Infinite Craft Explorer: What Autonomous Discovery Taught Us
Building an autonomous crafting explorer surfaced real lessons about observability, cost governance, and security posture that apply far beyond a game.
Blog articles, case studies, frameworks, and guides to help you build and maintain a world-class security program.
Building an autonomous crafting explorer surfaced real lessons about observability, cost governance, and security posture that apply far beyond a game.
Exploring how breaking down high-risk activities into manageable components enhances security and efficiency in modern application development pipelines.
An unconventional approach to understanding and managing information security frameworks by drawing parallels with mathematical concepts.
Secured 19 subdivisions of North America's leading vehicle wholesaler with comprehensive DevSecOps implementation. Achieved 90% review time reduction across 50+ dev teams.
Pioneered security framework for Fortune 500 restaurant corporation's automation initiative across 30,000+ locations and 100K+ IoT devices.
Rationalized global security perimeter for Fortune 500 financial corporation, achieving 40% TCO reduction.
Open-source models published on GitHub, free to use and adapt
A structured, evidence-based capabilities model organised around the journey software takes from raw parts to running product — consume, build, attest, verify, run — plus the AI and vendor domains most models omit. 11 categories, 75 topics, 270 atomic activities, each rated on a shared institutionalization axis with an evidence prompt and incident-derived risk weighting. Apache 2.0.
A threat and risk model for generative AI and large language models, covering abuse cases, attack surfaces and mitigations for AI-driven applications.
Side projects and explorations in AI, security, and systems thinking
Our team of experts can help you navigate compliance requirements, build security architectures, and respond to incidents.
Get a Security Assessment