Global cybersecurity from Sydney, Australia — operating 24/7 across 6 cloud platforms.
Resources · Blog

Cloudgenics blog.

Field notes from image engineering, the SOC, and conversations with regulators worldwide.

Engineering

Image hardening at scale: kernel parameters that actually matter

A walk through the sysctl, kernel module and audit subsystem decisions that move the needle versus the changes that just look busy on a CIS report.

Compliance

Reading the UAE Information Assurance Standards as an engineer

Translating the NESA / SIA control catalogue into runtime checks you can actually monitor — without losing the spirit of the framework.

Regulator

NIS2 transposition: what 27 EU member states are doing differently

Which national laws extend NIS2 scope, which tighten timelines, and how operators should plan for the diversity.

SOC

Detecting drift before the auditor does

Configuration drift detection from a SOC perspective — why it is the cheapest control you are probably not running.

Supply chain

SLSA Level 3, SBOMs, and the boring middle of provenance

Reproducible builds matter, but the gap between SLSA L1 and L3 is mostly process — here is the part nobody writes about.

Engineering

FIPS 140-3 across six clouds: the practical view

Where FIPS-validated modules ship by default, where you must opt in, and where you must build them — across AWS, Azure, GCP, OCI, IBM and Alibaba.

Launch a secure, compliance-ready server today.

Pick a cloud, pick a baseline, deploy in under an hour. Engineers from our Sydney SOC are available to scope sovereign and regulated deployments.