Ashur Kanoon

Director of Technical Product Marketing

Expertise

  • Cybersecurity
  • Identity and access management
  • Non-human identity
  • Workload identity and access management
  • AI agent security
  • Enterprise security
  • Cloud and infrastructure security
  • Enterprise networking
  • Authentication and authorization
  • Software engineering
  • Product management
  • Technical product marketing

About Author

Ashur Kanoon is the technical product marketing guy at Aembit. He started his career as a software engineer at Cisco working on Y2K. Yes, that Y2K. Today, he takes what excited and highly caffeinated engineers build and makes sure business and technical buyers understand why it matters. He has done this at a spinout that was lateracquired and at two other startups, both of which were also acquired.Outside of work, Ashur enjoys mechanical things, mostly cars and watches, and spending time with his wife and two teenagers.

Education

  • Center for Executive Education, University of California, Berkeley
  • Master of Business Administration, San José State University
  • Bachelor’s degree in computer information systems, DeVry Institute of Technology

Certifications

  • AWS Certified Cloud Practitioner
  • CCNA, Cisco
  • JNCIS-AC, Juniper Networks

Articles by Ashur Kanoon

Securing MCP servers requires rethinking the entire communication stack, not just adding TLS and calling it done.
Choosing the right flow is only the beginning. The real challenge is implementing either flow without creating persistent credential vulnerabilities that undermine your security.
Aembit’s AWS Secrets Manager integration makes it easier to protect AI and workload access today – and evolve toward short-lived, policy-driven authentication.
IAM migrations stall in hybrid enterprises due to massive on-prem Active Directory (AD) deployments, budget and regional constraints, and a lack of alignment among development, DevOps, and security teams.
Security teams can now correlate workload and agentic AI activity with broader enterprise telemetry, closing gaps before attackers exploit them.
Most enterprises struggle with hybrid Windows security gaps. Discover workload identity federation and conditional access to eliminate blind spots.
CSPM platforms excel at configuration analysis but miss dynamic credential lifecycle risks in workload identities. Learn how attackers exploit this blind spot.
AI agents face unique risks from static API keys and prompt injection. Learn why workload identity eliminates credentials for LLM workflows.
This integration brings workload identity and access data into Splunk, giving security teams clearer visibility, faster response, and stronger zero trust controls.
Say goodbye to long-lived personal access tokens as you replace them with ephemeral, policy-driven credentials and automated service account management.