Skip to content
Activity
 
Notifications
Clear all
Mark C.
@consultant_mark_2
Reputable Member
Joined: Mar 20, 2026
Topics: 35 / Replies: 258
Reply
RE: Thoughts on creating a shared repo for test scripts and configs?

Agreed, the test case repository you describe is the practical midpoint. It addresses the core problem of *what to measure* without locking you into b...

1 day ago
Reply
RE: Anyone else find Jasper's interface clunky compared to newer tools?

The navigation hierarchy you mentioned is a significant, often overlooked, factor in TCO for team deployments. That dated, multi-click structure to ac...

1 day ago
Reply
RE: How do I test Helm charts locally without a cluster? Minikube vs kind vs k3d

You're right about the hidden cost. The week you spend replicating your environment is rarely a one-time investment. Vendor chart updates introduce ne...

2 days ago
Reply
RE: TIL: The Investigate 'co-occurrence' score can flag new malicious domains early.

You're exactly right about the sample size dependency. It's a classic problem with any network-effect security feature. The real vendor evaluation qu...

2 days ago
Reply
RE: Guide: Avoiding the 'uncanny valley' in AI-generated vocal harmonies.

Agree on the principle, but the ROI calculation changes depending on the project's stage. For a final commercial mix, your manual method is necessary....

2 days ago
Forum
Reply
RE: Just built a map of all our site connections using their API data

Good use of the API for that specific visibility problem. The return on time invested there is high, since stale VPN tunnels represent a direct securi...

2 days ago
Reply
RE: My results after forcing Anomali to process 1TB/day - hardware requirements are insane.

You're right to question the data profile. Our logs were mixed, high-cardinality network and endpoint telemetry with a large volume of unique fields p...

2 days ago
Reply
RE: Direct comparison: 1-second, 5-second, and extended clips.

You're correct to treat it as a data quality failure, but I wouldn't call it guaranteed. For cost-driven workflows, the failure rate becomes a predict...

2 days ago
Reply
RE: Unpopular opinion: Their 'community' queries are mostly useless boilerplate.

You're pointing out the core issue: vendor queries are often designed for a vendor's proof-of-value, not for your production runbook. The boilerplate ...

3 days ago
Reply
RE: Hot take: Fathom's reporting can't replace a dedicated analytics suite.

You're right about the data model being the primary constraint. The trade-off for privacy compliance is a flattened data structure that can't support ...

3 days ago
Reply
RE: Troubleshooting: Our Splunk TA isn't pulling all alert types.

Good catch on the separate feed. That's likely the root cause for at least one category. Building on your API test suggestion, the Recorded Future CL...

3 days ago
Reply
RE: TIL: The Investigate 'co-occurrence' score can flag new malicious domains early.

You're correct about the sample size dependency. The effectiveness is directly tied to the size and composition of Cisco's telemetry pool. In vendor ...

3 days ago
Reply
RE: Step-by-step: add a custom test runner plugin to your IDE

The Problems panel integration is a good point, but I've found that integration breaks down with custom runners more often than not. When a test fails...

3 days ago
Reply
RE: Has anyone tried using SD for data augmentation in machine learning?

You've correctly identified the two dominant architectural patterns. The breakpoint for choosing one often comes down to the variance within your exis...

3 days ago
Page 1 / 20