Impart and Chill Blog

Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.

Test Firewall Rules with Lists

Impart Security
June 19, 2024
Read article

Understanding PCI DSS 4.0

Jonathan DiVincenzo
June 11, 2024
Read article

Make Your SIEM Smarter with Security Context Functions

Marc Harrison
June 6, 2024
Read article

Impart Security: Leading the Charge in API Security with SOC 2 Type 2 Certification

Impart Security
May 31, 2024
Read article

Why Out-of-Band API Security Solutions Cannot Protect Sensitive APIs

Brian Joe
May 30, 2024
Read article

Customize Detections Faster with Global Rule Search

Impart Security
May 28, 2024
Read article

The WAF Oath: Primum Non Nocere

I have found at least one common theme while working with different WAF solutions over the past 17 years. The first expectation of any WAF is not to block attacks. It is to not break the application. If a WAF impedes application functionality and negatively impacts the revenue the application is generating then the WAF’s primary functions don’t mean anything.
Jack Zarris
May 23, 2024
Read article

Why WAFs Cannot Effectively Protect Sensitive APIs

Brian Joe
May 16, 2024
Read article

LLMs in APPSEC: Real-World LLM Use Cases in Application Security from Four Industry Experts

‍Darwin, Phillip, James, and Brian separate hype from reality for LLMs in application security today, how things are evolving on the front lines, and the future off the appsec role from the expert perspectives of Industry Analyst, Security Practitioner, SDLC founder, and Runtime founder.
Impart Security
May 2, 2024
Read article

Is API Security Just a Better WAF?

The perceptions of the API security market have really shifted since we started Impart Security three years ago. When we first started Impart, API security was a new market; there were many different opinions about what API security was, how to approach the problem, and what good API security looked like. I remember back in 2020, although most security teams I spoke with thought of API security as a critical part of their security program, those same teams also had very different views of what specific problems and urgent pain points needed to be addressed. In this post I’ll unpack the current state of the API security market, where it’s going, and how security teams should be implementing it with API-first runtime protection.
Brian Joe
April 30, 2024
Read article

Safeguard Against Malicious Attacks in Real Time with the GraphQL Tag Collection

Impart Security
April 23, 2024
Read article

Combat Account Takeover with Enhanced ATO Protections

Impart Security
April 18, 2024
Read article