From the blog
Tech deep-dives, crypto strategy, and everything in between.
Terraform Best Practices: Lessons from 13 Years of Infrastructure Automation
State management, module design, workspace strategy, and the anti-patterns I see repeated in teams across AWS, Azure, and GCP.
HashiCorp Vault Best Practices: Secrets Management Done Right
Dynamic secrets, auth methods, policy design, and the operational mistakes teams make when scaling Vault in production Kubernetes environments.
Camunda and Its Features: Orchestrating Workflows at Scale
A look at what Camunda actually is, why process orchestration matters, and the features that make it stand out from a plain job queue or cron job.
Terragrunt: Keeping Terraform DRY at Scale
Once you have more than a handful of Terraform root modules across environments, copy-pasted backend blocks become a maintenance tax. Terragrunt removes it.
Temporal: Durable Execution for Distributed Systems
Why retry logic, timers, and state machines scattered across your services are a code smell — and how Temporal lets you write workflows as plain, durable functions.
CDNs: What Every Engineer Should Actually Know
A CDN is more than a cache in front of your site. Cache keys, invalidation, edge compute, and origin shielding are the parts that actually matter in production.
Golang for Infrastructure Engineers: Why It Became the Default
Terraform, Kubernetes, Docker, Vault, Terragrunt, Prometheus — the entire modern infra stack is written in Go. Here's why, and what it means for engineers.
Claude Features Every Engineer Should Be Using
Beyond "ask it to write a function" — large context windows, project knowledge, artifacts, and tool use are what actually change how I work day to day.
Troubleshooting Production Incidents with Claude
A practical workflow for using an AI assistant during an actual incident — what to paste, what to ask, and where human judgement still has to lead.
HashiCorp Vault PKI: Automating Certificate Lifecycle
Manually renewing internal TLS certificates doesn't scale past a handful of services. Vault's PKI engine turns issuance into an API call with a built-in expiry.
Harness CI/CD: Pipelines as Code Without the YAML Sprawl
What makes Harness different from a plain CI runner — native deployment strategies, built-in verification, and governance that scales across many teams.
GitHub Actions: Practical Patterns Beyond the Basics
Reusable workflows, matrix builds, caching, and OIDC-based cloud auth with no stored secrets — the patterns that matter once you outgrow lint-test-build.
No blogs match your search.