Skip to main content
Cloud & DevOps Insights

Practical Infrastructure Guidance

Short, focused articles on cloud architecture, DevOps, and observability—no fluff, no theory without code.

DevOps

GitOps in Production: Lessons from 12 Months of ArgoCD

GitOps promises a single source of truth for deployments. After running ArgoCD in production across multiple clusters, here's what worked, what broke, and what we'd do differently.

8 min read·April 7, 2026
FinOps

The Hidden Costs of Kubernetes: What Your Cloud Bill Isn't Telling You

Running Kubernetes can save money at scale—or silently drain your budget. This post walks through the top cost leaks we find in EKS and AKS clusters and how to close them.

7 min read·March 28, 2026
Security

Shifting Left on Security: A Practical DevSecOps Checklist

Security tooling is cheap; building a culture where engineers care about security outputs is not. Here's the checklist we use when embedding security into a new CI/CD pipeline.

5 min read·March 17, 2026
Observability

OpenTelemetry Is Ready for Production — Here's How to Start

The OTel ecosystem has matured rapidly. We walk through an opinionated setup for traces, metrics, and logs using the OTel Collector, Tempo, Loki, and Grafana.

10 min read·March 5, 2026
Infrastructure as Code

Terraform State Management at Scale: Patterns That Actually Work

Remote state, workspaces, and module versioning each solve a different problem. We share the patterns we've settled on after managing Terraform at scale across dozens of AWS and Azure accounts.

9 min read·February 19, 2026
Cloud Architecture

Blue-Green vs Canary Deployments: Choosing the Right Strategy

Zero-downtime deployments are non-negotiable, but the right strategy depends on your traffic profile, rollback requirements, and team maturity. Here's how we decide.

6 min read·February 4, 2026
DevOps

Platform Engineering vs DevOps: Is There a Real Difference?

Platform engineering is having a moment. We look at what actually distinguishes a platform team from a mature DevOps practice, and whether the distinction matters for your organisation.

5 min read·January 22, 2026
Security

Least Privilege in AWS: Why It's Harder Than It Sounds

IAM least privilege is a well-understood principle but a poorly-executed one. We cover the common pitfalls—wildcard actions, resource-level drift, and cross-account trust—and how to fix them systematically.

7 min read·January 9, 2026

Infrastructure Insights, Delivered

Get practical infrastructure and DevOps insights delivered to your inbox. No fluff.