<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Access Control &#8211; Noise</title>
	<atom:link href="https://noise.getoto.net/tag/access-control/feed/" rel="self" type="application/rss+xml" />
	<link>https://noise.getoto.net</link>
	<description>The collective thoughts of the interwebz</description>
	<lastBuildDate>Fri, 23 May 2025 00:00:10 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.2</generator>
	<item>
		<title>Effortless enterprise authentication at Grab: Dex in action</title>
		<link>https://noise.getoto.net/2025/05/23/effortless-enterprise-authentication-at-grab-dex-in-action/</link>
		
		<dc:creator><![CDATA[Grab Tech]]></dc:creator>
		<pubDate>Fri, 23 May 2025 00:00:10 +0000</pubDate>
				<category><![CDATA[Access Control]]></category>
		<category><![CDATA[Engineering]]></category>
		<category><![CDATA[security]]></category>
		<guid isPermaLink="false">https://engineering.grab.com/dex-in-action</guid>

					<description><![CDATA[Introduction

Grab, Southeast Asia’s leading superapp, has created many internal applications to support its diverse range of internal and external business needs. Authentication1 and authorisation2 serve as fundamental components of application develo...]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>IAM Policies and Bucket Policies and ACLs! Oh, My! (Controlling Access to S3 Resources)</title>
		<link>https://noise.getoto.net/2023/07/07/iam-policies-and-bucket-policies-and-acls-oh-my-controlling-access-to-s3-resources/</link>
		
		<dc:creator><![CDATA[Kai Zhao]]></dc:creator>
		<pubDate>Fri, 07 Jul 2023 16:39:22 +0000</pubDate>
				<category><![CDATA[Access Control]]></category>
		<category><![CDATA[ACL]]></category>
		<category><![CDATA[Amazon Simple Storage Service (S3)]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[Best of]]></category>
		<category><![CDATA[Best practices]]></category>
		<category><![CDATA[Bucket policies]]></category>
		<category><![CDATA[How-to guides]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[S3]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[storage]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=034dac4d8a5a72833725c0568ec458ae</guid>

					<description><![CDATA[Updated on July 6, 2023: This post has been updated to reflect the current guidance around the usage of S3 ACL and to include S3 Access Points and the Block Public Access for accounts and S3 buckets. Updated on April 27, 2023: Amazon S3 now automatically enables S3 Block Public Access and disables S3 access […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Zero traffic cost for Kafka consumers</title>
		<link>https://noise.getoto.net/2023/07/07/zero-traffic-cost-for-kafka-consumers/</link>
		
		<dc:creator><![CDATA[Grab Tech]]></dc:creator>
		<pubDate>Fri, 07 Jul 2023 00:23:05 +0000</pubDate>
				<category><![CDATA[Access Control]]></category>
		<category><![CDATA[Engineering]]></category>
		<category><![CDATA[kafka]]></category>
		<category><![CDATA[Performance]]></category>
		<category><![CDATA[security]]></category>
		<guid isPermaLink="false">https://engineering.grab.com/zero-traffic-cost</guid>

					<description><![CDATA[Introduction

Coban, Grab’s real-time data streaming platform team, has been building an ecosystem around Kafka, serving all Grab verticals. Along with stability and performance, one of our priorities is also cost efficiency.

In this article, we expla...]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Migrating from Role to Attribute-based Access Control</title>
		<link>https://noise.getoto.net/2023/03/09/migrating-from-role-to-attribute-based-access-control/</link>
		
		<dc:creator><![CDATA[Grab Tech]]></dc:creator>
		<pubDate>Thu, 09 Mar 2023 01:23:05 +0000</pubDate>
				<category><![CDATA[Access Control]]></category>
		<category><![CDATA[Engineering]]></category>
		<category><![CDATA[security]]></category>
		<guid isPermaLink="false">https://engineering.grab.com/migrating-to-abac</guid>

					<description><![CDATA[Grab has always regarded security as one of our top priorities; this is especially important for data platform teams. We need to control access to data and resources in order to protect our consumers and ensure compliance with various, continuously evo...]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Improved access controls: API access can now be selectively disabled</title>
		<link>https://noise.getoto.net/2023/01/11/improved-access-controls-api-access-can-now-be-selectively-disabled/</link>
		
		<dc:creator><![CDATA[Joseph So]]></dc:creator>
		<pubDate>Wed, 11 Jan 2023 13:00:00 +0000</pubDate>
				<category><![CDATA[Access Control]]></category>
		<category><![CDATA[CIO Week]]></category>
		<category><![CDATA[Zero-Trust]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=9c5865a9a6b52ec638775be75f71697f</guid>

					<description><![CDATA[Making it easier for account owners to view and manage the access their users have on an account by allowing them to restrict API access to the account.]]></description>
		
		
		<enclosure url="http://blog.cloudflare.com/content/images/2023/01/image3-18.png" length="0" type="" />

			</item>
		<item>
		<title>Zero trust with Kafka</title>
		<link>https://noise.getoto.net/2022/12/07/zero-trust-with-kafka/</link>
		
		<dc:creator><![CDATA[Grab Tech]]></dc:creator>
		<pubDate>Wed, 07 Dec 2022 00:23:05 +0000</pubDate>
				<category><![CDATA[Access Control]]></category>
		<category><![CDATA[Engineering]]></category>
		<category><![CDATA[kafka]]></category>
		<category><![CDATA[Performance]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Zero-Trust]]></category>
		<guid isPermaLink="false">https://engineering.grab.com/zero-trust-with-kafka</guid>

					<description><![CDATA[Introduction
Grab’s real-time data platform team, also known as Coban, has been operating large-scale Kafka clusters for all Grab verticals, with a strong focus on ensuring a best-in-class-performance and 99.99% availability.

Security has always been ...]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Masking field values with Amazon Elasticsearch Service</title>
		<link>https://noise.getoto.net/2021/01/11/masking-field-values-with-amazon-elasticsearch-service/</link>
		
		<dc:creator><![CDATA[Prashant Agrawal]]></dc:creator>
		<pubDate>Mon, 11 Jan 2021 16:52:27 +0000</pubDate>
				<category><![CDATA[Access Control]]></category>
		<category><![CDATA[Amazon Elasticsearch Service]]></category>
		<category><![CDATA[Amazon ES]]></category>
		<category><![CDATA[Elasticsearch]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[Kibana]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Uncategorized]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=10b4306ea9323e7af2d8b2947f484f5a</guid>

					<description><![CDATA[Amazon Elasticsearch Service (Amazon ES) is a fully managed service that you can use to deploy, secure, and run Elasticsearch cost-effectively at scale. The service provides support for open-source Elasticsearch APIs, managed Kibana, and integration with Logstash and other AWS services. Amazon ES provides a deep security model that spans many layers of interaction and […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Automate domain join for Amazon EC2 instances from multiple AWS accounts and Regions</title>
		<link>https://noise.getoto.net/2020/12/10/automate-domain-join-for-amazon-ec2-instances-from-multiple-aws-accounts-and-regions/</link>
		
		<dc:creator><![CDATA[Sanjay Patel]]></dc:creator>
		<pubDate>Thu, 10 Dec 2020 19:22:35 +0000</pubDate>
				<category><![CDATA[Access Control]]></category>
		<category><![CDATA[Amazon EC2]]></category>
		<category><![CDATA[AWS Directory Service]]></category>
		<category><![CDATA[How-to guides]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[Microsoft Active Directory]]></category>
		<category><![CDATA[Microsoft AD]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=946009e1bf0fcd3658a801488c87bc5a</guid>

					<description><![CDATA[As organizations scale up their Amazon Web Services (AWS) presence, they are faced with the challenge of administering user identities and controlling access across multiple accounts and Regions. As this presence grows, managing user access to cloud resources such as Amazon Elastic Compute Cloud (Amazon EC2) becomes increasingly complex. AWS Directory Service for Microsoft Active [&#8230;]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Aligning IAM policies to user personas for AWS Security Hub</title>
		<link>https://noise.getoto.net/2020/11/02/aligning-iam-policies-to-user-personas-for-aws-security-hub/</link>
		
		<dc:creator><![CDATA[Vaibhawa Kumar]]></dc:creator>
		<pubDate>Mon, 02 Nov 2020 20:05:23 +0000</pubDate>
				<category><![CDATA[Access Control]]></category>
		<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[AWS Security Hub]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=f5f67c27dc0ddf42bef668ad2a815e27</guid>

					<description><![CDATA[AWS Security Hub provides you with a comprehensive view of your security posture across your accounts in Amazon Web Services (AWS) and gives you the ability to take action on your high-priority security alerts. There are several different user personas that use Security Hub, and they typically require different AWS Identity and Access Management (IAM) [&#8230;]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Securing and managing multi-cloud Presto Clusters with Grab’s DataGateway</title>
		<link>https://noise.getoto.net/2020/08/24/securing-and-managing-multi-cloud-presto-clusters-with-grabs-datagateway/</link>
		
		<dc:creator><![CDATA[Grab Tech]]></dc:creator>
		<pubDate>Mon, 24 Aug 2020 08:12:56 +0000</pubDate>
				<category><![CDATA[Access Control]]></category>
		<category><![CDATA[cluster]]></category>
		<category><![CDATA[data]]></category>
		<category><![CDATA[Data Pipeline]]></category>
		<category><![CDATA[Data Science]]></category>
		<category><![CDATA[Engineering]]></category>
		<category><![CDATA[Presto]]></category>
		<category><![CDATA[Workload Distribution]]></category>
		<guid isPermaLink="false">https://engineering.grab.com/data-gateway</guid>

					<description><![CDATA[Introduction

Data is the lifeblood of Grab and the insights we gain from it drive all the most critical business decisions made by Grabbers and our leaders every day.

Grab’s Data Engineering (DE) team is responsible for maintaining the data platform,...]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 43/232 objects using Memcached
Page Caching using Disk: Enhanced 
Lazy Loading (feed)
Database Caching using Memcached

Served from: noise.getoto.net @ 2025-12-10 20:06:49 by W3 Total Cache
-->