Zero Trust in Practice: Lessons from UK Public Sector Cloud Migrations

The Shift from Perimeter Thinking to Perpetual Verification For years, organisations — particularly in the UK public sector — relied on a simple security model: build a wall, keep the bad actors out, and trust everyone inside. That model is now borderline dead. In 2026, Zero Trust isn’t a buzzword or an aspiration. It’s the […]
AI-Powered Threats Meet AI-Powered Defence: Securing Your Cloud in the Age of Agentic AI

The Arms Race Has Gone Autonomous Cybersecurity has always been an arms race. Defenders build walls; attackers find ways around them. What’s changed now is the speed at which both sides operate — and the fact that neither side is waiting for a human to make the next move. Artificial intelligence has fundamentally altered the […]
GovAssure, Cyber Essentials Plus & CloudCompliance: A 2026 Readiness Guide

Compliance Is Moving Faster Than Most Organisations Can Keep Up If you work in UK public sector IT, 2026 feels like a year where the compliance ground is shifting under your feet. GovAssure assessments are maturing and expanding in scope. Cyber Essentials Plus remains a procurement baseline but is being applied with increasing rigour. The […]
DevSecOps in 2026: Why Embedding Security Into Your Pipeline Is No Longer Optional

DevSecOps in 2026: Why Embedding Security Into Your Pipeline Is No Longer Optional The End of Bolted-On Security For years, security was the stage gate at the end of a delivery pipeline, a manual review, a penetration test, a sign-off meeting that happened weeks after code was written. Developers built. Security teams reviewed. And the […]
Non-Human Identities: The 100-to-1 Risk Your Cloud Team Isn’t Managing

The Identity Problem Nobody’s Talking About Ask any cloud security team what keeps them up at night and they’ll mention ransomware, misconfigurations, or phishing. Very few will mention the service principal that was created eighteen months ago, has administrator-level access to your production AWS account, and hasn’t been rotated since. They should. In 2026, the […]
Why Sovereign Cloud Is Now a Strategic Priority for European Organisations

In 2026, “the cloud” is no longer just about where your data sits; it is about who has the keys to the room and which laws apply when someone knocks on the door. For European organisations, Digital Sovereignty has moved from a compliance “checkbox” to a core strategic pillar. At Mobilise Cloud, we are seeing […]
2026: The Upcoming year for the UK public sector and cybersecurity

The year 2026 marks a definitive inflection point for the United Kingdom’s public sector. We have moved beyond the era of aspirational digital transformation and entered a period of operational consolidation and rigorous accountability. With the enforcement of the GovAssure compliance regime and the publication of the Government Cyber Action Plan, the days of “self-assessment” […]
The End of an Era: NGINX Ingress is Retiring. What’s next for keeping your Clusters ingress secure?

In a seismic shift for the cloud-native community, the Kubernetes project maintainers group has announced it is officially retiring the ubiquitous Ingress NGINX controller. A recent article from The Register confirms the news that has been rumoured for months: maintenance for the project will cease, and it will be fully retired by March 2026. For […]
Becoming an IAM Ninja with a little help from AWS

Imagine the scene, your company has decided to move to AWS and already created a load of resources in the new environment. When all of a sudden, they are now worried about the security of these resources and the access they might have. The CSO tasks you with refining and creating new IAM policies. You’re […]
Cloud Security 2019: The review and 2020 trends

Last year I wrote a blog on what security measures you should take for the cloud in 2019. Now I’m here to review if I am a CloudSec soothsayer, or if I was wide of the mark. Let’s see how I did! The Security Measures 2019 Review Don’t Presume the CSP will take full care […]