Notes
Longer English write-ups — usually expanded from something I posted on LinkedIn.
After Medicare: Why AI Agent Governance Belongs on the CISO Agenda
Govern AI agents like identities and workloads — inventory, least privilege, human-in-the-loop, logging — after the Medicare stats-portal agent incident.
Read on blog →Smart buildings created an attack surface. Zero Trust owns it.
Smart buildings keep celebrating comfort and energy savings. Almost nobody owns the building automation security problem that arrives with them — the attack surface we just created. Every controller, meter gateway, and BMS link is a door.
Read on blog →Vibecoding security PoCs: from idea to testable control in an afternoon
Lately I have been using AI-agentic workflows the same way I would use a lab bench — not as a replacement for judgment, but as a way to clear the bench, mount the experiment, and see whether a control actually holds.
Read on blog →Source: blog.zameni.us · Categories: longer English notes.
