BadBadger InfoSec
Menu
  • Home
  • About
  • Blog
Menu

Data is not at risk from technology...

...it's at risk from people. Technology itself is neutral.

This seems obvious but we are getting it wrong all the time and attackers are profiting. We're so easily distracted by the shiny objects and expensive toys of InfoSec that we ignore the core principles - which is what TRULY makes the difference. Technology leaders must get the fundamentals right and develop their defenses in the correct order and in-depth:

  • the right people - trained.
    • the right processes - followed.
      • the right tools - funded and well-supported.

It has to be in that ^ order or none of it will matter.

Welcome to my site. Let's talk about it.

Topics I Discuss

01.

Cybersecurity Fundamentals

02.

Threat Landscape

03.

Security Tools and Techniques

04.

Leadership

05.

Self Improvement

06.

Security Tools and Techniques

07.

Cloud Security

08.

Stuff

Recent Posts

  • Stopping an AWS Attack in Real Time – Walking through an Incident
  • Writing Secure IAM Policies to Prevent Shadowing and Conflicts
  • How to Detect IAM Policy Shadowing in AWS Using Native Tools
  • What Lurks in the Shadows of IAM? The Hidden Risk of Shadow Permissions
  • Becoming a Clear Communicator

Archives

  • December 2024
  • July 2024
  • April 2024
  • March 2024
  • November 2023
  • June 2023
  • March 2023
  • February 2023

Categories

  • InfoSec Career
  • Leadership
  • OSINT
  • Techniques
  • Tools
© 2025 BadBadger InfoSec | Powered by Minimalist Blog WordPress Theme