Blog
Notes from the field
Practical writing on identity, infrastructure, automation, security, and AI.
Understanding AI Pricing Models
Tokens, seats, and usage tiers explained, so you can forecast AI cost before the bill surprises you.
Technology Due Diligence for Funding and Acquisitions
What investors and acquirers should look for in a company's technology and security posture.
How to Choose an AI Model or Vendor
A practical framework for picking among AI providers without getting lost in benchmarks.
Google Workspace to Microsoft 365: A Migration Playbook
How to move email, files, and identities from Google Workspace to Microsoft 365 without losing data or downtime.
Network Migrations Without the Downtime
A staged approach to replacing network and firewall infrastructure while the business keeps running.
Automating Onboarding and Offboarding
Turn joiner, mover, and leaver events into reliable automation instead of checklists.
AI Is a Tool, Not a Strategy
Why treating AI as a tool, not a mandate, is the difference between real value and expensive theater.
Building an IT Function From Zero
What the first 90 days look like when you stand up IT and security for a growing company.
Microsoft 365 to Google Workspace: Migrating in Reverse
The reverse migration has its own gotchas. Here is how to move from Microsoft 365 to Google Workspace cleanly.
A Practical Path to CMMC and NIST 800-171
How to approach CMMC readiness without stalling the business or boiling the ocean.
Automating Onboarding with Greenhouse and Okta Workflows
Turn a 'hired' candidate in Greenhouse into fully provisioned access automatically, using Okta Workflows.
Untangling ERP and CRM
How to integrate Salesforce, NetSuite, and Oracle into one connected system of record.
Kicking Off Greenhouse: ATS Basics for a Growing Team
A practical starting point for standing up Greenhouse so hiring is structured, fair, and fast from day one.
What Makes CMMC Hard: The Real Pain Points
An honest look at where CMMC and NIST 800-171 programs get stuck, and how to think about each.
Identity Is the New Perimeter
Why SSO and SCIM, done right, are the foundation of a modern security program.
The CrowdStrike Outage: What Happened and What Changed
The July 2024 CrowdStrike incident was a faulty update, not a breach. Here is what happened, how it was fixed, and the lessons that outlast it.