-
Continue reading →: Taking That Extra Step: Reducing Risk with Simple Security Configuration ChecksOne thing I’ve learned from hands-on experience is that security tools—especially WAFs (Web Application Firewalls)—are rarely tested as thoroughly as they should be after a configuration change. Too often, teams skip even the most basic validation when updating rules, like those for blocking new CVEs. The assumption is that if…
-
Continue reading →: Security is a Journey: Lessons from My Cybersecurity ExplorationA Personal Journey from IAM Developer to Cybersecurity Explorer When I first started out as a developer, my world revolved around identity and access management (IAM). I was deep into custom role profiling, authentication flows, SAML SSO setups, OpenID, OAuth, and making sure users had just the right access—no more,…




