Topics
What I write about
This blog explores cloud security through the lens of resilience - building systems that survive when (not if) things go wrong.
Here’s what you’ll find:
Identity & Access
The new perimeter. MFA, Conditional Access, Privileged Access Management, and why “who are you and should you be here?” is the most important question in modern security.
Tools I work with: Entra ID, AWS IAM Identity Center, PIM, Conditional Access
Cloud Architecture
Multi-cloud security across Azure and AWS. Network segmentation, landing zones, and keeping your blast radius small when something inevitably breaks.
Tools I work with: Azure Virtual WAN, Transit Gateway, Security Groups, NSGs
Data Protection
Classification, encryption, key management, and DLP. Because everything else exists to protect the data.
Tools I work with: Purview, Macie, Key Vault, KMS
DevSecOps
Shift-left security that developers don’t hate. Pipeline security, container scanning, infrastructure as code, and catching problems before they hit production.
Tools I work with: GitHub Advanced Security, Terraform, Checkov, Trivy
Threat Detection & Response
SIEM, XDR, threat hunting, and writing KQL queries that actually find things. Turning noise into signal.
Tools I work with: Sentinel, Defender XDR, GuardDuty, Security Hub
Resilience & Recovery
Backups, disaster recovery, incident response, and why your RTO/RPO numbers matter more than your prevention budget. When things break, how fast can you recover?
The Human Element
Security awareness, culture, and why your people are both your biggest risk and your strongest asset. Training that actually works.
The Philosophy
I don’t believe in perfect security - it doesn’t exist. I believe in:
- Assuming breach - Planning for what happens after prevention fails
- Verifying continuously - Never trust, always verify, log everything
- Limiting blast radius - When something breaks, keeping it contained
- Recovering fast - Resilience beats perfection
That’s what “Nine Lives” means. Systems get knocked off the ledge. The question is whether you’ve built them to land on their feet.
Looking for something specific? Check out the blog or reach out - I’m always happy to talk shop.
