CMMC 2.0 in Practice
A practical breakdown of CMMC 2.0 levels, NIST SP 800-171 control domains, and what contractors must demonstrate to pass a C3PAO assessment.
Technical Journal
Field-informed writing on cybersecurity, DevSecOps, architecture, automation, and the engineering practices that make complex systems more trustworthy.
Start Here
A practical breakdown of CMMC 2.0 levels, NIST SP 800-171 control domains, and what contractors must demonstrate to pass a C3PAO assessment.
A runtime governance model for autonomous systems operating beyond traditional approval gates.
A breakdown of the DoD Zero Trust Strategy's seven pillars, FY2027 targets, and the implementation gaps that still threaten the timeline.
Why your ZT architecture must now account for AI systems, model workflows, and the 2026 National Cyber Strategy
Joint All-Domain Command & Control isn't a weapons program — it's a distributed systems problem