Analysis from the shift, no marketing
What the team learns by operating: how the agents are audited, which TTPs we see in the region and how to communicate risk to the board.
Auditing the triage agent: 94% noise, 0 lost cases
The reasoning log behind every dismissal, the monthly blind sampling and how a client can review it.
Read →MFA-fatigue phishing: what we saw at three banks in the region
The full attack sequence, the signal that gives it away and the detection that cuts it.
Read →Microsoft 365 hardening guide for Dominican companies
Seven concrete controls, from conditional access to Direct Send, with the why behind each.
Read →AI in security: from copilots to agents
What to automate, what never to, and how to measure results without vanity metrics.
Read →The first 4 hours of a ransomware, told from the shift
Anonymized case: which decisions mattered and what a retainer would have changed.
Read →How to present cyber risk to the board in 4 questions
How much can we lose, what does reducing it cost, what is the return and what happens if we do nothing.
Read →Material like this, every week.
The CERT-CBRT bulletin: what is being exploited in the region and what the shift learns by operating. No marketing.