Webinar

Industry Leaders

About Our Experts

Colin Whittaker

Founder & Director at Informed Risk Decisions Ltd
Colin is a leading payments security expert with extensive experience shaping global risk strategy. A former PCI SSC Board of Advisors member, he drove major security and compliance initiatives at APACS and Visa Europe. Now an independent consultant, he advises diverse organizations and frequently speaks and publishes on cybersecurity and information risk.

Darren Siegel

Head of Sales Engineering
With more than 20 years in IT infrastructure and security, Darren Siegel specializes in providing technical sales support for network design, cybersecurity, and system optimization at Specops Software, an Outpost24 company. Darren has a proven track record of helping clients implement efficient, secure solutions to meet their IT security needs.

Dirk Schrader

Global VP of Security Research, Netwrix
Dirk Schrader is a 25-year cybersecurity veteran with CISSP and CISM certifications. He champions cyber resilience through global projects, thought leadership, and published insights on change and vulnerability management—bridging technical, product, and strategic roles across startups and multinational corporations.

CPE Webinar | The Hidden Layer of Cyber Risk: Compromised Credentials Inside Your Environment

Jul 30 / IT GRC Forum
Compromised credentials remain one of the most pervasive and least visible sources of cyber risk. Even with MFA, password policies, and identity governance in place, attackers increasingly exploit exposed, weak, or previously stolen credentials to gain legitimate access and move laterally without triggering traditional alerts. This creates a hidden layer of risk that cuts across security operations, identity management, and governance, often leaving organizations unaware of how deeply an attacker can embed themselves using nothing more than valid credentials.

This session brings together experts in exposure management, identity security, and risk governance to examine how credential compromise unfolds inside hybrid environments. The discussion will explore how leaked passwords and exposed accounts expand the attack surface, how adversaries weaponize legitimate access to bypass controls, and how identity weaknesses connect directly to control failures, compliance obligations, and business‑level risk. Through real‑world examples and practical guidance, attendees will gain a clearer understanding of how exposed, weak, and breached credentials contribute to systemic risk and how external exposure intelligence can help quantify and prioritize these issues.

The session will also cover how to assess internal identity and privilege risks by detecting anomalous access, privilege misuse, and risky configurations across on‑premises and cloud systems. Participants will learn how credential‑based threats map to governance and assurance requirements and how identity gaps can create compliance challenges. Finally, the session will outline actionable steps to reduce credential exposure, strengthen authentication hygiene, validate control effectiveness, and disrupt the lateral‑movement techniques that underpin ransomware and targeted attacks.