Writing
Blog
Analysis, argument and technical writing from the people doing the work. The monthly regional threat brief lives on the intelligence page; this is everything else.

Board accountability: cybersecurity is governance, not IT
Cybersecurity should not be treated as only an IT function. It is a governance issue that requires active board oversight, accountability, and strategic leadership. Strong board involvement helps organizations manage cyber risk, strengthen resilience, and protect business continuity, reputation, and stakeholder trust.

Why Cybersecurity Awareness Training Matters
Cybersecurity awareness training is essential because employees are often the first line of defense against cyber threats. It helps them recognize risks such as phishing and social engineering, handle sensitive data responsibly, and follow proper security practices. Training also supports regulatory compliance and improves early detection of incidents. Overall, it fosters a culture of shared responsibility, reducing human error and strengthening an organization’s ability to prevent and respond to cyber risks.

The State of Social Engineering in Cybersecurity
The cybersecurity landscape has witnessed a dramatic transformation in social engineering attacks from 2024 to 2025, characterized by unprecedented growth in AI-powered threats and a fundamental shift in attack methodologies.

5 Overlooked Cloud Security Gaps and How Seraph Cyber Can Fix Them
Cloud adoption has accelerated dramatically across Kenya's business landscape, but security measures often lag behind. While organizations focus on obvious vulnerabilities, critical security gaps remain hidden.

Beyond the Firewall: The 5 Core CISO Priorities for East Africa's 2025 Threat Landscape
The digital success of East Africa has created a perfect storm. As nations like Kenya, Uganda, Tanzania, Rwanda, and Ethiopia become leading technology and financial hubs, they are now prime targets.

Kenya Under Cyberattack: Unpacking Today's Government Website Breaches
Nairobi, Kenya – November 17, 2025. Today, Kenya woke up to a stark reminder of the ever-present dangers in the digital age. A coordinated cyberattack sent shockwaves through the nation.

Why Buying More Software Won't Save You from a Cyberattack
If you ask the average person to visualize "cybersecurity," they usually picture a guy in a hoodie sitting in a dark basement, furiously typing green code onto a black screen. It's a cinematic image, but it misses the point entirely.

Hospitals Under Pressure: Preparing Healthcare Systems for the 2026 Cyber Threat Landscape
As healthcare systems become more digital, the margin for failure increasingly depends on technology rather than clinical skill alone.

Cyber Risks CEOs and Boards Should Worry about this Quarter
For many years, cybersecurity was treated as a technical matter delegated to IT departments and external vendors. That assumption no longer holds. Today, cyber risk has become a material governance issue with direct implications for strategy, financial performance, regulatory exposure, and organizational continuity.
Also from us
The regional threat brief is a monthly periodical built from the live vulnerability catalogue — a different thing from the writing here, and published separately.
Read the intelligence page