All Posts

The Blog

Real notes from real deployments. 10+ years of enterprise IT experience across banking, aviation, and conglomerates.

IAM
Microsoft Entra ID: Modernizing Enterprise Identity
Azure AD is now Entra ID — but the real shift is deeper. A practitioner's guide.
Cyber Security
AI in the SOC: Separating Hype from Reality
Every vendor claims AI-powered detection. Here's what actually works — and what doesn't.
Cyber Security
Ransomware Resilience: Building a Recovery-First Strategy
Prevention alone isn't enough. A practical framework for when prevention fails.
Cyber Security
SIEM Implementation: Key Lessons from the Field
More organizational than technical. Lessons from centralizing log monitoring at enterprise scale.
Cyber Security
Zero Trust Architecture: Where to Actually Start
Most guides describe the destination. This focuses on the journey in an existing enterprise.
Infrastructure
Privileged Access Control: Lessons from a Bastion Host Deployment
Third-party vendor access is the most under-monitored risk. Here's how to fix it.
Infrastructure
Data Center Migration: A Step-by-Step Approach
What a three-month DC migration actually looks like — the planning, surprises, and lessons.
Cloud
Huawei Cloud vs AWS: A Practical Infrastructure Perspective
Having migrated enterprise workloads to Huawei Cloud, here's my honest comparison with AWS.
Cloud
Cloud Security Posture Management: A Practitioner's Guide
Misconfiguration is still the #1 cause of cloud breaches. CSPM is how you find them first.