Nobody’s Watching: When Self-Managed Becomes Unmanaged
Self-managed infrastructure promises agility and autonomy. But what happens when it also slips outside the visibility of the teams responsible for defending it?
Our session examines a real-world incident in which an independently operated infrastructure became the starting point of a full-scale compromise inside an enterprise. The breach remained undetected until it was uncovered by luck rather than by security controls – highlighting how ownership gaps can quietly become security gaps.
During the session, we will explore:
- Why „self-managed” infrastructure so often turns into „unmanaged”.
- How to investigate an environment with no logging policy and no EDR, where nothing was ever recorded for reference.
- How a single foothold can evolve into a large-scale compromise
- Practical lessons for identifying and reducing blind spots before attackers find them first.
The common thread is an ownership gap, where infrastructure operates without anyone watching it. Rather than focusing on a specific technology, this talk explores the organizational and operational conditions that allow hackers to attack.
Whether you are responsible for security strategy, incident response, or enterprise infrastructure, you will leave with practical examples of potential implications and why it becomes even more dangerous in environments with limited visibility.
About the speaker
Antony Ancelin
Read more …