Fast-growing companies often have no shortage of security recommendations for protecting Google Workspace. The harder question is determining which controls will actually make the greatest difference when security teams have limited time and resources.
On September 23, 2026, BleepingComputer will host a live webinar titled “Breach autopsy: How fast-growing companies are breached through Google Workspace” with Material Security.
The webinar will feature Rajan Kapoor, Vice President of Security at Material Security, and Rick Fitzgerald, President of Fireside Consulting LLC, examining real, publicly documented Google Workspace breaches and what organizations can learn from them.
Rather than working through another lengthy security checklist, the speakers will use real breaches to discuss which Google Workspace security controls matter most, which may be overrated, and what they would prioritize if they were designing a security program for a fast-growing company from scratch.
The discussion will include two attacks that combined social engineering with malicious OAuth applications to gain access to Google Workspace environments.
These incidents provide an opportunity to look beyond theoretical risks and examine where defenses broke down, which overlooked weaknesses left users and data exposed, and what organizations could have done differently.
The webinar will also examine what happened during the critical first hours after the breaches were discovered and which response decisions helped limit—or potentially worsen—the impact.
For lean security teams, the goal isn’t to implement every possible security control. It’s understanding where the greatest risks exist and prioritizing improvements based on the effort required and the potential impact they can have.
Attendees will leave with a practical view of the controls and response measures that matter most when protecting Google Workspace environments.
Security guidance can quickly turn into long lists of settings, products, policies, and recommended controls.
But fast-growing organizations rarely have unlimited resources to implement and continuously manage every possible defense.
By examining how real Google Workspace breaches unfolded, security teams can better understand where attackers are finding opportunities and which defenses deserve the most attention.
The speakers will also discuss what they would build differently if they were designing a Google Workspace security program from scratch, giving attendees a practical framework for evaluating their own security priorities.
Join us to learn which Google Workspace security controls deserve the most attention and how lessons from real-world breaches can help organizations decide where to focus their limited security resources.
Gyazo server flaw exploited to steal 23.6 million user records
Fake LastPass Authenticator GitHub repos push new Rapuncel infostealer
ShinyHunters hacks Clop leak site, threatens to extort ransomware gang
Find out how long recovery really takes — and what it costs. Read the 2025 BCDR Report.
Overdue a password health-check? Audit your Active Directory for free
Watch a working exploit hit live controls and see exactly what blocks, detects, or misses
Patch automation needs more than speed. Action1 brings control into every stage of deployment.
Automate Onboarding and Access Reviews with No-Code IGA: See how it works
Terms of Use – Privacy Policy – Ethics Statement – Affiliate Disclosure
Read our posting guidelinese to learn what content is prohibited.



