The Infrastructure Wall: Why Your Agent Demo Died in Production
Everyone prototypes an AI agent in a weekend. Almost nobody ships it cleanly. Here's the wall you're about to hit β and how the platform is evolving to remove it.
Everyone prototypes an AI agent in a weekend. Almost nobody ships it cleanly. Here's the wall you're about to hit β and how the platform is evolving to remove it.
A platform engineer's plain-English walkthrough of what FedRAMP actually is β impact levels, the document set (SSP, SAR, POA&M), the ATO process, and how Rev5 and 20x change the picture in 2026.
A platform engineer's take on starting the FedRAMP journey from outside the US β why a third-party partner matters, and what the '90 days' promise really means in 2026.
A follow-up to my MiniMax M2.5 piece β challenging my own assumptions with fresh Artificial Analysis data, GLM-5, M2.7, and what this means for coders in 2026.
Choosing an auditor, surviving the Type II observation window, common findings, and how SOC 2 becomes the foundation for ISO 27001, HIPAA, and FedRAMP.
How to turn SOC 2 from a yearly fire drill into a byproduct of how you build β AWS SCPs, GCP Org Policies, OPA, drift detection, and automated evidence collection.
How to map SOC 2 controls to your AWS, GCP, and Kubernetes stack β IAM, logging, encryption, change management, and what auditors actually want to see.
Why SOC 2 has become non-negotiable for ISVs selling to enterprises β and what it actually costs to skip it. Part 1 of a 5-part series.
Why self-service development environments matter for modern teams and how automation, standardization, and templates reduce onboarding friction.
Why DevOps engineers must deepen their software engineering craft and how to plan the skills journey.