security

Networking, Network Types, and the OSI Model through the lens of a Head of Platform Security and Fintech Security Architect

This is about understanding how the foundational network fabric dictates your security architecture, risk posture, and cloud strategy. 1. What is Networking? (The Security Leader’s Perspective) At its core, networking is the practice of connecting computing devices to share resources and communicate. However, in modern enterprise architecture, networking is the central nervous system of the

Networking, Network Types, and the OSI Model through the lens of a Head of Platform Security and Fintech Security Architect Read Post »

security

IP Classes and DHCP

Part 1: IP Address Classes (The Historical Foundation) Before 1993, the internet used Classful Networking to allocate IP addresses. The 32-bit IPv4 address space was rigidly divided into five classes based on the first few bits of the address. Classful networking is obsolete, replaced in 1993 by CIDR (Classless Inter-Domain Routing). However, understanding classes is

IP Classes and DHCP Read Post »

security

TCP and UDP headers

Part 1: The TCP Header (20 to 60 Bytes) TCP is a complex, stateful protocol. Its header contains the “control plane” information required to guarantee delivery. Because it is stateful, it is highly inspectable by firewalls, but its complexity also provides a massive attack surface. The Core Fields: The Security & Architectural Lens for TCP:

TCP and UDP headers Read Post »

security

SOC Analyst track

1. The Certification Roadmap (Blue Team / SOC) Certifications serve two purposes: passing the HR filter (foundational) and proving you can actually do the job (practical). Tier 1: The “HR Filters” (Foundational Knowledge) These are multiple-choice exams that prove you understand security vocabulary, concepts, and compliance. Tier 2: The “Practical” Certifications (Highly Recommended) The industry

SOC Analyst track Read Post »

security

SOC team structure, roles, responsibilities, and operating models

1. The SOC Team Hierarchy: Roles and Responsibilities A mature SOC is divided into tiers of expertise, alongside specialized engineering and intelligence roles. The Operational Tiers (The “Eyes and Hands”) The Engineering and Support Roles (The “Builders and Brains”) Leadership and Specialized Roles 2. SOC Operating Models (Strategic Decision Making) As a security leader, we

SOC team structure, roles, responsibilities, and operating models Read Post »

security

Cyber threats facing modern enterprises (Cloud, IAM, Fintech, and OT/ICS)

1. Identity and Access Threats (The New Perimeter) We know that attackers no longer “hack in”—they “log in.” Identity is the primary attack vector. 2. Supply Chain and Software Vulnerabilities Modern enterprises are highly interconnected. Attackers increasingly target the weakest vendor in the supply chain to compromise the ultimate target (e.g., SolarWinds, MOVEit, XZ Utils).

Cyber threats facing modern enterprises (Cloud, IAM, Fintech, and OT/ICS) Read Post »

Scroll to Top