-
Collaboration, Communication, and Culture in Cybersecurity
October 30, 2025How building trust, communication, and shared ownership transforms security from a technical task into an organizational culture.
5 min read ·cybersecuritysaas+2 -
Pre-commit Hooks vs. Pipeline Security Scans
July 1, 2025Understanding the differences between pre-commit hooks and pipeline security scans in DevOps.
5 min read ·cybersecuritydevops -
CVE CVSS and KEV Explained
June 23, 2025CVE CVSS and KEV Building Your Vulnerability Management Foundation
3 min read ·cybersecuritycve+2 -
My Journey to Terraform Associate
June 18, 2025How I passed the HashiCorp Terraform Associate exam.
3 min read ·cybersecurityterraform+2 -
Beyond Integrating AI- A Scoping Framework for Security Engineers
May 1, 2025From Consumer Apps to Custom Models: A Security Framework for AI Integration
4 min read ·cybersecurityai+1 -
Building an AI Security Program
February 19, 2025Starting with the fundamentals of building an AI Security Program.
5 min read ·cybersecurityai+1 -
Software Development Life Cycle (SSDLC) in Cloud Security
September 26, 2024Integrating security into every phase of cloud software development with SSDLC best practices.
3 min read ·cybersecurity -
Understanding the OWASP Top 10
July 27, 2024Understanding the OWASP key web application security risks and how to mitigate them.
4 min read ·cybersecuritycloud -
Integrating a New System into an Existing Security Boundary
May 6, 2024Ensure a secure and compliant integration when introducing a new system into an existing security boundary.
3 min read ·cybersecurity -
The Anatomy of SSPM Checks
April 8, 2024Exploring the crucial components within SSPM security checks and how they secure SaaS environments.
2 min read ·cybersecuritysaas -
The Value of a Business Impact Analysis
March 18, 2024The risk of playing security guesswork.
3 min read ·cybersecuritybusiness+2 -
SaaS Termination
February 22, 2024What to look for when you are ending a SaaS contract to maintain security and compliance.
3 min read ·cybersecuritysaas -
A Cybersecurity Program Framework
February 14, 2024A reusable starting point for building a cybersecurity program using Assess, Manage, and Validate pillars.
3 min read ·cybersecurity -
Responding to Events in the Cloud
February 8, 2024A framework for responding to alerts in the cloud and maintaining operational excellence.
8 min read ·cybersecuritysaas -
Access Control Gaps Lead To Data Breaches
December 18, 2023Overly permissive users lead to Salesforce data breach and the importance of SSPM solutions.
2 min read ·cybersecuritysaas -
SaaS Vendor Security Checklist
November 3, 2023A checklist to assess SaaS vendor security during the due diligence process.
1 min read ·cybersecuritysaas -
A New Approach to SaaS Security
October 19, 2023Taking a look at a new approach to securing SaaS applications with complete visibility and control.
2 min read ·cybersecuritysaas -
How I Passed The ISACA CISM Certification
November 8, 2022How to pass CISM on first attempt.
6 min read ·certificationcybersecurity+2