Security

2

Cloud-Native SIEM on AWS: Architecture Decisions, Cost Model, and What We Would Change

A cloud-native SIEM delivering real-time threat detection, log correlation, and automated incident response — with a frank cost breakdown and the decisions we'd revisit.

7 min read

Zero-Trust on AWS: What BeyondCorp Actually Requires Beyond IAM Policies

Zero-trust is not 'add MFA and call it done.' This is what a real identity-driven, continuously-verified AWS network architecture looks like in CDK.

5 min read

Every week: one AWS failure broken down + the fix that worked