Updated May 2026.
Work
Director of Information Security at a small company. About a year into the role. Building security posture from the ground up — no inherited framework, no compliance checkbox to satisfy first. The challenge is building something that actually holds, not something that passes an audit.
Writing
Getting this site off the ground. The first piece is about version naming patterns for automated builds — a narrow topic with a wider argument underneath it about who owns decisions in a delivery pipeline.
Making
Leather goods under the Heritage Trail Leathercraft name. Wallets, small goods, tooled work. Figuring out what the product line actually looks like.
Reading
Nothing specific to note right now.
I’m on Mastodon at infosec.exchange/@trevoroke.