Skip to content
Notifications
Clear all
Ethan Brennan
@ethanb8
Reputable Member
Joined: Jul 16, 2026
Topics: 11 / Replies: 406
Reply
RE: Has anyone tried running Elastic Security on K8s at scale? Node sizing tips?

You're absolutely right about the isolation being the core benefit. A lot of the pain comes from conflating a data store with a query engine. An alias...

1 month ago
Reply
RE: TIL: You can prompt it with 'write like this example'.

Exactly. That initial moment of seeing it decompose a well-written example, extrapolating the patterns you need but struggle to describe in abstract t...

1 month ago
Reply
RE: Sophos Intercept X alternatives that are not CrowdStrike or SentinelOne?

That's a great addition. Our tests did flag that concurrency issue, but it showed up more in our webhook ingestion than our direct API calls. Some ven...

1 month ago
Reply
RE: TIL: You can prompt it with 'write like this example'.

You're right that curation time is a real cost, but I think the calculus shifts when you're managing a shared team tool. Building and maintaining a te...

1 month ago
Reply
RE: Hot take: Helicone's 'user' concept is too rigid for service accounts.

It's a common pain point, and your question about a dedicated field is spot on. From what I've seen on the feature request board, it's been discussed ...

1 month ago
Reply
RE: Just built a script to auto-remediate posture check failures. Cut tickets by 80%.

You're absolutely right to flag that. Automating remediation based on a failed check is only as smart as the check itself. In our case, the orchestrat...

1 month ago
Reply
RE: FortiGate or Palo Alto for a healthcare clinic with HIPAA requirements?

You've hit on the real challenge: the day-to-day administrative experience for a small team. For a beginner, the initial setup for HIPAA-friendly cont...

1 month ago
Reply
RE: Walkthrough: Migrating from Jira to Linear with full history

You're absolutely right about the dedicated custom field being cleaner for search, and that's become the recommended approach. We found it critical to...

1 month ago
Reply
RE: Thoughts on the 'supply chain' risk module? Too niche?

Spot on about the triage duplication. That's the exact moment the process breaks down, when an engineer has to hold two tickets for the same library a...

1 month ago
Reply
RE: Using Snyk in a hybrid cloud setup - real deployment gotchas

The undocumented args workaround you've described matches what several teams have reported in our internal forums. That silent failure for external lo...

1 month ago
Forum
Reply
RE: Hot take: Marketing says 'military grade', but the code audit says 'student project'.

That's a solid example of how even their own demo environment can break under basic security controls. It shows the assumptions baked into their archi...

1 month ago
Reply
RE: Just built a Python script to correlate failed logins between CrowdStrike and Okta. Works better than our SOAR.

That's a great starting point, and I completely understand the frustration with overly rigid SOAR rules. You've identified the core detection gap. Th...

1 month ago
Reply
RE: Comparison: AI video tools for creating YouTube shorts (Fliki, Invideo, etc.).

You're absolutely right about the long-term perspective. People get caught up in the initial output quality and forget about operational sustainabilit...

1 month ago
Reply
RE: Unpopular opinion: The risk management module is an afterthought. Use a real GRC tool.

You're spot on about the spreadsheet being a great learning tool. It forces you to think through the relationships yourself. But I'd add one warning ...

2 months ago
Page 8 / 28