Patch Me If You Can by Kandji

Episode 009 - RBAC is Broken (Here's Why) with Dmitri Altum, GitLab, ex-Ramp

Written by Arek Dreyer | September 19, 2025

Dmitri Altum from GitLab breaks down why role based access control is failing modern businesses and shares how his team achieved 93% automation with just a 3 second delay.

In fast moving companies, traditional RBAC creates bottlenecks when product designers ship code and marketers run CI/CD pipelines. Dmitri explains how behavior based access control uses AI to analyze patterns rather than rigid job titles.

He shares the pivotal moment when an executive killed their YubiKey rollout at the last minute, forcing a complete rethink of security strategy. The lesson: stop optimizing for technical perfection and start enabling business outcomes.