Skip to content

How Grammarly Implemented FIDO2 Authentication Technology

Photo of Grammarly
Hosted By
Grammarly
How Grammarly Implemented FIDO2 Authentication Technology

Details

Join us to discover the steps implemented by Grammarly’s Enterprise Infrastructure team to boost the protection of user authentication procedures for both corporate infrastructure and services.

✅ Registration: to attend the meetup, please register ➡️ here ⬅️

💥 Why we decided to level up user authentication
🔈 Den Potapenko, Engineering Manager
🚀 Session hijacking and two-factor authentication (2FA) compromise were a painful headache for security teams for years. One-time password (OTP) authentification is common yet is insufficient to protect against modern real-world attack scenarios. According to the 2023 State of the Phish report by Proofpoint, 84% of organizations faced at least one successful phishing attack last year, while 54% faced three or more attacks. To improve the authentication process, Grammarly’s security team worked with a white-hat partner to simulate a sophisticated cyberhack on the existing OTP system. We’ll share our insights from this experiment and explain why we made the switch to the FIDO2 standard based on our learnings.

💥 A technical review of FIDO2 enablement
🔈 Igor Maksiuk, System Engineer
🚀 During this session, we’ll take a glimpse into the technical elements of planning and implementation. We’ll discuss the following topics:

  • Technical approach to selecting authentication devices based on your requirements and ideas
  • Understanding the scope of changes needed for implementation
  • Dealing with systems that are non-compatible with FIDO2
  • Organization of migration from old factors to FIDO2

💥 A roadmap for streamlining deployment of advanced user authentication solution
🔈 Vika Basarab, Engineering Manager, Technical Program Manager
🚀 Let’s delve into how Grammarly took steps to ensure user security by making FIDO2 mandatory for all team members. We will discuss the program phases and share takeaways that will help you streamline implementation. We’ll cover the following:

  • How internal trials can help you refine documentation, identify obstacles, and address areas of confusion
  • How to employ Slack bots to encourage enrollment
  • How to track and report enrollment progress
  • How to effectively tackle the implementation challenges that arise with the spread of the work-from-home work model

After the talk, we invite you to a networking event to get to know each other better in a casual atmosphere! Looking forward to seeing you!

Agenda:
✨ 18:30–19:00: Welcome and networking
✨ 19:00–20:00: Grammarly talk
✨ 20:00–21:00: Mingle with the Grammarly team
✅ Where: In-person, Grammarly Berlin hub
✅ When: Wednesday, September 27
✅ Language: English

✅ Use this link to register: **https://gram.ly/3sM3FZa**
The event is free. Registration is mandatory. Due to a limited number of seats, the invites will be sent to a limited number of registered on a first registered, first invited basis. Please check your inbox for a confirmation email about your attendance.

Photo of Grammarly Tech Talks group
Grammarly Tech Talks
See more events
Karl-Liebknecht-Str. 29A
Karl-Liebknecht-Str. 29A · Berlin