Academy Pro · 81 articles

Academy Pro

Medium and Hard Academy modules — Pro tier required

Academy

Passwordless and FIDO2 Rollout

FIDO2/WebAuthn end-to-end — passkeys vs hardware keys, registration and login flows, account-recovery design, server-side WebAuthn implementation, enterprise rollout sequence.

Apr 26, 2026 · 4 min read
Academy

Security Audit Programme and Reporting

Three lines of defence, audit calendar, continuous control monitoring, working papers, common-control framework across ISO/SOC2/PCI/RBI/SEBI, audit-fatigue management.

Apr 26, 2026 · 4 min read
Academy

Secure Code Review at Scale

Per-PR vs feature-level vs deep-dive code reviews, OWASP Top 10 hunt patterns, Semgrep custom-rule programme, what humans find that tools miss, rollout…

Apr 26, 2026 · 5 min read
Academy

Digital Forensics and Chain of Custody

Order of volatility, RAM and disk imaging, NTFS/Linux artefacts, cloud forensics, mobile forensics, IT Act §65B, BSA admissibility — the practitioner forensic…

Apr 26, 2026 · 6 min read
Academy

Reverse Engineering and Malware Analysis

Static and dynamic RE workflow, Ghidra/IDA/Binary Ninja, packers, anti-analysis bypass, sandbox setup, YARA-rule writing — turning unknown binaries into hunting queries.

Apr 26, 2026 · 5 min read
Academy

Data Loss Prevention at Scale

DLP that works in 2026 — endpoint, network, cloud, email channels; pattern + classifier rules; rollout sequence (audit → block); fatigue management;…

Apr 26, 2026 · 3 min read
Academy

CASB and SaaS Data Governance

CASB modes (forward proxy, reverse proxy, API), SaaS-to-SaaS OAuth governance, shadow-IT discovery, sensitive-data inventory across 200+ SaaS apps, and the rollout pattern…

Apr 26, 2026 · 3 min read
Academy

Privacy Engineering — Tokenisation and k-Anonymity

Privacy-preserving primitives — tokenisation, format-preserving encryption, k-anonymity, l-diversity, differential privacy — when each applies, the engineering trade-offs, and DPDP §10 implications.

Apr 26, 2026 · 3 min read
Academy

Security Architecture Patterns and Models

Reference architectures encode known-good designs — authentication, authorisation, secrets, service-to-service, logging, encryption patterns. Catalogue, deviation process, ARB governance.

Apr 26, 2026 · 3 min read
Academy

Hardware Roots of Trust — TPM, HSM, Secure Boot

TPM 2.0, HSM, ARM TrustZone, SGX/SEV, secure-element chips — what HRoT primitives offer, measured boot, key storage, attestation, confidential computing for cloud…

Apr 26, 2026 · 5 min read