<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Protoxol — Field notes from the operations floor</title>
    <link>https://protoxol.com/blog.html</link>
    <atom:link href="https://protoxol.com/feed.xml" rel="self" type="application/rss+xml" />
    <description>Practical writing on detection, response and modern security operations.</description>
    <language>en</language>
    <lastBuildDate>Thu, 11 Jun 2026 11:20:56 GMT</lastBuildDate>
    <generator>Protoxol build-seo.js</generator>
    
    <item>
      <title>Hardening macOS fleets for enterprise</title>
      <link>https://protoxol.com/blog/hardening-macos-fleets-for-enterprise.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/hardening-macos-fleets-for-enterprise.html</guid>
      <pubDate>Mon, 09 Feb 2026 00:00:00 GMT</pubDate>
      <category>Practical Guides</category>
      <description><![CDATA[Practical guidance on hardening macos fleets for enterprise. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Phishing-resistant authentication: passkeys, FIDO2, and reality</title>
      <link>https://protoxol.com/blog/phishing-resistant-authentication-passkeys-fido2-and-reality.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/phishing-resistant-authentication-passkeys-fido2-and-reality.html</guid>
      <pubDate>Mon, 09 Feb 2026 00:00:00 GMT</pubDate>
      <category>Concepts Base</category>
      <description><![CDATA[Practical guidance on phishing-resistant authentication: passkeys, fido2, and reality. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>AWS security quick wins: 15 controls to implement first</title>
      <link>https://protoxol.com/blog/aws-security-quick-wins-15-controls-to-implement-first.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/aws-security-quick-wins-15-controls-to-implement-first.html</guid>
      <pubDate>Sun, 08 Feb 2026 00:00:00 GMT</pubDate>
      <category>Cloud &amp; Infra</category>
      <description><![CDATA[Practical guidance on aws security quick wins: 15 controls to implement first. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Email gateway tuning: reducing false positives without risk</title>
      <link>https://protoxol.com/blog/email-gateway-tuning-reducing-false-positives-without-risk.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/email-gateway-tuning-reducing-false-positives-without-risk.html</guid>
      <pubDate>Sun, 08 Feb 2026 00:00:00 GMT</pubDate>
      <category>Threat Trends</category>
      <description><![CDATA[Practical guidance on email gateway tuning: reducing false positives without risk. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>How attackers bypass MFA (and how to stop them)</title>
      <link>https://protoxol.com/blog/how-attackers-bypass-mfa-and-how-to-stop-them.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/how-attackers-bypass-mfa-and-how-to-stop-them.html</guid>
      <pubDate>Sun, 08 Feb 2026 00:00:00 GMT</pubDate>
      <category>Threat Trends</category>
      <description><![CDATA[Practical guidance on how attackers bypass mfa (and how to stop them). What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Security review of third parties: vendor risk in practice</title>
      <link>https://protoxol.com/blog/security-review-of-third-parties-vendor-risk-in-practice.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/security-review-of-third-parties-vendor-risk-in-practice.html</guid>
      <pubDate>Fri, 06 Feb 2026 00:00:00 GMT</pubDate>
      <category>Compliance</category>
      <description><![CDATA[Practical guidance on security review of third parties: vendor risk in practice. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>OAuth and OIDC pitfalls in SaaS integrations</title>
      <link>https://protoxol.com/blog/oauth-and-oidc-pitfalls-in-saas-integrations.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/oauth-and-oidc-pitfalls-in-saas-integrations.html</guid>
      <pubDate>Thu, 05 Feb 2026 00:00:00 GMT</pubDate>
      <category>Cloud &amp; Infra</category>
      <description><![CDATA[Practical guidance on oauth and oidc pitfalls in saas integrations. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Azure security quick wins: identity, logging, and segmentation</title>
      <link>https://protoxol.com/blog/azure-security-quick-wins-identity-logging-and-segmentation.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/azure-security-quick-wins-identity-logging-and-segmentation.html</guid>
      <pubDate>Thu, 05 Feb 2026 00:00:00 GMT</pubDate>
      <category>Cloud &amp; Infra</category>
      <description><![CDATA[Practical guidance on azure security quick wins: identity, logging, and segmentation. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Cyber insurance readiness: controls that affect underwriting</title>
      <link>https://protoxol.com/blog/cyber-insurance-readiness-controls-that-affect-underwriting.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/cyber-insurance-readiness-controls-that-affect-underwriting.html</guid>
      <pubDate>Wed, 04 Feb 2026 00:00:00 GMT</pubDate>
      <category>Compliance</category>
      <description><![CDATA[Practical guidance on cyber insurance readiness: controls that affect underwriting. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Threat hunting 101: hypotheses, data, and success metrics</title>
      <link>https://protoxol.com/blog/threat-hunting-101-hypotheses-data-and-success-metrics.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/threat-hunting-101-hypotheses-data-and-success-metrics.html</guid>
      <pubDate>Wed, 04 Feb 2026 00:00:00 GMT</pubDate>
      <category>Practical Guides</category>
      <description><![CDATA[Practical guidance on threat hunting 101: hypotheses, data, and success metrics. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>IoT security for SMBs: what matters and what doesn’t</title>
      <link>https://protoxol.com/blog/iot-security-for-smbs-what-matters-and-what-doesn-t.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/iot-security-for-smbs-what-matters-and-what-doesn-t.html</guid>
      <pubDate>Tue, 03 Feb 2026 00:00:00 GMT</pubDate>
      <category>Devices</category>
      <description><![CDATA[Practical guidance on iot security for smbs: what matters and what doesn’t. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>OSCP study plan for busy professionals</title>
      <link>https://protoxol.com/blog/oscp-study-plan-for-busy-professionals.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/oscp-study-plan-for-busy-professionals.html</guid>
      <pubDate>Mon, 02 Feb 2026 00:00:00 GMT</pubDate>
      <category>Certifications</category>
      <description><![CDATA[Practical guidance on oscp study plan for busy professionals. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Attack surface management: external exposure in reality</title>
      <link>https://protoxol.com/blog/attack-surface-management-external-exposure-in-reality.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/attack-surface-management-external-exposure-in-reality.html</guid>
      <pubDate>Sun, 01 Feb 2026 00:00:00 GMT</pubDate>
      <category>Practical Guides</category>
      <description><![CDATA[Practical guidance on attack surface management: external exposure in reality. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>HSMs explained: when you need them</title>
      <link>https://protoxol.com/blog/hsms-explained-when-you-need-them.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/hsms-explained-when-you-need-them.html</guid>
      <pubDate>Sat, 31 Jan 2026 00:00:00 GMT</pubDate>
      <category>Devices</category>
      <description><![CDATA[Practical guidance on hsms explained: when you need them. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>How to choose a SIEM in 2026: cost, data, and outcomes</title>
      <link>https://protoxol.com/blog/how-to-choose-a-siem-in-2026-cost-data-and-outcomes.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/how-to-choose-a-siem-in-2026-cost-data-and-outcomes.html</guid>
      <pubDate>Sat, 31 Jan 2026 00:00:00 GMT</pubDate>
      <category>Recovery</category>
      <description><![CDATA[Practical guidance on how to choose a siem in 2026: cost, data, and outcomes. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Red teaming vs purple teaming: choosing the right exercise</title>
      <link>https://protoxol.com/blog/red-teaming-vs-purple-teaming-choosing-the-right-exercise.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/red-teaming-vs-purple-teaming-choosing-the-right-exercise.html</guid>
      <pubDate>Sat, 31 Jan 2026 00:00:00 GMT</pubDate>
      <category>Ethical Hacking</category>
      <description><![CDATA[Practical guidance on red teaming vs purple teaming: choosing the right exercise. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Ransomware readiness: a short plan that works</title>
      <link>https://protoxol.com/blog/ransomware-readiness-a-short-plan-that-works.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/ransomware-readiness-a-short-plan-that-works.html</guid>
      <pubDate>Tue, 27 Jan 2026 00:00:00 GMT</pubDate>
      <category>Threat Trends</category>
      <description><![CDATA[Practical guidance on ransomware readiness: a short plan that works. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Microsoft 365 security baseline for SMBs</title>
      <link>https://protoxol.com/blog/microsoft-365-security-baseline-for-smbs.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/microsoft-365-security-baseline-for-smbs.html</guid>
      <pubDate>Thu, 22 Jan 2026 00:00:00 GMT</pubDate>
      <category>Practical Guides</category>
      <description><![CDATA[Practical guidance on microsoft 365 security baseline for smbs. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>ISO 27001 implementation roadmap for fast-moving teams</title>
      <link>https://protoxol.com/blog/iso-27001-implementation-roadmap-for-fast-moving-teams.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/iso-27001-implementation-roadmap-for-fast-moving-teams.html</guid>
      <pubDate>Mon, 19 Jan 2026 00:00:00 GMT</pubDate>
      <category>Compliance</category>
      <description><![CDATA[Practical guidance on iso 27001 implementation roadmap for fast-moving teams. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>MITRE ATT&amp;CK mapping without the theater</title>
      <link>https://protoxol.com/blog/mitre-att-ck-mapping-without-the-theater.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/mitre-att-ck-mapping-without-the-theater.html</guid>
      <pubDate>Mon, 19 Jan 2026 00:00:00 GMT</pubDate>
      <category>Practical Guides</category>
      <description><![CDATA[Practical guidance on mitre att&ck mapping without the theater. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>NIST CSF: a practical implementation guide</title>
      <link>https://protoxol.com/blog/nist-csf-a-practical-implementation-guide.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/nist-csf-a-practical-implementation-guide.html</guid>
      <pubDate>Wed, 14 Jan 2026 00:00:00 GMT</pubDate>
      <category>Compliance</category>
      <description><![CDATA[Practical guidance on nist csf: a practical implementation guide. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Secure remote work: beyond VPN</title>
      <link>https://protoxol.com/blog/secure-remote-work-beyond-vpn.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/secure-remote-work-beyond-vpn.html</guid>
      <pubDate>Sat, 10 Jan 2026 00:00:00 GMT</pubDate>
      <category>Practical Guides</category>
      <description><![CDATA[Practical guidance on secure remote work: beyond vpn. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Credential stuffing: detection signals and mitigation steps</title>
      <link>https://protoxol.com/blog/credential-stuffing-detection-signals-and-mitigation-steps.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/credential-stuffing-detection-signals-and-mitigation-steps.html</guid>
      <pubDate>Sat, 10 Jan 2026 00:00:00 GMT</pubDate>
      <category>Threat Trends</category>
      <description><![CDATA[Practical guidance on credential stuffing: detection signals and mitigation steps. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Threat modeling for product teams: fast and effective</title>
      <link>https://protoxol.com/blog/threat-modeling-for-product-teams-fast-and-effective.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/threat-modeling-for-product-teams-fast-and-effective.html</guid>
      <pubDate>Fri, 09 Jan 2026 00:00:00 GMT</pubDate>
      <category>Education</category>
      <description><![CDATA[Practical guidance on threat modeling for product teams: fast and effective. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Threat intel to detection: turning reports into rules</title>
      <link>https://protoxol.com/blog/threat-intel-to-detection-turning-reports-into-rules.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/threat-intel-to-detection-turning-reports-into-rules.html</guid>
      <pubDate>Wed, 07 Jan 2026 00:00:00 GMT</pubDate>
      <category>Recovery</category>
      <description><![CDATA[Practical guidance on threat intel to detection: turning reports into rules. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Backup strategy that survives ransomware</title>
      <link>https://protoxol.com/blog/backup-strategy-that-survives-ransomware.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/backup-strategy-that-survives-ransomware.html</guid>
      <pubDate>Wed, 07 Jan 2026 00:00:00 GMT</pubDate>
      <category>Recovery</category>
      <description><![CDATA[Practical guidance on backup strategy that survives ransomware. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>SBOMs that help: operationalizing component risk</title>
      <link>https://protoxol.com/blog/sboms-that-help-operationalizing-component-risk.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/sboms-that-help-operationalizing-component-risk.html</guid>
      <pubDate>Mon, 05 Jan 2026 00:00:00 GMT</pubDate>
      <category>Threat Trends</category>
      <description><![CDATA[Practical guidance on sboms that help: operationalizing component risk. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>How to run a post-incident review that improves security</title>
      <link>https://protoxol.com/blog/how-to-run-a-post-incident-review-that-improves-security.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/how-to-run-a-post-incident-review-that-improves-security.html</guid>
      <pubDate>Sun, 04 Jan 2026 00:00:00 GMT</pubDate>
      <category>Recovery</category>
      <description><![CDATA[Practical guidance on how to run a post-incident review that improves security. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>API security checklist for SaaS teams</title>
      <link>https://protoxol.com/blog/api-security-checklist-for-saas-teams.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/api-security-checklist-for-saas-teams.html</guid>
      <pubDate>Fri, 02 Jan 2026 00:00:00 GMT</pubDate>
      <category>Cloud &amp; Infra</category>
      <description><![CDATA[Practical guidance on api security checklist for saas teams. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Key management: KMS basics and common failures</title>
      <link>https://protoxol.com/blog/key-management-kms-basics-and-common-failures.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/key-management-kms-basics-and-common-failures.html</guid>
      <pubDate>Sat, 27 Dec 2025 00:00:00 GMT</pubDate>
      <category>Cloud &amp; Infra</category>
      <description><![CDATA[Practical guidance on key management: kms basics and common failures. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>DNS as a control plane: detecting exfiltration patterns</title>
      <link>https://protoxol.com/blog/dns-as-a-control-plane-detecting-exfiltration-patterns.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/dns-as-a-control-plane-detecting-exfiltration-patterns.html</guid>
      <pubDate>Sat, 27 Dec 2025 00:00:00 GMT</pubDate>
      <category>Threat Trends</category>
      <description><![CDATA[Practical guidance on dns as a control plane: detecting exfiltration patterns. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Okta / IdP incidents: hardening identity providers</title>
      <link>https://protoxol.com/blog/okta-idp-incidents-hardening-identity-providers.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/okta-idp-incidents-hardening-identity-providers.html</guid>
      <pubDate>Thu, 25 Dec 2025 00:00:00 GMT</pubDate>
      <category>Threat Trends</category>
      <description><![CDATA[Practical guidance on okta / idp incidents: hardening identity providers. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>SOC staffing models: 24/7 coverage without burnout</title>
      <link>https://protoxol.com/blog/soc-staffing-models-24-7-coverage-without-burnout.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/soc-staffing-models-24-7-coverage-without-burnout.html</guid>
      <pubDate>Tue, 23 Dec 2025 00:00:00 GMT</pubDate>
      <category>Education</category>
      <description><![CDATA[Practical guidance on soc staffing models: 24/7 coverage without burnout. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Password managers for enterprises: rollout plan and pitfalls</title>
      <link>https://protoxol.com/blog/password-managers-for-enterprises-rollout-plan-and-pitfalls.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/password-managers-for-enterprises-rollout-plan-and-pitfalls.html</guid>
      <pubDate>Tue, 23 Dec 2025 00:00:00 GMT</pubDate>
      <category>Practical Guides</category>
      <description><![CDATA[Practical guidance on password managers for enterprises: rollout plan and pitfalls. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Data loss prevention for modern SaaS: a pragmatic approach</title>
      <link>https://protoxol.com/blog/data-loss-prevention-for-modern-saas-a-pragmatic-approach.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/data-loss-prevention-for-modern-saas-a-pragmatic-approach.html</guid>
      <pubDate>Mon, 22 Dec 2025 00:00:00 GMT</pubDate>
      <category>Cloud &amp; Infra</category>
      <description><![CDATA[Practical guidance on data loss prevention for modern saas: a pragmatic approach. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Data sovereignty: what changes with regions and cloud</title>
      <link>https://protoxol.com/blog/data-sovereignty-what-changes-with-regions-and-cloud.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/data-sovereignty-what-changes-with-regions-and-cloud.html</guid>
      <pubDate>Thu, 18 Dec 2025 00:00:00 GMT</pubDate>
      <category>Compliance</category>
      <description><![CDATA[Practical guidance on data sovereignty: what changes with regions and cloud. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Detection engineering: writing detections that survive production</title>
      <link>https://protoxol.com/blog/detection-engineering-writing-detections-that-survive-production.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/detection-engineering-writing-detections-that-survive-production.html</guid>
      <pubDate>Thu, 18 Dec 2025 00:00:00 GMT</pubDate>
      <category>Threat Trends</category>
      <description><![CDATA[Practical guidance on detection engineering: writing detections that survive production. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>How to build an incident response retainer that actually helps</title>
      <link>https://protoxol.com/blog/how-to-build-an-incident-response-retainer-that-actually-helps.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/how-to-build-an-incident-response-retainer-that-actually-helps.html</guid>
      <pubDate>Thu, 18 Dec 2025 00:00:00 GMT</pubDate>
      <category>Practical Guides</category>
      <description><![CDATA[Practical guidance on how to build an incident response retainer that actually helps. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Browser-based attacks: modern exploit chains to watch</title>
      <link>https://protoxol.com/blog/browser-based-attacks-modern-exploit-chains-to-watch.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/browser-based-attacks-modern-exploit-chains-to-watch.html</guid>
      <pubDate>Wed, 17 Dec 2025 00:00:00 GMT</pubDate>
      <category>Threat Trends</category>
      <description><![CDATA[Practical guidance on browser-based attacks: modern exploit chains to watch. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Incident response playbook: roles, timelines, and comms</title>
      <link>https://protoxol.com/blog/incident-response-playbook-roles-timelines-and-comms.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/incident-response-playbook-roles-timelines-and-comms.html</guid>
      <pubDate>Wed, 17 Dec 2025 00:00:00 GMT</pubDate>
      <category>Practical Guides</category>
      <description><![CDATA[Practical guidance on incident response playbook: roles, timelines, and comms. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>SOC as a Service: what you get and what to ask before buying</title>
      <link>https://protoxol.com/blog/soc-as-a-service-what-you-get-and-what-to-ask-before-buying.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/soc-as-a-service-what-you-get-and-what-to-ask-before-buying.html</guid>
      <pubDate>Tue, 16 Dec 2025 00:00:00 GMT</pubDate>
      <category>Concepts Base</category>
      <description><![CDATA[Practical guidance on soc as a service: what you get and what to ask before buying. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Mobile device security for leadership (BYOD without regret)</title>
      <link>https://protoxol.com/blog/mobile-device-security-for-leadership-byod-without-regret.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/mobile-device-security-for-leadership-byod-without-regret.html</guid>
      <pubDate>Sat, 13 Dec 2025 00:00:00 GMT</pubDate>
      <category>Devices</category>
      <description><![CDATA[Practical guidance on mobile device security for leadership (byod without regret). What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Secure coding: top 10 patterns that prevent incidents</title>
      <link>https://protoxol.com/blog/secure-coding-top-10-patterns-that-prevent-incidents.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/secure-coding-top-10-patterns-that-prevent-incidents.html</guid>
      <pubDate>Mon, 08 Dec 2025 00:00:00 GMT</pubDate>
      <category>Education</category>
      <description><![CDATA[Practical guidance on secure coding: top 10 patterns that prevent incidents. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Tabletop exercises: running a cyber crisis simulation</title>
      <link>https://protoxol.com/blog/tabletop-exercises-running-a-cyber-crisis-simulation.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/tabletop-exercises-running-a-cyber-crisis-simulation.html</guid>
      <pubDate>Mon, 08 Dec 2025 00:00:00 GMT</pubDate>
      <category>Education</category>
      <description><![CDATA[Practical guidance on tabletop exercises: running a cyber crisis simulation. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>GIAC certifications: picking the right track for your domain</title>
      <link>https://protoxol.com/blog/giac-certifications-picking-the-right-track-for-your-domain.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/giac-certifications-picking-the-right-track-for-your-domain.html</guid>
      <pubDate>Sun, 07 Dec 2025 00:00:00 GMT</pubDate>
      <category>Certifications</category>
      <description><![CDATA[Practical guidance on giac certifications: picking the right track for your domain. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Threat intelligence program: what to collect and how to use it</title>
      <link>https://protoxol.com/blog/threat-intelligence-program-what-to-collect-and-how-to-use-it.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/threat-intelligence-program-what-to-collect-and-how-to-use-it.html</guid>
      <pubDate>Tue, 02 Dec 2025 00:00:00 GMT</pubDate>
      <category>Recovery</category>
      <description><![CDATA[Practical guidance on threat intelligence program: what to collect and how to use it. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Secure browser isolation: when it makes sense</title>
      <link>https://protoxol.com/blog/secure-browser-isolation-when-it-makes-sense.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/secure-browser-isolation-when-it-makes-sense.html</guid>
      <pubDate>Sun, 30 Nov 2025 00:00:00 GMT</pubDate>
      <category>Cloud &amp; Infra</category>
      <description><![CDATA[Practical guidance on secure browser isolation: when it makes sense. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Shadow IT: discovery and governance without blocking teams</title>
      <link>https://protoxol.com/blog/shadow-it-discovery-and-governance-without-blocking-teams.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/shadow-it-discovery-and-governance-without-blocking-teams.html</guid>
      <pubDate>Sun, 30 Nov 2025 00:00:00 GMT</pubDate>
      <category>Education</category>
      <description><![CDATA[Practical guidance on shadow it: discovery and governance without blocking teams. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>XSS: modern exploitation paths and defenses</title>
      <link>https://protoxol.com/blog/xss-modern-exploitation-paths-and-defenses.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/xss-modern-exploitation-paths-and-defenses.html</guid>
      <pubDate>Tue, 25 Nov 2025 00:00:00 GMT</pubDate>
      <category>Ethical Hacking</category>
      <description><![CDATA[Practical guidance on xss: modern exploitation paths and defenses. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
    <item>
      <title>Insider threat: detection signals and fair policy design</title>
      <link>https://protoxol.com/blog/insider-threat-detection-signals-and-fair-policy-design.html</link>
      <guid isPermaLink="true">https://protoxol.com/blog/insider-threat-detection-signals-and-fair-policy-design.html</guid>
      <pubDate>Mon, 24 Nov 2025 00:00:00 GMT</pubDate>
      <category>Threat Trends</category>
      <description><![CDATA[Practical guidance on insider threat: detection signals and fair policy design. What matters, how to implement it, and what to prioritize first.]]></description>
    </item>
  </channel>
</rss>