A practical evidence model for separating source volume, confirmed impact, tenant scope and uncertainty in cloud incidents. “Twenty million records exposed” looks like a precise statement. It often is not. The number might describe database rows, user accounts, files, transactions, email addresses or an estimate copied from an early disclosure. It may include duplicates. It […]
Category Archives: Blog
Today, Amazon EC2 R9g and R9gd instances are generally available, powered by AWS Graviton5 processors. R9g instances are memory-optimized and deliver up to 25% better compute performance compared to Graviton4-based R8g instances, powered by the most energy efficient processor AWS has ever built. R9g instances are ideal for memory-intensive workloads including databases, in-memory caches (Valkey, […]
The news that interested me the most last week was the DuckLabs acquisition. AWS has signed a definitive agreement to acquire DuckLabs, the Amsterdam-based company behind DuckDB, the popular open source analytical database that runs in-process and executes SQL directly against files like Parquet, CSV, and JSON. DuckDB stays open source under its independent foundation […]
The pitch is simple: models triage faster than people, so the SOC should shrink. That pitch collides with how incidents actually start and how they end. Verizon’s 2025 Data Breach Investigations Report still put a human element in 60% of breaches. Stolen credentials were the most common initial-access path, at 22%. Phishing accounted for 16%. […]
Early last year, a B2B SaaS company posted a benchmark claim on LinkedIn before the product or legal teams had reviewed the number. It was based on an outdated version. The correction required a follow-up post, multiple internal discussions, and a week of answering questions about a figure the company could no longer support. No […]
For as long as most of us have been building with data, the systems we reach for — databases, query engines, data warehouses — have, at any appreciable scale, been separate systems. As a community, we’ve generated a lot of healthy arguments about their design along the way. Single host, clustered, or distributed, whether data […]
Twenty years ago today, Jeff Barr wrote a blog post that launched the Amazon EC2 Beta. That single post introduced resizable Linux virtual servers in the cloud, billed by the hour, with one instance type (m1.small) in one Region (US East). It was minimal yet useful, and it changed how the world thinks about computing […]
Behind nearly every merger or acquisition is a cloud migration project waiting to happen. Once a deal closes, IT teams need to bring together users, data, identities, applications, and devices that may have operated in entirely separate environments. That work often must happen on a tight timeline, turning M&A into a growing source of cloud […]
During my time at AWS, I have always looked for opportunities to work with students. I have delivered over 50 talks at universities across the region, and watching the potential in the room is always a strong motivator. It reminds me of why I do this work, and that the students I meet today may […]
Many implementations of Zero Trust assume a person is at the other end of the connection. That assumption is now the problem. The core principles still hold. Verify explicitly. Enforce least privilege. Assume breach. None of those are wrong, and none of them go away when autonomous agents enter the environment. What changes is the […]
