Enforcing Pod Security on AKS with Azure Policy and OPA Gatekeeper

Detecting insecure pods on Azure Kubernetes Service is not the same as preventing them. Here is how Azure Policy and OPA Gatekeeper move enforcement to admission time, so a misconfigured workload never reaches the cluster.

June 8, 2026 · 3 min · Yogesh Thanvi

Engineering Trust: Building Systems That Prove Compliance Continuously

In cloud-native and AI-driven systems, compliance can no longer be a periodic activity. It has to be continuously demonstrated. Here is the architecture for engineering that trust.

June 8, 2026 · 6 min · Yogesh Thanvi

From Detection to Enforcement: Making CSPM Actually Stop Misconfigurations

Most Cloud Security Posture Management tools detect misconfigurations and stop there. Detection without enforcement leaves the exposure in place. Here is what changes when policy-as-code blocks and remediates at admission time.

June 8, 2026 · 3 min · Yogesh Thanvi