Dan Kaplan

Director of Content Marketing

About Author

Dan Kaplan is the friendly neighborhood content marketing leader at Aembit. Based in New York but operating remotely, he tells stories about agentic identity, workload identity, and cybersecurity that are meant to educate, inspire and, if he’s lucky, even entertain. Before joining Aembit, Dan held a similar role at Google Cloud, following stints at Siemplify and Trustwave, where he led content initiatives. He planted his roots in cybersecurity as a reporter and editor at SC Media. When he’s not conjuring content, he can usually be found watching sports, advocating for farm animals, or listening to paranormal stories as he falls asleep. Don’t ask.

Expertise

  • Cybersecurity
  • Identity and access management
  • Non-human identity
  • Workload identity and access management
  • AI agent identity and security
  • Cloud security
  • Security operations
  • Threat detection and response
  • Cybersecurity journalism
  • Content strategy
  • Editorial strategy

Education

  • Bachelor’s degree in journalism, Syracuse University, S.I. Newhouse School of Public Communications

Certifications

  • Google Cloud Certified Associate Cloud Engineer
  • AWS Certified DevOps Engineer – Professional
  • AWS Certified Solutions Architect – Professional

Articles by Dan Kaplan

As agents scale and operate continuously, MCP servers are becoming long-lived access intermediaries, concentrating privilege in ways security teams have already struggled to contain.
Runnable security patterns that examine how agentic behavior expands, drifts, and exceeds intent during everyday use.
A ServiceNow impersonation flaw illustrates how agentic systems turn weak identity assumptions into durable access paths across enterprise environments.
Traditional security models fail to detect compromised service accounts and non-deterministic AI agents, requiring a shift to layered, identity-aware behavioral monitoring.
API keys offer simplicity, but OAuth provides superior security through automatic expiration and granular scopes.
A project to improve test visibility meant using Aembit the same way customers do, in a real deployment environment where software runs unattended and requires trusted access to external services.
The exposure demonstrates how ordinary errors can reveal internal credentials and how stronger limits on scope and lifespan can contain the impact.
These four architectural patterns reveal how AI agents differ fundamentally from traditional workloads.
The Model Context Protocol (MCP), developed by Anthropic, standardizes how AI agents interact with external tools and data.
Secrets sprawl forces developers into constant rework while leaving organizations exposed to the exact security risks they’re trying to prevent.
The incident shows how repositories double as inadvertent credential stores, extending risk from vendors into customer environments.