Happy New Year 2025!
A tech professional outlines their 2025 focus on Platform Security, Kubernetes, Azure Security, and Cloud Vulnerability Research, and invites collaboration.
A tech professional outlines their 2025 focus on Platform Security, Kubernetes, Azure Security, and Cloud Vulnerability Research, and invites collaboration.
Architecting a multi-account security logging platform in AWS, covering services like CloudTrail and CloudWatch, and best practices for collection, monitoring, and SIEM integration.
A guide to using the open-source security tool Falco for dynamic security monitoring and threat detection in AWS EKS Kubernetes clusters.
A meetup session exploring how attackers exploit Azure misconfigurations using MITRE techniques like phishing and credential attacks.
Explores how attackers exploit Azure misconfigurations using MITRE techniques like phishing and credential attacks.
Microsoft announces general availability of its Entra Suite, a comprehensive set of identity and network access security solutions for Zero Trust environments.
Explores Client-Side Encryption (CSE) and its role in data security, comparing it to server-side methods and discussing its advantages and security considerations.
Announcing the release date for 'The CloudSec Engineer' book, a guide focused on cloud security engineering.
Explains Confidential VMs for Azure Virtual Desktop, covering security benefits, hardware support (Intel/AMD), and available VM SKUs.
Explains homomorphic encryption with a real-world medical example and a simple toy example to show how computations can be performed on encrypted data.
Introducing CloudSecGPT, a specialized AI model trained on cloud security documentation to provide interactive insights and troubleshooting help.
A technical analysis and lab test of the throughput capabilities of Azure Firewall's Basic SKU, comparing it to higher tiers.
Using AWS WAF to protect hobby projects from malicious traffic and prevent unexpected cloud billing costs.
Explores the risks and consequences of accidentally leaking secrets like API keys in code repositories, and how to prevent and respond to such leaks.
A guide to getting started with Microsoft Sentinel, covering its SIEM/SOAR capabilities, cost structure, and initial setup for security monitoring.
A guide to designing a state-of-the-art, multi-account security logging and monitoring platform in Google Cloud Platform (GCP).
An exploration of career pathways in cyber security, focusing on cloud security roles and the lack of industry standardization.
A curated list of recommended books for learning Azure security concepts, certifications, and best practices.
Author shares their top three favorite features of Microsoft Defender for Cloud, focusing on security benchmarks, workbooks, and recommendations.
Analyzing the challenge of estimating real-world costs for Microsoft Defender for Cloud and introducing a built-in Pricing Estimate workbook for better cost insights.