Insights
Insights
Occasional writing on sovereignty, open-source security, and doing assurance properly. No thought-leadership theatre — just what we've learned building and running these systems.
Why open source is a sovereignty strategy, not a cost decision
Cost savings are real, but they are a side effect. For critical systems, open source is the only model where control genuinely stays with you.
Read
Building a SOC on Wazuh and OpenSearch: what it actually takes
The gap between "installed" and "operational" is exactly the work worth paying for. What running a real open-source SOC involves.
Read
The compliance case for infrastructure-as-code: Ansible, CIS, and the audit trail
Most organisations experience compliance as an event. Treating configuration as code turns it from theatre into fact.
Read