Demo Request
Take a personalized product tour with a member of our team to see how we can help make your existing security teams and tools more effective within minutes.
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.
Home
Blog

SolarEdge Leverages Reco to Improve their SaaS Security Posture

Reco Security Experts
Updated
March 25, 2024
May 20, 2025
3 min read
Ready to Close the SaaS Security Gap?
Chat with us

SolarEdge, a global leader in solar power solutions with a presence in 140 countries and a commitment to sustainability, leverages Reco to protect its proprietary IP and patents that need to be safeguarded. The company works with several SaaS applications such as Microsoft 365 on a daily basis, exchanging sensitive financial and customer information. This complex and sprawling environment’s security is critical for SolarEdge to not just secure, but continue securing for the future.

Reco had previously assisted SolarEdge in reducing the data exposure in their Google and Microsoft 365 environments by over 90%. However, SolarEdge’s security teams were often chasing alerts and wasting valuable hours bogged down by configuration drifts, manual processes, and other exposure risks in their SaaS environments. In order to move into a proactive posture for their SaaS configurations, SolarEdge needed to continuously address the root causes of their exposure risks with Reco.

Utilizing the posture management capabilities provided by the Reco SaaS security platform, SolarEdge was able to:

  • Easily satisfy compliance. Reco's access governance improvements and continuous monitoring in SaaS aligns with the highest security industry standards and regulations.
  • Reduce costs. The shift to continuous monitoring reduced SolarEdge’s need for manual proactive checks, saving the team tens of thousands of dollars annually.
  • Save time. Reco’s ‘How to Fix’ feature directly links to configuration access issues and has saved the team ~20 hours weekly in investigation and issue resolution. SolarEdge can now focus their time on other pressing needs. 

“Reco's SSPM has strengthened our security approach in SaaS,” said Tomer Stenzler, Director of Cyber Security at SolarEdge. “The Reco posture dashboard provided a seamless experience, enabling us to clearly understand where our posture gaps are. This intuitive platform not only highlighted misconfigurations but also offered straightforward steps for resolution, saving us invaluable time in the process.”

Read the full customer story of Reco and SolarEdge to learn more.

No items found.

Oz Wasserman

ABOUT THE AUTHOR

Technical Review by:
Gal Nakash
Technical Review by:
Oz Wasserman

Ready to Close the SaaS Security Gap?
Chat with us
Table of Contents
Get the Latest SaaS Security Insights
Subscribe to receive updates on the latest cyber security attacks and trends in SaaS Security.
Thank you! Your submission has been received!
Oops! Something went wrong while submitting the form.

Explore Related Posts

When AI Becomes the Insider Threat: Understanding Risks in Modern SaaS Environments
Tal Shapira
As AI becomes deeply embedded across SaaS platforms, it is increasingly operating with trusted internal access once reserved for employees and service accounts. This article examines how AI can function as an insider threat, why these risks are harder to detect than traditional insider activity, and what signals security teams should watch for. It also explores common governance gaps, real-world scenarios, and practical approaches organizations can take to reduce AI-driven insider risk without limiting legitimate AI use.
The SaaS Attack Surface Just Expanded to Clawdbot
Gal Nakash
Clawdbot, the viral AI assistant that went mainstream in January 2026, exposes a new class of shadow AI risk: autonomous agents with shell access, plaintext credential storage, and over 1,200 misconfigured instances leaking API keys and chat logs. Unlike traditional shadow AI tools, Clawdbot represents a qualitative shift in attack surface—if your employees installed it and connected it to work systems, you now have an unmanaged endpoint with persistent access to sensitive data and zero visibility.
Google AuraInspector: What the New Salesforce Security Tool Means for Your Organization
Nitay Bachrach
Google's Mandiant released AuraInspector, a tool that exploits misconfigured guest user sharing rules in Salesforce Experience Cloud sites through GraphQL endpoints. While the first public tool to use this specific technique, the underlying vulnerabilities have been exploitable since at least 2022 through other tools. Organizations should audit their Salesforce permissions, disable unnecessary guest user API access, and implement continuous monitoring to prevent data exposure.
See more featured resources

Ready for SaaS Security that can keep up?

Request a demo