Dependency Vulnerabilities: The Cost of Constant Updates
Managing software dependencies carries a continuous burden and security risk in today's software world. In this post, I explore the technical and financial.
13 posts found.
Managing software dependencies carries a continuous burden and security risk in today's software world. In this post, I explore the technical and financial.
Comparing RBAC and ABAC among authorization models. Which is more suitable for which scenario, based on my production environment experiences...
Reducing the risk of rogue neighbors and route injection in the routing domain through OSPF/IS-IS authentication, key rotation, and control-plane hardening.
A staged playbook for rolling out DHCP Snooping, DAI, and IP Source Guard on access networks to defend against rogue DHCP, ARP spoofing, and IP impersonation.
Learn step by step how to secure pod-to-pod network communication in Kubernetes with Network Policies. A detailed guide with examples.
A guide to leaving SNMPv2c community strings behind and making network device monitoring secure and operable with SNMPv3 authPriv, views and ACLs.
An enterprise access architecture that manages privileged access without depending on a single jump server.
A network and access segmentation approach that reduces standing broad permissions when administering ERP core systems.
An out-of-band design approach that separates management access from production traffic on critical network and server infrastructures.
A guide to moving Kubernetes network policy from observability into enforced control without breaking production.
A landing zone approach for getting network, security, and governance right from day one in enterprise cloud migrations.
An observable and actionable Zero Trust segmentation approach that reduces lateral movement on enterprise networks.
An approach for moving server configuration out of manual labour and into a safe, repeatable automation flow.