k9 Security
  • Use Cases
    • DevOps
    • Enterprise Security
    • MDR & SOC
    • OEM Integrations
  • Demo
  • Pricing
  • Docs
  • Contact
  • About
  • Blog
  • Sign up
Select Page

Building Evals for an AI Agent: From Zero to Consistency Testing

by Stephen Kuenzli | Apr 2, 2026 | AI, Security

We’re building an AI agent that triages cloud security findings. It reads a finding from AWS Security Hub or Prowler, assesses the risk, and tells an engineer exactly what to do about it with specific AWS CLI commands they can run. The agent worked. We had 620...

k9 Security launches initial support for automated IAM security review with findings in OCSF format

by Chase Christy | Aug 22, 2025 | Announcements, Security

k9 Security now automates two critical IAM security review processes and produces high-signal findings in Open Cybersecurity Schema Framework (OCSF) format. This new capability significantly enhances your ability to identify and address critical IAM security risks in...

Effective IAM News – 2025-04-18

by Chase Christy | Jul 31, 2025 | The Effective IAM Newsletter

If you’re responsible for securing Azure, you should know about Azure’s Apex Permissions: Elevate Access & The Logs Security Teams Overlook because it exposes a critical security blindspot affecting virtually every Azure environment. Nathan Eades and...

Scaling IAM Security For Major Cloud Platforms: Insights from the ScaleToZero Podcast

by Chase Christy | Jul 12, 2025 | Presentations, Security

In a recent episode of the ScaleToZero podcast powered by Cloudanix, k9 Security’s founder, Stephen Kuenzli, broke down one of the most persistent challenges in cloud security: how to scale identity and access management (IAM) in large, fast-moving engineering...
Top 5 Open-Source Cloud Security Tools You Need to Know in 2025

Top 5 Open-Source Cloud Security Tools You Need to Know in 2025

by Chase Christy | Apr 11, 2025 | Security

In this guide, we’re highlighting five of the most impactful open-source tools that help security and platform teams identify, monitor, and respond to vulnerabilities across the cloud lifecycle. Whether you’re scanning infrastructure as code before deployment,...
« Older Entries

Recent Posts

  • How to Prioritize CVEs by Risk, Not Severity
  • Your MCP server on AgentCore Runtime fails its health check at `/mcp/`. Here’s how to fix it.
  • Severity is no longer a triage input. Risk scoring you own is.
  • Generate least-privilege EventBridge policies and restrict access to your AWS Organization with k9-cdk
  • Building Evals for an AI Agent: From Zero to Consistency Testing

Recent Comments

    Copyright 2026 K9 Security Inc.