technical how to’s
Automating security testing as part of release pipelines
Automating security testing as part of release pipelines For many UK SMEs, software delivery has to balance speed, stability, and security. Release pipelines help teams move changes from code to production in ...
Designing systems to handle failure gracefully for UK SMEs
Designing systems to handle failure gracefully for UK SMEs Most business systems will fail at some point. That is not a sign that the design is poor. It is a sign that ...
Zone and conduit modelling under IEC 62443: a practical guide for UK SMEs
Zone and conduit modelling is one of the most useful ways to make industrial and operational technology environments easier to understand and protect. For many UK SMEs, the challenge is not a ...
Endpoint hardening using CIS Benchmarks for UK SMEs
Endpoint hardening using CIS Benchmarks for UK SMEs For many UK SMEs, the endpoint is still the place where security work becomes real. Laptops, desktops, and build servers are where users sign ...
Designing secure communications using TLS and mutual authentication for UK SMEs
Why secure communications matter in practical system design Most organisations already know that data should be protected when it is sent across a network. The harder question is how to do that ...
Backup and recovery architecture best practices for UK SMEs
Backup and recovery architecture best practices for UK SMEs For many UK SMEs, backup is treated as a storage task. In practice, it is a business resilience control. A good backup and ...
Detecting fileless malware and living-off-the-land attacks: a practical guide for UK SMEs
Fileless malware and living-off-the-land attacks can be difficult to spot because they often use legitimate tools already present on a device. That does not make them invisible, but it does mean small ...
Logging and monitoring basics for small teams
For many UK SMEs, logging and monitoring can feel like something reserved for larger organisations with a security operations team. In practice, the basics are much simpler. You do not need to ...
Logging and monitoring basics for small teams
For many UK SMEs, logging and monitoring can feel like something reserved for larger organisations with a security operations team. In practice, the basics are much simpler. You do not need to ...
Protecting training data from data poisoning attacks: practical guidance for UK SMEs
Protecting training data from data poisoning attacks: practical guidance for UK SMEs As more UK SMEs experiment with artificial intelligence, the focus often falls on the model itself. That is understandable, but ...

