Skip to main content
1P_nick
Community Manager
Community Manager
August 6, 2026

NEW Random but Memorable episode: Why "always-on" access is a hidden security risk

  • August 6, 2026
  • 2 replies
  • 3 views

1Password’s award-winning podcast is back! In this bonus episode, we’re breaking down everything you need to know about 1Password Privileged Access. Check out the episode for a beginner-friendly breakdown of privileged access management (PAM), standing access, and more!

 

Episode summary

Always-on access might sound convenient, but it can quietly become a serious security risk. 🔐⚠️ In this bonus episode of Random but Memorable, we’re joined by Rom Carmel, VP of Product Management at 1Password, to introduce 1Password Privileged Access. 

Rom breaks down what privileged access management actually means, and why permanent permissions can leave companies exposed. He also explains how “just-in-time” and “just enough” access can protect teams and their most critical systems, without slowing everyone down. 

 

What did you think of the episode? Do you have any questions about 1Password Privileged Access? Let us know in the thread below!

    2 replies

    BikerBob38
    August 7, 2026

    I came to this page because of the question “Why "always-on" access is a hidden security risk”.  After watching a few minutes of the video, it seemed to me that it was aimed at corporate users and so did not watch it through to the end.  So, is "always-on" access a hidden security risk or not and if it is, how to turn it off and if you turn it off, what conveniences or features do you lose??

    1P_nick
    Community Manager
    1P_nickAuthor
    Community Manager
    August 10, 2026

    Thanks for reaching out! You’re right that the episode focuses on organizations rather than personal 1Password use.

    In this context, “always-on” access refers to standing privileged access: permanent permission to reach sensitive systems or perform high-risk actions. It's a security risk because an attacker who compromises the associated account can use those same elevated permissions.

    A safer approach grants just-enough access for a specific task, just in time, and removes it when the task ends.

    For individual 1Password users, there’s no general “always-on access” setting to turn off. In an organization that uses this model, employees still get the access they need, but certain tasks may require an access request or approval.

    1Password Privileged Access helps organizations provide scoped access when it’s needed and remove it when the work is complete. If you're interested in learning more, check out this blog post I wrote!