Alex Muntyan

Alex Muntyan

CEO · Enterprise password security

Under Alex's leadership, Passwork has been driven by a straightforward premise: enterprise-grade security should not require enterprise-grade complexity. Over the years, the company has grown from a startup into a trusted European password management platform serving thousands of organizations across the EU, the US, and beyond — fully bootstrapped, founder-owned, and independent.

He writes about the practical side of information security: how organizations actually manage credentials under real-world constraints, where compliance frameworks meet daily operations, and why most security tools fail before they're ever deployed. His perspective is shaped by years of building a product that security teams choose to use.

Articles by Alex Muntyan

Latest Aug 3, 2026
Verizon's 2026 DBIR analyzed 22,000+ breaches across 145 countries. Vulnerability exploitation overtook credential...

Verizon DBIR 2026: 10 stats that should change your security strategy

Verizon's 2026 DBIR analyzed 22,000+ breaches across 145 countries. Vulnerability exploitation overtook credential abuse as the top attack vector, while ransomware, third-party risk, and AI-assisted attacks all grew sharply. Here are the 10 numbers that matter.

Verizon DBIR 2026: 10 stats that should change your security strategy
Aug 2, 2026 16 min read
Most RBAC deployments fail at the policy level, not the technology. This guide gives you a 6-step framework for...

Access сontrol policy: How to design enterprise RBAC

Most RBAC deployments fail at the policy level, not the technology. This guide gives you a 6-step framework for designing enterprise RBAC policy: role granularity, compliance mapping to NIST and ISO 27001, and the credential vaulting layer that enforces it.

Access сontrol policy: How to design enterprise RBAC
Aug 2, 2026 12 min read
Permission sprawl doesn't happen overnight, it accumulates one unaudited hire at a time. This guide breaks down how...

What is RBAC and how it fixes your access problem

Permission sprawl doesn't happen overnight, it accumulates one unaudited hire at a time. This guide breaks down how role-based access control (RBAC) fixes onboarding, offboarding, and audits, plus how Passwork applies the same model to shared passwords and secrets.

What is RBAC and how it fixes your access problem
Jul 31, 2026 15 min read
Global breach costs hit record $4.99M in 2026, with detection taking 247 days. AI-driven attacks surge 56%, but the...

2026 IBM Cost of a Data Breach Report: The $6M AI threat no one's fixing

Global breach costs hit record $4.99M in 2026, with detection taking 247 days. AI-driven attacks surge 56%, but the real crisis: defenders deploy AI everywhere except where attackers break in. 92% of AI-breached organizations had zero proper access controls.

2026 IBM Cost of a Data Breach Report: The $6M AI threat no one's fixing
Jul 16, 2026 17 min read
Learn how to implement secure password sharing in teams. Discover best practices for RBAC, NIS2 compliance, and AD...

Secure password sharing at work: A guide for IT managers

Learn how to implement secure password sharing in teams. Discover best practices for RBAC, NIS2 compliance, and AD integration to protect shared credentials.

Secure password sharing at work: A guide for IT managers
Jul 8, 2026 16 min read
Learn how teams share credentials securely in 2026 — RBAC, audit logs, offboarding checklists, NIST SP 800-63B Rev. 4...

Team password management: The complete guide for 2026

Learn how teams share credentials securely in 2026 — RBAC, audit logs, offboarding checklists, NIST SP 800-63B Rev. 4 requirements, and self-hosted vs. cloud deployment.

Team password management: The complete guide for 2026
Jun 26, 2026 25 min read
Shadow IT in 2026 spans AI agents, orphaned SaaS accounts, and unmonitored LLM sessions — risks most organizations...

Shadow IT in 2026: Risks, detection, and how to manage it

Shadow IT in 2026 spans AI agents, orphaned SaaS accounts, and unmonitored LLM sessions — risks most organizations can't see. Learn what's changed, what it costs, and how a 6-step governance framework closes the gap.

Shadow IT in 2026: Risks, detection, and how to manage it
Jun 20, 2026 18 min read
48% of breaches now involve a third party. This guide covers the attack patterns behind SolarWinds, MOVEit, and XZ...

Supply chain security guide: Vendor risks, regulations, and access control in 2026

48% of breaches now involve a third party. This guide covers the attack patterns behind SolarWinds, MOVEit, and XZ Utils — and the access controls, credential management practices, and regulatory requirements that actually stop them.

Supply chain security guide: Vendor risks, regulations, and access control in 2026
Jun 17, 2026 15 min read
Reusing a password feels harmless. It isn't. Here's why one leaked credential can unravel your entire organization's...

11 password reuse risks and how to avoid them

Reusing a password feels harmless. It isn't. Here's why one leaked credential can unravel your entire organization's security — and how to stop it from happening.

11 password reuse risks and how to avoid them
Jun 16, 2026 16 min read
Shadow AI costs enterprises $670K extra per breach — and most of it traces back to credentials pasted into public LLMs....

What is Shadow AI: The hidden threat costing enterprises $670K per breach

Shadow AI costs enterprises $670K extra per breach — and most of it traces back to credentials pasted into public LLMs. Learn what shadow AI actually looks like, why it's harder to stop than shadow IT, and how to govern it.

What is Shadow AI: The hidden threat costing enterprises $670K per breach