There’s Nothing Smart About These Devices

“Smart used to be a word that described intelligence and quick mental capabilities. Now, it’s used to describe things that wouldn’t have existed without that very same smartness” We live in a world where we love to slap the word “smart” in front of everyday household items. We have smart thermostats, smart doorbells, smart locks,Continue reading “There’s Nothing Smart About These Devices”

The Million-Dollar Typo

“To err is human, but to leave a company completely unsecure because a misconfigured policy is just…inhumane” Configuring an infrastructure in the cloud in 2026 has become easier and more accessible than ever before. Configuring a secure cloud infrastructure, on the other hand, has always been far from simple. And the more complex a configurationContinue reading “The Million-Dollar Typo”

A Checkbox Won’t Save You

“Security is a state of being. Compliance is just a snapshot in time” Due to the lack of awareness (or sometimes just a lack of regard) for cybersecurity, companies and individuals don’t really stop to think about how secure they really are. That is, until someone comes knocking on your door and demanding updates onContinue reading “A Checkbox Won’t Save You”

Defaults are Dangerous

“Don’t just read it, say it. Out loud. Repeat it. Defaults are not your friend. Defaults should be changed. Why? Defaults. Are. Dangerous“ We live in an era where convenience is king. In fact, we’ve grown so accustomed to it, that even minor inconveniences are oftentimes seen to be the end of the world asContinue reading “Defaults are Dangerous”

🔐Threat Hunting Case Study: Unauthorized TOR Usage

🕵️Implementing a Hypothesis-Driven Threat Hunt for TOR Activity Detecting, investigating, and responding to unauthorized anonymous browsing using endpoint telemetry. Executive Summary This case study documents a hypothesis-driven threat hunt conducted to identify unauthorized TOR browser usage within an enterprise environment. Management suspected that employees were bypassing network controls due to unusual encrypted traffic patterns andContinue reading “🔐Threat Hunting Case Study: Unauthorized TOR Usage”

🔐Vulnerability Management Program – Case Study

⚠️Implementing an Enterprise Vulnerability Management Program Designing, deploying and operationalizing a full vulnerability management lifecycle in an Azure-based enterprise environment. Executive Summary This case study documents the design and execution of an end-to-end vulnerability management program from the ground up. The organization initially lacked formal policy, scanning cadence and remediation ownership. Through governance development, authenticatedContinue reading “🔐Vulnerability Management Program – Case Study”

Who is the Weakest Link?

“I’m starting with the man in the mirror, I’m asking him to change his ways. And no message could have been any clearer, if you wanna make the world a better place, take a look at yourself, and then make a change.” Firewalls. Encryption algorithms. Secure Cloud architectures. Card Scanners. CCTV cameras. Companies spend millionsContinue reading “Who is the Weakest Link?”