Posts
Notes and essays on thoughts, tech, and latest projects. For experiences and shipped work, see Work.
2026
2025
- SOC Reports Demystified: Types, Criteria, and Audit Roadmap
- Practical Guide to ISO 27001:2022 Certification and Beyond
- Jargon-Free Guide to Security Compliance
- A Practical GDPR Playbook for Engineers
- The Modern Playbook for Data Protection: Lessons from PCI DSS v4.0
- What is Tokenization and Why Should You Care?
- Everything You Should Know About Mutual TLS
- The Secret Language of Secure APIs: JWE and JWS
- Predicting Fraudsters: A DoorDash Case Study