Growing organizations face an overwhelming volume of security guidance for Google Workspace, but the real challenge lies in identifying which defenses will have the greatest impact when budgets and staffing are tight. Kernelwire and Material Security will host a live webinar on September 23, 2026 titled "Breach autopsy: How fast-growing companies are breached through Google Workspace" to address this gap.

The event will bring together Rajan Kapoor, Vice President of Security at Material Security, and Rick Fitzgerald, President of Fireside Consulting LLC, to analyze documented Google Workspace breaches and extract lessons for defending against similar attacks. Rather than walking through exhaustive security checklists, the speakers will use actual incidents to highlight which controls matter most, which may be overemphasized, and how they would construct a security program for a rapidly scaling organization starting from zero.

Two breaches examined during the webinar involved attackers combining social engineering tactics with malicious OAuth applications to compromise Google Workspace environments. These cases offer concrete examples of where defensive measures failed, which gaps left systems vulnerable, and what different decisions might have prevented or limited the damage.

The discussion will also cover the immediate aftermath of discovery, analyzing which response actions helped contain the breach and which decisions may have amplified the harm. For security teams operating with limited headcount, the objective is not comprehensive implementation of every possible control, but rather understanding where the highest risks concentrate and directing effort toward improvements that balance implementation burden against potential benefit.

Grounding security strategy in actual attack patterns

https://event.on24.com/wcc/r/5448600/2B3F9EA2842D42DBC0C43D6185EBFE27?utm_source=bleepingcomputer&utm_medium=referral&utm_campaign=material&utm_content=article

Security frameworks often devolve into lengthy inventories of settings, tools, policies and recommended protections. Scaling companies typically lack the resources to deploy and maintain every conceivable defense mechanism. By studying how actual Google Workspace breaches unfolded, security teams can pinpoint where attackers exploit gaps and which protections warrant priority attention. The speakers will also outline how they would architect a Google Workspace security program if building one from scratch, offering attendees a practical lens for reassessing their own priorities.

Webinar topics

  • Which security controls deliver the most value for resource-constrained organizations
  • Which Google Workspace protections may receive disproportionate focus relative to their real-world effectiveness
  • How social engineering and malicious OAuth applications enable Google Workspace compromise
  • Commonly missed vulnerabilities that expose users, data and connected systems
  • Practical security improvements ranked by implementation effort and potential impact

Participants will gain a grounded understanding of which Google Workspace controls deserve priority and how breach case studies can guide allocation of limited security resources.