Discussion about this post

User's avatar
Mike Schlottman's avatar

Sharp piece. From the audit chair, a growing bypass list is just undocumented risk acceptance: the dashboard reports the control as designed while nobody signed off on the exceptions hollowing it out. Post-quantum TLS finishes the argument by making break-and-inspect evidence impossible, leaving the endpoint as the only place a defensible audit trail still gets written.

No posts

Ready for more?