What is this blog?

What's this?

This is a blog with interesting things I read/watched on security. Usually it's about integrating security with devops, software delivery, CI/CD etc.
I only post things that I found really noteworthy and I try to annotate big documents/videos or specify the interesting parts, to save time. Keep in mind, it's all subjective and no one is paying me to do any of it.

Why?

Three reasons:
  • I want to keep worthy learnings organized and accessible for my future self,
  • I want the above to be easily shareable with my friends and colleagues,
  • Maybe strangers find it interesting,
  • It may be good for my personal brand (let's be honest, a bit of self-promo is needed and ok).

Who am I?

I'm Chris, a security engineer working for an awesome company in the Netherlands. I strive to enable software delivery teams to get security right.