Fast-growing companies often have no shortage of security recommendations for protecting Google Workspace. The harder question is determining which controls will actually make the greatest difference when security teams have limited time and resources.
On September 23, 2026, BleepingComputer will host a live webinar titled "Breach autopsy: How fast-growing companies are breached through Google Workspace" with Material Security.
The webinar will feature Rajan Kapoor, Vice President of Security at Material Security, and Rick Fitzgerald, President of Fireside Consulting LLC, examining real, publicly documented Google Workspace breaches and what organizations can learn from them.
Rather than working through another lengthy security checklist, the speakers will use real breaches to discuss which Google Workspace security controls matter most, which may be overrated, and what they would prioritize if they were designing a security program for a fast-growing company from scratch.
The discussion will include two attacks that combined social engineering with malicious OAuth applications to gain access to Google Workspace environments.
These incidents provide an opportunity to look beyond theoretical risks and examine where defenses broke down, which overlooked weaknesses left users and data exposed, and what organizations could have done differently.
The webinar will also examine what happened during the critical first hours after the breaches were discovered and which response decisions helped limit—or potentially worsen—the impact.
For lean security teams, the goal isn't to implement every possible security control. It's understanding where the greatest risks exist and prioritizing improvements based on the effort required and the potential impact they can have.
Attendees will leave with a practical view of the controls and response measures that matter most when protecting Google Workspace environments.
Building Google Workspace security around real-world risks
... continue reading