Updated May 2026.

Work

Director of Information Security at a small company. About a year into the role. Building security posture from the ground up — no inherited framework, no compliance checkbox to satisfy first. The challenge is building something that actually holds, not something that passes an audit.

Writing

Getting this site off the ground. The first piece is about version naming patterns for automated builds — a narrow topic with a wider argument underneath it about who owns decisions in a delivery pipeline.

Making

Leather goods under the Heritage Trail Leathercraft name. Wallets, small goods, tooled work. Figuring out what the product line actually looks like.

Reading

Nothing specific to note right now.


I’m on Mastodon at infosec.exchange/@trevoroke.