m@ksim.pro
Blog

Notes on data, AI, IT and security

No marketing fog. The way I think about real problems with founders and managers.

Security

The Okta breach: what it means when an identity provider is compromised

In March 2022 Okta confirmed a breach. A look at the lesson a director should take from this, not just a security specialist.

Read
Data

Data contracts: how teams agree on integration

Why most data integration problems between teams are problems of agreements, not technology.

Read
AI

DALL-E 2 and the new visual productivity

OpenAI unveiled DALL-E 2. A look at what changes for business - not for artists, but for companies that work with visual content every day.

Read
IT

Vendor exit strategy: how to think about software dependencies

Why companies need an exit plan for vendor dependencies, and how to start building one before it becomes urgent.

Read
IT

IT system resilience when conditions shift fast

How a manager should think about IT infrastructure resilience when the external environment changes quickly and unpredictably.

Read
Data

Data mesh is about ownership, not about the platform

Breaking down the data mesh concept without the hype - why it is an organisational model first and a technical stack second.

Read
Security

Log4Shell: the management lessons from the incident

Breaking down the Log4Shell vulnerability as a management lesson - about hidden dependencies, response speed, and invisible risk.

Read
AI

GPT-3 in the API: what a founder should do with it

OpenAI opened GPT-3 access through its API. A clear-headed look at what changes for business and where to slow down.

Read
Security

Log4Shell: if you do not know your dependencies, you do not know your attack surface

The Log4Shell vulnerability showed that most companies have no idea which libraries are running inside their systems.

Read
Data

Data ownership: who signs off on the number

In most companies data exists but no one is responsible for its quality. I look at what data ownership actually means in practice.

Read
Security

Zero trust: what it actually means and when it is worth the investment

Zero trust has become one of the biggest buzzwords in security. I break down what is behind it and who it is actually relevant for.

Read
IT

When to split a monolith: the questions matter more than the hype

Microservices are a popular answer to the scaling question. But the right question is not 'split or not' - it is 'why and when'.

Read