Active Directory Security
Tiering, delegation models, Kerberos hygiene, and detecting common AD misconfigurations before they become incidents.
These are the recurring topics across my writeups, internal engagements, and personal lab work. Each one is an area where I think the gap between best practice and reality is wide enough to justify writing about it.
drwxr-xr-x active-directory/ drwxr-xr-x attack-surface-reduction/ drwxr-xr-x printer-security/ drwxr-xr-x tls-hardening/ drwxr-xr-x bitlocker-security/ drwxr-xr-x ot-security/ drwxr-xr-x vulnerability-management/
Tiering, delegation models, Kerberos hygiene, and detecting common AD misconfigurations before they become incidents.
Killing legacy protocols, restricting management planes, and shrinking what is reachable to what is necessary.
Hardening multi-function devices and print servers in segmented enterprise and OT environments.
Cipher suite curation, certificate lifecycle, and getting recovery and admin portals to a defensible posture.
Key protector strategy, recovery workflows, MBAM/BitLocker policy gaps, and tamper-resistant deployments.
Working with IT/OT seams, Purdue model boundaries, and pragmatic controls in low-tolerance environments.
From scanner output to a triage model that engineers and ops actually act on — without the noise.