Content
Strategic insights on blockchain, AI, security, leadership, and career in an age of disruption.

AI Data Capture: Employee Consent vs. Legal Risk
Meta's AI pendant acquisition raises critical questions about biometric data collection. Learn how BIPA regulations distinguish consumer consent from employee capture—and why your internal AI training could face lawsuits.
Recent Essays

AI Dependency: When Tools Replace Your Judgment
AI isn't replacing grunt work—it's replacing judgment. Discover why losing the ability to catch AI errors is riskier than depending on the technology itself.

AI Costs Are Rising—Here's How to Control Them
Enterprise AI spending is accelerating despite falling per-token prices. CFOs need usage-based cost controls and real-time observability to prevent budget overruns.

Design Problems Can't Be Trained Away
Why behavioral fixes fail: Echo chambers formed in AI networks with no toxicity input, revealing structural design flaws that training can't solve.

Where Your Best Talent Goes Before Numbers Change
Top talent migration signals which roles lose pricing power before data shows it. Watch where ambitious employees go—it's a leading indicator of market repricing.
All Content
697 posts
Project: VPN
This is the second in a series of projects you can use to improve your security stills. The ideas of these projects is something relatively…
How Can I Help You?
Explore insights from the "How Can I Help You?" survey, revealing trends in security careers and reader demographics. Discover how a revamped assessment now tailors learning paths for aspiring professionals.
How Uber Gave Me Faith in Humanity
Uber is a disruptive technology. Over the past few years, many taxi and limo drivers have been impacted by the ease of hailing a ride…
4 Ways to Evaluate Your Job
Discover four essential ways to evaluate your job, focusing on your boss, mobility, company pride, and skillset growth. Learn how to weigh these factors to make informed career decisions.
Jay’s Best of 2015
Explore Jay's top blog posts from 2015, featuring insights on security and DevOps, the CISO talent gap, and more. Discover engaging content and the stories behind each article.
How To Move From Development to Security
Discover how developers can transition into the thriving field of application security with this guide. Learn essential skills, explore the OWASP Top 10, and find resources to enhance your security mindset.
Why We Will Never Secure The Internet of Things
Explore why securing the Internet of Things (IoT) remains elusive, as most devices, made by unknown manufacturers, lack security measures. Discover the need for universal security standards.
Securing Amazon Web Services
Discover a comprehensive guide to securing your Amazon Web Services environment. This blog post compiles essential tips and resources to protect AWS accounts, EC2 instances, S3 buckets, and more.
Season 1: Masterclass
Dive into the Season 1 Masterclass podcast episode, featuring highlights and diverse perspectives from the past 12 weeks. Perfect for newcomers and a must-share with friends. Get ready for Season 2!
How To Finish 2015 Strong
Discover how to finish 2015 strong by setting clear goals for 2016. This post offers actionable steps to ensure you stay focused and prepared, even through the holiday distractions.
ISO 27017: A New Standard to Learn
Explore ISO 27017, a cloud-specific security standard that Amazon Web Services recently adopted. Learn how it complements existing ISO standards and its implications for cloud security practices.
InfoSec Does Time Management Wrong
Discover why traditional time management in IT and InfoSec falls short and learn how the "multiplier effect" can transform your workflow, boost productivity, and empower your team for long-term success.