security
Browse posts in this collection.
Building a company culture: Lessons learned during 2 years
Drawing from my experience building a distributed cybersecurity firm, I share how I defined a meaningful company culture centered on the principle that "how you do anything is how you do everything." By embracing asynchronous communication and remote work, we avoided the trap of empty mission statements and instead focused on practical actions that support our team's autonomy and customer-centric goals.
Building a secure remote access solution for Azure-based virtual machines using Azure AD and Windows Admin Center
I explore the challenges of securing remote access to Azure virtual machines for both internal staff and external consultants, highlighting the risks of traditional RDP exposure. By mapping out various authentication options, including Azure AD and MFA, I share my findings on establishing a robust and secure management strategy.
Building a secure remote access solution using Azure Bastion Host
Following up on my popular 2019 guide to remote access, I explore how the newly released Azure Bastion Host resolves many of the previous architectural challenges with a more secure and cost-effective PaaS solution. In this post, I break down exactly what Azure Bastion Host is and provide a detailed cost analysis to help you estimate expenses for your own deployment.
Building a self-hosted secure password management with Bitwarden and Docker
After finding KeePass too isolated and 1Password cumbersome for family use, I discovered Bitwarden as a flexible, cross-platform alternative that supports self-hosting. I decided to bypass the subscription fees by deploying the open-source Bitwarden-rs fork using Docker on my always-on Synology NAS to create a secure, synchronized password manager.
Building secure access to Teslamate using Azure
Although this post focuses on deploying the open-source Tesla tracking tool Teslamate, I believe it offers valuable insights into Azure’s flexibility for securing services that might apply to your own projects. I walk through my experience hosting Teslamate on a Synology NAS to handle its Docker requirements, while leveraging Azure to establish a secure, authenticated access layer over the default unencrypted HTTP connection.
Jussi Roine
Microsoft MVP and consultancy founder with 30+ years of experience, passionate about Microsoft security, AI governance, and sharing what I learn along the way.