
  <rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
    <channel>
      <title>Mansour Jalaly — Security Engineering</title>
      <link>https://jalaly.com/blog</link>
      <description>Mansour Jalaly is a London-based security engineer specialising in detection engineering, cloud security, incident response, and threat intelligence. CISSP and GSEC certified, with experience across Oracle and S-RM.</description>
      <language>en-gb</language>
      <managingEditor>mansour@jalaly.com (Mansour Jalaly)</managingEditor>
      <webMaster>mansour@jalaly.com (Mansour Jalaly)</webMaster>
      <lastBuildDate>Fri, 14 Nov 2025 00:00:00 GMT</lastBuildDate>
      <atom:link href="https://jalaly.com/tags/mitre-attck/feed.xml" rel="self" type="application/rss+xml"/>
      
  <item>
    <guid>https://jalaly.com/blog/detection-as-code</guid>
    <title>Detection as Code: Treating Your Rules Like Software</title>
    <link>https://jalaly.com/blog/detection-as-code</link>
    <description>Version control, CI testing, and ATT&amp;CK coverage mapping turned a folder of SIEM rules into an engineering discipline. What changed, what it cost, and what I would do differently.</description>
    <pubDate>Fri, 14 Nov 2025 00:00:00 GMT</pubDate>
    <author>mansour@jalaly.com (Mansour Jalaly)</author>
    <category>Detection Engineering</category><category>Detection as Code</category><category>Sigma</category><category>MITRE ATT&CK</category><category>CI/CD</category>
  </item>

    </channel>
  </rss>
