Skip to content

JOURNALEngineering notes

Field notes from the build

Field notes on cloud-native platforms, security, and shipping intelligent software — from the Cursopic engineering team.

  • cloud
  • finops
  • cost
  • platform-engineering

The Two-Week Cloud Cost Audit: A FinOps Playbook for Growing Teams

Most cloud bills carry 20-30% recoverable waste. Here is the two-week audit we run to find it — without a reliability trade-off or a migration.

4 min read
Read the post
  • ai
  • rag
  • llm
  • b2b-saas
  • product-engineering

RAG Architecture for B2B SaaS Products: What Engineering Teams Get Wrong in Production

Production RAG for B2B SaaS fails on domain language, multi-tenant isolation, and missing eval loops. Here is what the engineering actually requires.

8 min read
  • security
  • devops
  • ci-cd
  • sast
  • sbom
  • devsecops

Secure SDLC Pipeline Guide: Baking Security Into Every Stage of CI/CD

A practical guide to building a secure software development lifecycle pipeline with SAST, DAST, SCA, SBOM, secrets scanning, and policy gates.

9 min read
  • engineering-leadership
  • consultancy
  • hiring
  • cto

Staff Augmentation, Fractional CTO or Consultancy: Choosing the Right External Engineering Model

Staff aug, fractional CTO, or consultancy — three models with different failure modes. A decision framework to tell you which your team needs now.

7 min read
  • cloud
  • platform-engineering

Cloud-native platforms without the rewrite

Most platforms get rewritten because the first version optimized for the wrong thing. Here is how to build one that scales from prototype to production.

3 min read
  • cloud
  • kubernetes
  • platform-engineering
  • cost

Kubernetes Cost Optimisation for Startups: Cut Cloud Spend Without Touching Reliability

Most Kubernetes clusters run at under 40% utilisation. Here is how to cut cloud spend without trading away reliability — three levers, one framework.

7 min read
  • security
  • zero-trust

Zero-trust for startups: a pragmatic security baseline

Zero-trust is not a product you buy or a project that ends. For a small team, it is a set of defaults you can adopt this quarter. Here is where to start.

2 min read
  • ai
  • llm
  • observability

Shipping LLM features that survive production

A demo that works once is easy. An LLM feature that works for thousands of real users is an engineering problem. Here is the discipline that gets you there.

2 min read