Home / Companies / Zapier / Blog / Post Details
Content Deep Dive

Why our VPN doesn't use passwords

Blog post from Zapier

Post Details
Company
Date Published
Author
Marcus Young
Word Count
1,158
Company Posts That Month
51
Language
English
Hacker News Points
-
Post removed?
No
Summary

### Improved VPN Setup at Zapier Reduces Security Risks while Boosting Employee Productivity The new VPN setup at Zapier aims to simplify security while reducing the need for human approval, allowing employees to quickly set up their tech before diving into onboarding tasks. By using single sign-on (SSO) and YubiKeys or certificates, users can log in with a one-time setup, eliminating passwords and minimizing the risk of phishing attacks. The offboarding process is also automated, disabling user accounts and revoking certificates when employees leave the company, ensuring no lingering access to networks. A playbook allows for temporary exemptions, providing some protection against shared VPN profiles or malicious intent. The security team relies on certificates, which are harder to clone or intercept than SMS-based MFA methods, and monitoring is done through a web application that produces simple and lightweight metrics.

Trends Found in this Post
Trend Post Mentions Total Month Mentions Posts Companies MoM
Kubernetes 1 1,150 144 53 +31%
Use This Data

Use this post, company, and trend context to find content marketing opportunities, perform competitive analysis, or address product feature gaps via the Plushcap MCP server or the Plushcap API.