Notes
Writing
Framework breakdowns and what I learned building things.
Notes on the NIST AI RMF
What the framework actually gives you, and where it stops being useful.
AI Security
Read
Prompt Injection vs. Jailbreaking
Two AI attacks that get treated as the same thing. The difference decides where the fix goes.
AI Security
Read
Navigating CMMC 2.0
How the DoD verifies its contractors, and the three things that stuck with me.
GRC & Risk
Read
Each project in the work section gets a write-up when it's finished.
The next one covers immutable storage against ransomware, and why the local Azure emulator
can't fake the feature that project depends on.