finding risk and telling me about it. Now, the risk landscape is changing and forcing us to go back to the fundamentals and eliminate the root cause of the problem: the over-granting of access.” Andrew Cal just took the words right out of our mouths 🙌 See the full video on our website: act.security
-
London is calling, and the Act team is officially headed to fwd:cloudsec EU! 🇬🇧 Come find us at Table 8 to connect with the Act team and chat about all things cloud access. We’re also teaming up with Maze to host a Happy Hour at ‘Flight Club Victoria’ - join us for drinks, great food, and a few competitive rounds of darts🎯 Grab your spot! Link in the comments. 👇 Evyatar Cohen Lea Edelstein Olkinizki David Kerber Gilad Sharabi Kobi Rubin
-
Act reposted this
ואו מה קורה עם המיתוגים השנה? קודם הרמס ואז Act תשמעוווו😎 אחד המיתוגים היותר מיוחדים שראיתי לאחרונה 👕 הצוות של Act הושקו רשמית מ- Stealth עם Actopolis, עולם שמחבר אדריכלות קלאסית עם אבטחת Cloud בעידן ה AI. אבטחה מתחילה ביסודות. וזה גם מה שהם בונים בפועל. במקום להוסיף עוד התראות, Act מצמצמים הרשאות עודפות ונתיבי תקיפה לפני שהם הופכים לאירוע אבטחה. אז הכיתוב Build your empire על החולצה הוא לא רק קופי מוצלח. הוא המשך ישיר של המוצר. תודה לצוות של Act אלופים כייף שאתם איתנו 🙏🏾 Approved by Zeus ⚡️ Stephan Goldberg Roi Becidan Gilad Katz Shmuel Max #security #Actopolis #CloudSecurity
-
-
Act reposted this
Kinda chic to get swag Gett-delivered to your door. A bit ago I wrote a post on recently out of stealth cyber brands and the God of Swag Act bestowed upon my doorstep a lovely box. It contained a very comfy t-shirt which I am wearing as pajamas in bed as I type this. But I gotta say, as someone who misses The Container Store, the box is actually fab. Defo using this to store all those crazy random cables on my desk. The fluff clouds inside was a lovely touch. I mean, totally open to getting more company swag and roasting it. Wiz Faye Wolt , are you next? I promise I’ll get someone other than my fiancée to take the pics.
-
-
AI didn’t just join the cloud threat landscape this year, it reshuffled the deck entirely 🃏 In the CSA’s Top Threats to Cloud Computing 2026 report, traditional system vulnerabilities dropped to last place. The new #1 risk? Inadequate Identity & Access Management. Here's why: Frontier AI models can now discover zero-day vulnerabilities without human intervention. When everything is vulnerable all the time, patching becomes your least effective method. Access, on the other hand, is the engine that drives everything - making it the common thread across the entire CSA list 🧵 Lock down access, and you lock down the risk. We broke down the full CSA rankings, what this shift means for your security strategy, and how Act helps you eliminate excessive access from the ground up. Link in the comments 👇
-
-
☁️ Act Security is now available on Amazon Web Services (AWS) Marketplace, making it easier than ever to harden your cloud environment and eliminate excessive access right at the infrastructure layer. With Act, teams can: ✅ Map what’s actually reachable across both network and identity in a single access graph. ✅ Block entire attack paths into, through, and out of your cloud environment with a single change. ✅ Simulate every policy change before going live so you never risk production. ✅ Continuously monitor drift to ensure new excessive access never creeps back in. All of it built on AWS's own native controls, so you're tightening the environment with the guardrails you already have. Go to AWS marketplace: https://lnkd.in/diBFDfHC