Section

Remediation

Investigation, prioritization, remediation, validation and prevention.

Remediation

Where the weeks disappear: The anatomy of a 150-day cloud remediation cycle

Cloud security leads often face a 100-day MTTR for critical findings despite having top-tier detection. Here is how ownership gaps and production fear stall the remediation lifecycle.

Dana Mercer  -  August 19, 2026 · 6 min
Remediation

Detection got 10x faster. Your fix rate did not move

Detection tools now generate alerts faster than engineering teams can close them, creating a permanent backlog of security debt.

Dana Mercer  -  August 3, 2026 · 6 min
Remediation

10,000 open Wiz findings: the triage order that clears them

A backlog of 10,000 cloud security findings represents 5,000 hours of manual work. Here is how small teams can move from reactive triage to a closed-loop remediation model.

Dana Mercer  -  July 29, 2026 · 6 min
Remediation

The fix takes 20 minutes. The change ticket takes 11 days

The technical solution to a cloud misconfiguration is often a single line of code, yet critical risks frequently persist for over 90 days due to operational friction.

Dana Mercer  -  June 28, 2026 · 6 min
Remediation

A 12-month backlog will not clear by severity. Try this order instead

A cloud security backlog older than 12 months is a data integrity problem, not just a list of risks. Clearing it requires a shift from severity scores to reachability analysis and managed closure.

Dana Mercer  -  June 19, 2026 · 6 min
Remediation

How to fix Wiz findings without taking production down

Fixing a high-risk Wiz finding in production requires a structured approach to identifying owners, analyzing blast radius, and synchronizing changes with Infrastructure as Code.

Dana Mercer  -  June 14, 2026 · 7 min
Remediation

Stale tags push your exposure window to 9 months. Nobody notices

Nine month exposure windows for vulnerabilities are persisting because security teams cannot identify the functional owners of assets or verify if fixes will break production.

Dana Mercer  -  June 9, 2026 · 7 min
Remediation

How to clear a five-figure cloud backlog in 90 days, week by week

Inheriting a cloud security program often means managing a debt of 10,000 or more findings. This 90-day framework moves beyond detection to establish a functional remediation pipeline.

Dana Mercer  -  June 7, 2026 · 6 min
Remediation

Your CNAPP found the hole. Somebody still has to dig

Fixing the 20% of cloud security risks that break production requires more than a 'fix' button.

Dana Mercer  -  May 28, 2026 · 8 min
Remediation

The 5 Kubernetes misconfigurations worth fixing this quarter

Kubernetes security failure is rarely a detection problem. Focus your remediation capacity on these five misconfigurations to reduce the attack surface without breaking production.

Dana Mercer  -  May 26, 2026 · 7 min
Operator Briefing

The week in cloud remediation, once a week

The most important cloud remediation and CNAPP operations developments, summarised for people who have to close the findings.

We use your email for this publication only. Unsubscribe at any time. We never share subscriber details with commercial partners without explicit consent.