
Configuration Drift and the Risk of Misconfiguration
Misconfigurations can undermine security even on fully patched systems. In this webinar, CalCom’s Co-Founder and Director of Business Development Roy Ludmir explains what configuration vulnerabilities are, how configuration drift happens, and why it matters for both cyber risk and compliance.
What You’ll Learn
- The difference between software vulnerabilities (CVEs) and configuration vulnerabilities.
- Why configuration vulnerabilities can’t be fixed with a patch and require secure configuration changes or removal/disablement.
- What configuration drift is: when a setting moves from secure to insecure.
- The three common causes of drift: privileged user changes, patch conflicts, and platform upgrades/default changes.
- Why drift is urgent for security: it can be exploited in minutes, and it can also create audit and compliance exposure over time.
To read more about Configuration Drift, check out our blog post Why Fully Patched Systems Still Fail Security and Compliance