Skip to main content

Posts

The Hidden Cost of Solving Small Problems with Small Tools

Having worked for several companies over the years, one thing continues to surprise me: how often the same small operational problems come back. Different company, different industry, different people, different IT landscape, but remarkably similar frustrations . These are rarely the big problems that make it onto a strategic roadmap . They are usually too small for that. None of these problems sounds particularly difficult to solve. And that is exactly why they often remain unsolved . Individually, they rarely justify a major software project or significant budget. Collectively, however, they consume a surprising amount of time. A very typical example is time tracking . Many companies need employees to register time, but requirements often differ between departments, projects and types of employees. Another is expense management , where employees still regularly struggle with paying something on behalf of the company and getting reimbursed afterwards. The same applies to subsc...
Recent posts

Brainstorming Without Borders: Making Creativity Work Remotely

  Companies have become increasingly international, distributed and remote . Sometimes this is the result of expansion or acquisitions, creating organizations with offices spread across countries and continents. Sometimes it is simply the consequence of changing employee expectations: people want to work from home, avoid long commutes and have more flexibility in where they live. And increasingly, companies deliberately recruit internationally to access scarce skills, broader talent pools, competitive labor markets, local customer presence and language expertise . The traditional assumption that the best team is one sitting together in the same building is rapidly disappearing. Technology has made much of this transition surprisingly natural. Tools such as Slack and Microsoft Teams have made remote communication part of everyday work, while platforms such as SharePoint, Confluence and Notion allow teams to collaborate on information and documents. JIRA, Asana and Trello hel...

MVP or State of the Art? When Is “Good Enough” Good Enough?

  When starting a new product , there is always a difficult question: how much should you build from the start? On one side, there is the MVP philosophy . Build only what you need, get it in front of customers, learn from their feedback and improve from there. Don’t spend months solving scalability problems for a product that might never have a scalability problem. Don’t automate processes before you even know whether those processes are the right ones. And don’t build a perfect architecture around requirements that will probably change anyway. On the other side, there is an equally convincing argument. If you already know something will eventually need to be automated , why build it manually first? If you know you will need APIs, scalability, proper monitoring and high availability, why postpone them? Doing the work twice is rarely cheaper than doing it properly once. Even worse, changing something later can become very difficult once customers are using it and depend on t...

Security Patching Is Becoming a Competitive Advantage

  Over the past decade, application security has changed dramatically. Yet the biggest shift is not that software has suddenly become less secure . The real change is that discovering vulnerabilities has become much easier , while fixing and distributing those fixes has become significantly harder . For software vendors, the bottleneck is no longer finding security issues. It is maintaining secure software throughout the entire lifecycle of a product. Not that long ago, finding vulnerabilities was largely a manual exercise. Internal penetration tests, customer security assessments and occasional code reviews uncovered issues that developers would then address before the next release. Today, vulnerability discovery is continuous and increasingly automated . Static Application Security Testing (SAST) tools such as SonarQube analyze every build for insecure coding patterns. Dynamic Application Security Testing (DAST) has become a standard part of many security programs, both int...