Tag

Guide

All articles tagged Guide.

Mapping business requirements to authorization policy for aviation

Mapping business requirements to authorization policy for aviation

A practical guide to authorization in aviation. Learn how to implement RBAC and ABAC to secure flight, maintenance, and ticketing systems with contextual policies, audits, and real-time enforcement.

EngineeringGuide
H.A. WriterJanuary 30, 2026
A shared authorization layer that adapts to context

A shared authorization layer that adapts to context

A shared, context-aware authorization layer prevents policy sprawl, ensures consistent decisions across services, and improves auditability. Learn how externalized, runtime authorization with Cerbos centralizes policy while keeping enforcement local, fast, and reliable.

Guide
Alex OlivierJanuary 28, 2026
What is authorization as a service?

What is authorization as a service?

'Authorization as a service’ refers to using a third-party service to take care of an application’s authorization. Read the full definition and learn more here.

Guide
Alex OlivierJanuary 26, 2026
Cerbos Hub is now available on-premise

Cerbos Hub is now available on-premise

Cerbos Hub is now available self hosted and on premise, enabling centralized, auditable authorization for regulated, air-gapped, and private environments without relying on cloud-based control planes.

AnnouncementGuide
Lisa DziubaJanuary 22, 2026
Authorization as a continuously governed control

Authorization as a continuously governed control

Runtime authorization requires continuous governance without adding latency or risk. Learn how centralized policy, consistent decision logic, and auditable evidence enable scalable, low-latency authorization across humans, services, and AI agents - without becoming a bottleneck.

Guide
Alex OlivierJanuary 21, 2026
When authorization is static, risk accumulates silently

When authorization is static, risk accumulates silently

Authorization failures happen at decision time. Learn why static access models break in production, create audit blind spots, and let risk accumulate, plus what CISOs need to make authorization observable, explainable, and enforceable at runtime.

Guide
Alex OlivierJanuary 16, 2026
MCP and Zero Trust: Securing AI agents with identity and policy

MCP and Zero Trust: Securing AI agents with identity and policy

MCP and Zero Trust explained: how to secure AI agents with identity, policy, and fine-grained authorization. Learn why MCP changes the security model and how Zero Trust principles apply to agent access, tools, and data.

GuidePresentation
Alex OlivierJanuary 09, 2026
10 critical challenges CISOs face in 2026 and how to solve them

10 critical challenges CISOs face in 2026 and how to solve them

Discover the top 10 challenges CISOs face in 2026, from compliance pressures and Zero Trust complexity to AI-driven threats and talent shortages, with actionable strategies to strengthen security, resilience, and business alignment.

Guide
Emre BaranJanuary 05, 2026
Cerbos PDP and Cerbos Hub: Choosing the right setup for your team

Cerbos PDP and Cerbos Hub: Choosing the right setup for your team

Compare Cerbos PDP and Cerbos Hub to choose the right authorization setup. Learn when open source is enough and when managed policy authoring, testing, deployment, and audit tooling reduce engineering effort at scale.

Guide
Lisa DziubaDecember 18, 2025
Gartner IAM Summit 2025: Authorization maturity, AuthZEN momentum, and why identity security is expanding to every workload

Gartner IAM Summit 2025: Authorization maturity, AuthZEN momentum, and why identity security is expanding to every workload

Gartner IAM Summit 2025 insights on authorization maturity, Workload IAM, and AuthZEN. Learn why policy based, externalized authorization is becoming core identity infrastructure for modern workloads and AI agents.

Guide
Alex OlivierDecember 15, 2025
Secure RAG: Implement LLM Access Control with Cerbos

Secure RAG: Implement LLM Access Control with Cerbos

Learn how to implement access control for RAG and LLMs. Maintain data security and compliance with fine-grained authorization for your RAG and LLMs. Enforce your organization’s permissions within your AI system.

AnnouncementGuide
Heidi HokansonDecember 10, 2025
Key compliance regulations for non-human identities

Key compliance regulations for non-human identities

A clear guide to key compliance regulations for non-human identities across PCI DSS, DORA, NIS2, ISO 27001, HIPAA, GDPR, and SOC 2. Plus what auditors expect and how to prepare.

Guide
Lisa DziubaDecember 05, 2025
How to implement scalable multitenant authorization

How to implement scalable multitenant authorization

Implement multitenant authorization without role explosion. Learn how tenant-aware roles, ABAC, and externalized policy engines provide secure, flexible, and maintainable access control for multitenant applications.

Guide
Alex OlivierDecember 04, 2025
Cerbos vs. OPA

Cerbos vs. OPA

Understand the differences between Cerbos and OPA across policy language, developer experience, architecture, performance, and policy management. We will also show the strengths and limitations of each solution and discuss practical trade-offs.

Guide
Emre BaranNovember 27, 2025
Key takeaways from Workload Identity Day 0 at KubeCon

Key takeaways from Workload Identity Day 0 at KubeCon

Workload Identity Day 0 revealed SPIFFE’s dominance and exposed rising risks in non-human and AI-driven identities. Learn why modern workloads demand strong identity, fine-grained authorization, and platform-level security to stay compliant and resilient as AI agents scale.

Guide
Alex OlivierNovember 27, 2025
What is Cerbos?

What is Cerbos?

What Cerbos is, and why it should be the go to for authorization.

Guide
Bruce WigglestonNovember 27, 2025
Mongoose adapter for Cerbos Query Plans v2.0

Mongoose adapter for Cerbos Query Plans v2.0

Speed up authorization in MongoDB with Cerbos Query Plans and the enhanced Mongoose adapter. Enforce policy logic in-database and return only allowed records.

DocumentationGuideIntegration
Alex OlivierNovember 25, 2025
Staying compliant - What you need to know

Staying compliant - What you need to know

Staying on top of compliance has become essential for businesses today. In this article we examine the key elements of compliance that should be prioritized, from data quality and change management to audit logs and access control. We also explore how picking the right authorization system can strengthen your compliance efforts.

Guide
Anna PaykinaNovember 20, 2025