Posts tagged: devsecops
Full-Blog PDPA Audit — Scanning 202 Posts for PII Leaks
I ran pdpa-sg-clj across all 202 blog posts — 239K words, 1.66 MB — to audit for NRIC leaks, phone numbers, API keys, and email exposure. Here's the methodology, findings, and what I learned about automated PII detection at scale.
The 2026 nurazhar.com Architecture — What Changed, Why, and What the Pipeline Looks Like Now
A complete tour of every architectural change to nurazhar.com in 2026 — from GitLab Pages to Cloudflare Pages, horizontal diagrams to vertical, no PDPA to compliance-gated publishing, and a humans-only blog to an LLM-friendly knowledge base.
The CI/CD Migration That Killed My Blog for 24 Hours — A DevSecOps Teaching Case
A DevSecOps walkthrough of migrating a 185-post static blog from GitLab Pages + self-hosted runner to Cloudflare Pages direct deploy — the mental model, the failure that broke production, and the SDLC principles behind every decision.
Security Is Just a Mindset
Security isn't a tool you learn or a certification you earn. It's a way of thinking about systems — and it changes everything you build.
Training Data Poisoning: The Invisible Cyber Threat Reshaping AI Security
Data poisoning shifts the attack surface from code exploitation to data supply chain corruption. A security engineer's breakdown of how adversaries weaponize training data, the real-world impact across critical sectors, and the defensive posture required to protect AI pipelines.
Google vs SpaceX: Infrastructure Economics Compared — A Platform Security Lens
A technical breakdown comparing Google's centralized hyperscale data centers against SpaceX's distributed LEO satellite mesh, analyzing infrastructure value, compute economics, and what this means for platform security and DevSecOps decision-making.