HRM & Cybersecurity Blog | Living Security

Human Risk Meets Cloud Defense

Written by Carrie Mulcahy | December 03, 2025

Living Security and Cloudflare Deepen Integration to Unify Visibility and Response

In today’s cloud-driven enterprise, risk isn’t limited to what crosses the network perimeter—it’s shaped by the people behind it. According to research from the Cyentia Institute and Living Security, just 10 % of users account for 73 % of risky behaviors, while 78 % actively reduce risk. That concentration means visibility into the human layer isn’t optional—it’s essential.

To stay ahead, security teams need visibility not just into what users do, but why they do it, and how to act quickly when behavior becomes risky.

That’s why Living Security and Cloudflare have expanded their integration, combining Cloudflare’s web, DNS, and access control telemetry with Living Security’s Unify Human Risk Management platform.

Together, they’re giving organizations the ability to connect user identity, behavior, and network activity in one place—turning fragmented signals into unified, actionable human risk intelligence.

From Logs to Human Risk Intelligence

With this enhanced integration, Cloudflare’s detailed DNS and access control logs feed directly into Living Security’s Unify platform—enriched with identity, policy, and category context.

The result? Security teams can see and act on risky web activity in real time without switching between systems. By mapping Cloudflare events to standardized Unify insights, analysts gain faster, correlated visibility into:

  • Repeated risky domain visits or policy-violating access attempts
  • Shadow IT or unsanctioned collaboration tool use
  • AI website access and data-sharing behavior

All of it flows into Living Security’s Human Risk Index (HRI), giving leaders a complete view of how network activity connects to people, policy, and culture.

Smarter, Automated Response

This isn’t just more data—it’s more intelligence, powered by five years of behavioral data across 100+ organizations, validated by Cyentia Institute. Living Security’s workflow engine can now trigger just-in-time interventions directly from Cloudflare events, helping teams move from analysis to action instantly.

That means:

  • Fewer manual investigations
  • Faster response to policy violations or unsafe behaviors
  • Automated actions that scale with confidence

From subtle nudges to targeted guidance, security teams can respond proportionally and effectively—without relying on blanket restrictions.

Who Benefits Most

  • Security Analysts: Correlated visibility between Cloudflare and Unify. Investigate and act from a single console.
  • Security Engineers: Broader event coverage and simplified integration maintenance.
  • CISOs & Security Leaders: Unified reporting that ties network activity to measurable human risk metrics.

As one CISO put it:

“This is how we bridge the gap between network telemetry and human risk—seeing the full picture of why behavior happens.”

Under the Hood: How It Works

This integration is available to Cloudflare Gateway customers and is built on a secure, scalable log pipeline between Cloudflare Logpush and Living Security Unify, using Cloudflare R2 (S3-compatible storage) to deliver:

  • Correlates Cloudflare DNS, web, and email events
  • Enriches each with identity and behavioral metadata
  • Aligns data to Unify’s HRM taxonomy for scoring and response
  • Feeds insights into Unify workflows, dashboards, and scorecards

It’s a single, secure pipeline that scales easily for any organization using Cloudflare Gateway.

From Fragmented Data to Unified Defense

For organizations navigating generative AI, expanding attack surfaces, and hybrid work realities, this integration marks a powerful step forward. It transforms Cloudflare’s robust network visibility into Living Security’s human-aware defense strategy—helping teams predict, guide, and act on human risk before it becomes an incident.

Secure Innovation, Human-Centered

With Living Security and Cloudflare, enterprises can now balance innovation and control—empowering safe behavior instead of restricting it.

As part of its broader innovation roadmap, Living Security is introducing AI-Native Human Risk Management capabilities, available for beta sign-up at livingsecurity.ai. Built with a human-in-the-loop design, these capabilities use AI to assist—not replace—security expertise. They help organizations predict, guide, and act on risk more efficiently, meeting each team where it is on its HRM journey while preserving the judgment and oversight that make defense truly effective.

Want to see how unified human risk visibility can reshape your security posture?
Learn more at livingsecurity.com