Josh Lee
banner
itsjoshlee.bsky.social
Josh Lee
@itsjoshlee.bsky.social
Fullstack Software|AI|Cloud|Cybersecurity|Tacos
Ruby, React, & AWS + Tools like LangChain, Ollama, PyTorch to Build Secure, Compliant & Cost-Effective Software
Here’s a tough one...

I once asked a team if their RDS backups were encrypted. They assumed AWS handled it automatically.
They were wrong.

(1/2)

#S3 #RDS #aws #CloudSecurity #tls #http #datasecurity #cybersecurity
November 3, 2025 at 3:52 PM
Using AI tools in the legal field can be a good productive booster... if done right. If not used correctly, you could send your clients' data where you shouldn't - where you have not control of what happens to it later.

#AI #DataSecurity #LawFirms #Cybersecurity #ABA #AmericanBarAssociation
How Law Firms Can Use AI Without Violating ABA Confidentiality Rules Safely and Securely
Using AI in your law firm can really boost efficiency. But let’s be honest, it also brings up some serious confidentiality headaches under…
medium.com
October 27, 2025 at 7:57 PM
Lawyers know how important it is to protect their clients' data. But when you're working with the cloud, there are some additional considerations you need to think about it

#Cloud #CloudSecurity #DataSecurity #LawFirms #Cybersecurity #InformationSecurity #IAM #ABA #MFA #VPNs #AmericanBarAssociation
The #1 Cloud Security Mistake Law Firms Make: Not Protecting Client Data
Lots of law firms are shifting client data into the cloud. They’re hoping for better efficiency and lower costs.
medium.com
October 23, 2025 at 7:05 PM
In you're in legal and interested about "the cloud" it could seem pretty daunting from a security perspective... But knowing just some of the basics can make you much more confident when making decisions - or even just talking about the technology you're using.
#legaltech #cloud #datasecurity
Designing a Cloud Risk Management Program That Keeps Law Firms Compliant and Clients Confident With…
Moving your law firm to the cloud opens a ton of doors, but let’s be real — it also brings new risks you can’t ignore. It’s not just about…
medium.com
October 22, 2025 at 5:16 PM
A client once left SSH wide open on their servers because “we just needed quick access.”

Within weeks, their logs showed thousands of random connection attempts from around the world.

Uh. don't do that! lol

#SSH #SecureShell #IP #IPs #VPN #InternetProtocol #Cybersecurity #InformationSecurity #GRC
October 21, 2025 at 7:24 PM
AI governance doesn't sound as exciting as building products with AI, but it's still important. And extra important if you're working with legal data.

#AI #ArtificialIntelligence #LawFirms #DataSecurity #cybersecurity
AI Governance in Law Firms: Proactive Compliance Strategies to Stay Ahead of Regulatory…
If law firms just wait around for regulators to set AI rules, they’re going to end up scrambling. The EU AI Act and changing UK regulations…
medium.com
October 20, 2025 at 7:25 PM
Putting together a tutorial series using React, Ruby on Rails, and AWS to create a fullstack application. Part one is here =>
youtu.be/fNOhEjJ73R8?...

#rubyonrails #react #javascript #AWS #amazonwebservices #clouds #coding #softwareengineering #codetutorial #railsapi
Ruby on Rails API & CRUD - React on Rails on AWS - Part 1
YouTube video by Josh Lee
youtu.be
October 16, 2025 at 2:57 PM
If you're in the legal field, I'm sure you've heard about lawyers using AI. But how exactly are they using it? Here's what I've discovered from talking to other peers in the legal field.

#AI #ArtificialIntelligence #LawFirms #ROI #ReturnOnInvestment
Practical AI Use Cases That Are Actually Transforming Law Firms With Real Examples and Measurable…
If you work in a law firm, you’ve probably heard a ton about AI lately. But let’s be honest — sometimes it’s hard to tell which tools are…
medium.com
October 15, 2025 at 2:12 PM
Making sure client data is safe is incredibly important - especially in the legal field. And working with AI and the cloud comes with their own challenges when it comes to keeping clients' data safe

#AI #ArtificialIntelligence #cloud #LegalField #Attorney #CloudSecurity #DataSecurity #Cybersecurity
AI and Attorney-Client Privilege: Hidden Cloud Risks and How to Keep Confidentiality Safe
When you use AI platforms in legal work, you might not realize how easily your confidential attorney-client communications could be…
medium.com
October 13, 2025 at 6:21 PM
Did you know that Chinese translation for computer is electric 電 brain 腦 ?

(1/2)
#code #Ruby #software #coding #BrainRAM #RAM #RandomAccessMemory #WriteSoftware #WriteCode
How to Use Your “Brain RAM” to Write Better Software
Short term memory is a lot like computer RAM. Here’s why that’s important to writing good software…
heyjoshlee.medium.com
October 10, 2025 at 6:08 PM
Writing AI software is one thing. Making sure you can deploy changes quickly and making sure your software is scaleable is another. Learning MLOps correctly will help you scale your application.

#MLOps #AI #ArtificialIntelligence #MachineLearningOperations #MachineLearning
MLOps — What It Is and Why It Matters for Companies Leading with AI
MLOps, or Machine Learning Operations, is a bunch of practices that help you manage every step of a machine learning model’s life. We’re…
medium.com
October 10, 2025 at 2:34 PM
LLMs like ChatGPT can seem like magic if you don't know how they work behind the scenes. You just input something and get something back right?
Even if you don't understand the code, it's useful to know how they work.
#AI #ArtificialIntelligence #ChatGPT #LLMs #LargeLanguageModel #Lawyers #LLM
Exposing the Magic of Large Language Models Like ChatGPT Explained Simply for CEOs and Lawyers
Large Language Models, or LLMs, are computer programs that can understand and create text that sounds like it came from a real person…
medium.com
October 9, 2025 at 3:08 PM
When using the cloud, like AWS, you have certain responbilites. And when you’re dealing with highly sensitive information like legal data, you MUST know these. Here’s what you need to know.

#Cloud #LegalTech #CloudSecurity #DataSecurity #LegalFirms #ColdTechnology #CloudComputing #CyberSecurity
What Legal Firms Need to Know About the Cloud: Friendly Tips for Using Cloud Technology in Your…
Lots of legal firms are jumping onto the cloud these days to streamline how they work. With cloud tech, you can grab your files from…
medium.com
October 8, 2025 at 2:33 PM
AI is taking over the world - it's being used in every profession.

A lot of lawyers I talk to are pretty hesitant about using AI - and I totally get it - the law is something you don't want to make mistakes with.

(1/2)
#AI #ArtificialIntelligence #AilnTheLegalIndustry #AiInLegalField #Legalfield
How AI Is Disrupting The Legal Field Changing Past Practices and Shaping the Future
Before AI came along, legal work was slow and mostly manual. Lawyers spent hours digging through documents, researching cases, and drafting…
heyjoshlee.medium.com
October 7, 2025 at 5:22 PM
You probably forgot about GDPR. It was a huge deal when it was introduced, but chances are you've forgotten about it. Here's what you need to know in 2025.
#GDPR #GDPRCompliance #AI #cloud #Cybersecurity #datasecurity #SoftwareSecurity
GDPR in 2025 — Why It Still Matters and How to Stay Updated
Remember when GDPR first landed? Everyone was scrambling to check boxes and avoid trouble. Fast forward, and it feels like a lot of…
medium.com
October 6, 2025 at 7:21 PM
Leaving SSH wide can mean connection attempts from around the world.
Lock your security groups down to trusted IPs, use a VPN for remote access, and run regular audits. The internet doesn’t need a spare key to your servers.
#SSH #VPN #IP #cybersecurity #softwaresecurity
October 4, 2025 at 3:16 AM
One of the most important things about cybersecurity is about knowing what's happening with your systems. But you can't spend all day logging in and checking all your different reporting systems.
That's why you use an SIEM. And here's how to pick one to use
#SIEM #Cloud #CloudSecurity #cybersecurity
Here’s how to pick a SIEM: Cloud-focused tools, uses, and pros/cons from my experience
Picking the right SIEM tool can feel overwhelming. There are just so many options, especially if you’re working in the cloud.
heyjoshlee.medium.com
October 3, 2025 at 7:01 PM
Start with the least access possible, add only what’s needed, and enforce MFA. IAM Access Analyzer can even show you which permissions are overkill.
Small changes here can stop big headaches later.
#AWS #IAM #Azure #Cloud #CloudSecurity #DataSecurity #AWSSecurity #AzureSecurity #cybersecurity #MFA
October 3, 2025 at 2:35 PM
It’s way too easy to leave an S3 bucket open to the world.
I’ve seen companies leak thousands of files because of one wrong setting.
Quick fix: block public access by default, scan your buckets, and only open them up if you really mean to.

#s3 #cloud #datasecurity #softwaresecurity #cybersecurity
October 2, 2025 at 6:53 PM
Does your cloud have financial data? If so, SOX compliance is a must.

If you choose to ignore compliance - especially in the financial space - it could be the worst business decision you'll ever make.

#SOXCompliance #CloudComplince #Cloud #DataSecurity #Cybersecurity #SoftwareSecurity
What Is SOX Compliance and How to Make Sure You’re Cloud Compliant
SOX compliance is all about following the rules from the Sarbanes-Oxley Act to keep your financial data accurate and locked down. This law…
heyjoshlee.medium.com
October 2, 2025 at 3:12 PM
Still using your AWS root account for everyday stuff?
That’s a disaster waiting to happen.
Set up an admin IAM user, lock the root creds away, and throw MFA on top.
Use the root account once, then leave it alone.

#aws #iam #cloud #cloudsecurity #datasecurity #cybersecurity #softwaresecurity
October 1, 2025 at 5:42 PM
If your startup is anything like the startups I've worked with in the past, then compliance and security isn't something that's on the top of your mind.

But compliance is a big deal!
#SOC2 #cloud #cloudsecurity #cloud #Datasecurity #cloudsecurity #SOC2compliance #Cybersecurity
Yes, you need to think about SOC 2 compliance even if you’re a startup — Here’s why it matters…
If you’re running a startup and handling customer data — especially the sensitive stuff like personal or financial info — you really should…
heyjoshlee.medium.com
October 1, 2025 at 1:50 PM
Compliance. Do you even know what you need to be compliant with? Not knowing could cost you your entire business.

#ISO27001 #Iso27001Certification #Cloud #DataSecurity #Cybersecurity #Certification #SoftwareSecurity #CloudSecurity
Here’s what ISO 27001 Is — and Why You Should Care About Your Data Security
So, you want to keep your data safe and steer clear of expensive mistakes? Understanding ISO 27001 is honestly a pretty smart move. ISO…
medium.com
September 30, 2025 at 2:26 PM
When it comes to cybersecurity, the tools you use can be the difference between preventing breaches - or not even knowing if anything happened all
Here are some kinds of tools I like to use. I think they'll be helpful for you, too
#CloudSecurity #Cspm #Ciem #Cnapp #Cloud #Cybersecurity #DataSecurity
CSPM, CIEM, CNAPP: What These Cloud Security Tools Really Do and Why They Matter for You
Working with cloud services? Keeping your data and systems safe can get complicated fast. Tools like CSPM, CIEM, and CNAPP are supposed to…
medium.com
September 29, 2025 at 3:22 PM
There are a lot of benefits to using the cloud. And, with those benefits you have certain responsibilities. Your cloud provider will be responsible for the infrastructure, but you need to make sure you're still compliant other things. Here's what
#Cloud #CloudCompliance #Cybersecurity #DataSecurity
The Hidden Compliance Risks in Cloud-Native Apps and How to Manage Them Easily
Cloud-native apps let you build and scale software fast, but they sneak in compliance risks that a lot of folks just don’t see coming…
heyjoshlee.medium.com
September 26, 2025 at 2:32 PM