Your Experiment Tracker Is Production Infrastructure Now
CISA gave Ray three days to patch and MLflow fourteen. The gap is the assessment.
The Trust Boundary Is the CI Runner
AIShellJack's 84% attack rate and three 2026 disclosures point to one design gap
Ninety-One Per Cent of Your Identities Are Not People: Zero Trust for the Machine Majority
A new measurement shows most of what authenticates in production was never human
Governance Without Architecture Is Incomplete: The Security Manager Becomes an Architect
ISACA rebuilt the CISM exam around architecture fluency, not controls alone
The Same Model, Two Regimes: What 10 December 2026 Requires of Trans-Tasman AI Architecture
One deadline, two jurisdictions, and the automated-decision inventory most AI governance roadmaps skip
The Delegation Problem
Why 40 Per Cent of Enterprises Are Heading for a Post-Incident Reckoning with OAuth 2.1
Every Agent Is a Login: FIDO2, Passkeys, and the Human-Facing Identity Boundary
When phishing-resistant authentication meets agentic AI, the question is not whether your agents can authenticate. It is whether the human who authorised them was actually there.
When Five Governments Tell You to Slow Down
SPIFFE, SVIDs, and the Architecture of Cryptographic Agent Trust
The Non-Human Identity Crisis: Why Your Zero Trust Architecture Has a Blind Spot
Part Four: Identity Architecture | Chapter 16
The Non-Human Identity Crisis: Why Your Zero Trust Architecture Has a Blind Spot
Part Four: Identity Architecture | Chapter [TBC; recommended: 19]
When Insurers Become the Regulator: The Cyber Insurance Path to Zero Trust
Your renewal questionnaire is now part of your architecture roadmap. Here is what that means for NZ practitioners.
Why Your AI Architecture Must Understand Māori Data Sovereignty
The six principles your Zero Trust framework doesn't mention — and why they govern more than you think
Identity Is the Architecture: Agentic Asset Registers and the NZISM Chapter 16 Horizon
A Practitioner's Guide to Registering, Governing, and Revoking Agent Identities Before the Regulatory Window Closes
The Sixth Pillar: Agent Identity and the New Perimeter
Zero Trust for Agentic AI: Why Three Independent Authorities Reached the Same Conclusion in Ninety Days
The Identity Layer: When Every Agent Needs a Badge
Zero Trust Architecture for the Agentic Enterprise, Chapter 9
When AI Agents Attack: Lessons from Claude Code, Slack AI, and Copilot CVEs
The Lethal Trifecta Verified Across Seven Documented Incidents
The Prevention Test: Fifteen Questions Every New Zealand Board Should Answer Before the Breach Arrives
The Boardroom Readiness Quiz — and what ManageMyHealth reveals when you apply it retrospectively
The Three Capabilities That Turn Your AI Into an Insider Threat
Every AI agent with all three capabilities is a structural insider threat. The Lethal Trifecta shipped on 5 March 2026 for $20 a month.
Zero Trust Fundamentals for Data Scientists and ML Engineers
The five security concepts every AI practitioner needs before deploying to production

