sethdford
- 567 skills
- 0 followers
- 1 day ago last updated
- ▌
- ▌ Assumption Mapping · sethdfordDocument and prioritize the assumptions underlying your product strategy before validation.
- ▌
- ▌
- ▌
- ▌ Cost Of Delay · sethdfordQuantify the business cost of delayed features to prioritize fast-payoff work.
- ▌ Kano Analysis · sethdfordIdentify features that delight, satisfy, or dissatisfy customers to guide prioritization.
- ▌ Strategic Narrative · sethdfordBuild a compelling narrative that connects vision, strategy, and market positioning.
- ▌ Wcag Audit · sethdfordExpert approach to wcag-audit in accessibility testing. Use when working with .
- ▌ API Regression Suite · sethdfordExpert approach to api-regression-suite in API testing. Use when working with .
- ▌ API Security Testing · sethdfordExpert approach to api-security-testing in API testing. Use when working with .
- ▌ Test Data Strategy · sethdfordDesign test data management approaches. Use when planning data provisioning for testing.
- ▌ Dast Test Plan · sethdfordDesign and execute Dynamic Application Security Testing (DAST) test plans to find runtime vulnerabilities in web applications.
- ▌ Soc2 Controls · sethdfordImplement SOC 2 Trust Services Criteria controls for security, availability, processing integrity, confidentiality, and privacy.
- ▌ Bug Bounty Program · sethdfordEstablish and manage bug bounty programs to leverage external researchers for vulnerability discovery.
- ▌ Architecture Kata · sethdfordPractice architectural design with structured problems. Time-limited design challenges. Use for skill development, interviews, team exercises.
- ▌ Data Flow Diagram · sethdfordDesign data movement and transformation pipelines. Show how data flows between systems, transforms, and where it's stored. Use when architecting data integrations or ETL processes.
- ▌ Data Model Design · sethdfordDesign data models for business domains using entity-relationship or domain-driven design. Use when modeling new domains or refactoring data structures.
- ▌ Storage Selection · sethdfordChoose the right database technology for specific workloads. Evaluate relational, NoSQL, data warehouses, and search engines. Use when selecting storage systems for new features or optimizing existing ones.
- ▌ Service Mesh Patterns · sethdfordImplement service mesh patterns for observability, resilience, and traffic management. Use when managing complex microservices communication at scale.
- ▌ API Testing Strategy · sethdfordContract testing, API mocking, integration testing, and end-to-end API testing.
- ▌ Rate Limiting Design · sethdfordRate limiting strategies (token bucket, sliding window, quota), DOS protection, and fair usage.
- ▌
- ▌ Deployment Strategy · sethdfordBlue-green, canary, rolling deployments, traffic shifting, and safe release strategies.
- ▌ Quality Gate Definition · sethdfordDefine automated quality gates that enforce standards without manual review. Use when setting up CI/CD checks and blocking criteria.
- ▌ Review Checklist Design · sethdfordDesign effective review checklists that surface defects without slowing teams down. Use when creating domain-specific review criteria.
- ▌ Accessibility Standards · sethdfordEstablish accessibility standards that make products usable for people with disabilities without being an afterthought. Use when building user-facing systems or scaling the product.
- ▌ Documentation Standards · sethdfordEstablish documentation standards that keep docs current, discoverable, and useful. Use when scaling team or improving knowledge retention.
- ▌ Pair Programming Facilitation · sethdfordStructure effective pair programming sessions for learning, code quality, and knowledge transfer. Use when onboarding, tackling high-risk work, or mentoring through complex problems.
- ▌ Post Decision Review · sethdfordConduct retrospective reviews of major decisions 3-6 months after implementation to capture learnings and calibrate future decisions. Use to build institutional memory and improve decision quality.
- ▌ Risk Mitigation Plan · sethdfordIdentify risks in major decisions and plan mitigation strategies before they become emergencies. Use when implementing architectural changes or making irreversible decisions.
- ▌ Architecture Patterns Catalog · sethdfordReference catalog of proven architecture patterns. Know when to apply each pattern, tradeoffs, and examples. Use as reference when designing systems.
- ▌ Architecture Principles · sethdfordDefine foundational architecture principles and decision-making rules. Communicate guidelines across organization. Use when establishing architectural standards or updating strategy.
- ▌ Fitness Function Design · sethdfordDesign metrics that measure architecture health (coupling, modularity, scalability). Automate fitness function checks in CI/CD. Use when establishing quality gates or measuring architectural degradation.
- ▌ Data Structure Selection · sethdfordChoosing optimal data structures based on access patterns and performance requirements.
- ▌
- ▌ Accessibility Test Plan · sethdfordExpert approach to accessibility-test-plan in accessibility testing. Use when working with .
- ▌ Color Contrast Analysis · sethdfordExpert approach to color-contrast-analysis in accessibility testing. Use when working with .
- ▌ Infrastructure Hardening · sethdfordHarden infrastructure through patch management, service hardening, and secure baselines.
- ▌ Security Monitoring Strategy · sethdfordDevelop comprehensive security monitoring strategy covering detection sources, alert tuning, and operational resilience.
- ▌ Incident Management Process · sethdfordDesign incident response procedures that prioritize quick resolution and learning over blame. Use when establishing on-call practices or improving incident response effectiveness.
- ▌ Retrospective Facilitation Tl · sethdfordFacilitate effective retrospectives that surface real issues, drive action, and build psychological safety. Use at sprint end or after major initiatives.
- ▌ Build Vs Buy Analysis · sethdfordSystematically evaluate whether to build custom solutions or buy/adopt existing products. Use when facing major make-or-buy decisions on infrastructure, tooling, or features.
- ▌ Technology Evaluation · sethdfordBuild evaluation frameworks for selecting technologies, frameworks, or vendors using consistent criteria. Use when choosing dependencies, platforms, or major tooling.
- ▌ Accessibility Regression · sethdfordExpert approach to accessibility-regression in accessibility testing. Use when working with .
- ▌ Exploratory Testing Charter · sethdfordCreate and execute exploratory testing charters to discover defects through unscripted testing. Use when exploring new features or validating user scenarios.
- ▌ Test Effectiveness Measurement · sethdfordExpert approach to test-effectiveness-measurement in quality measurement. Use when working with .
- ▌ Container Security Review · sethdfordReview container security including image scanning, runtime policies, and supply chain integrity.
- ▌ Technical Debt Prioritization · sethdfordEvaluate and prioritize technical debt to balance feature velocity with system health. Use when deciding what debt to address in upcoming sprints.
- ▌ Dependency Vulnerability Scan · sethdfordScan application dependencies for known vulnerabilities and manage security updates across supply chain.
- ▌ Developer Experience Audit · sethdfordSystematically assess and improve developer experience (tools, documentation, onboarding, debugging) to increase team productivity. Use in roadmapping or when noticing developer friction.
- ▌ Architecture Review Facilitation · sethdfordLead effective architecture reviews. Manage discussions, surface disagreements, build consensus, document decisions. Use when conducting reviews or running architecture forums.
- ▌ Threat Intelligence Integration · sethdfordIntegrate threat intelligence into security operations to proactively detect and hunt threats.
- ▌ Alignment Facilitation · sethdfordFacilitate alignment sessions when teams have different visions or priorities. Use before major initiatives or when resolving cross-functional conflict.
- ▌ Keyboard Navigation Testing · sethdfordVerify full keyboard operability of interactive UI elements per WCAG 2.1 SC 2.1.1. Use when testing web or desktop applications for accessibility compliance.
- ▌ Vulnerability Management Program · sethdfordEstablish vulnerability management program to identify, prioritize, remediate, and track vulnerabilities across infrastructure.
- ▌ Cross Team Coordination · sethdfordCoordinate work across multiple teams to prevent conflicts, reduce duplication, and align on shared systems. Use when scaling beyond single team or managing dependencies.
- ▌ Proof Of Concept Criteria · sethdfordDefine when and how to validate ideas through PoCs before full implementation. Use to decide between spikes, PoCs, and production rollouts.
- ▌ Architecture Review Checklist · sethdfordStandardized architecture review process with consistent criteria. Evaluate systems against principles, quality attributes, and operational readiness. Use when conducting architecture reviews.
- ▌ Infrastructure As Code Patterns · sethdfordCodify infrastructure with Terraform, CloudFormation, or Pulumi. Design IaC architecture, versioning, testing, and drift detection. Use when automating infrastructure or establishing IaC practices.
- ▌ Stakeholder Communication · sethdfordCommunicate technical progress, tradeoffs, and risks to non-engineers in language they understand. Use in status updates, executive presentations, or crisis communication.
- ▌ Design Engineering Handoff · sethdfordCreate design-to-engineering handoff processes that minimize rework and ensure designs are implementable. Use when coordinating with design teams or establishing design-engineering collaboration.
- ▌
- ▌ Technical Product Partnership · sethdfordBuild collaborative relationships with product managers where engineers shape strategy and product makes informed decisions about technical tradeoffs. Use when coordinating feature prioritization or platform decisions.
- ▌ Technical Requirements Translation · sethdfordTranslate business/user requirements into technical specifications that engineers can build against. Use when clarifying ambiguous requirements or discovering hidden technical constraints.
- ▌ Feature Flag Design · sethdfordDesigning feature flags for gradual rollouts, A/B testing, and safe feature releases.
- ▌ Pain Point Analysis · sethdfordSystematically identify, document, and prioritize customer pain points with frequency and intensity metrics.
- ▌ Roadmap Design · sethdfordStructure a credible, transparent roadmap that communicates strategy and commitment.
- ▌ Flaky Test Remediation · sethdfordExpert approach to flaky-test-remediation in test automation. Use when working with .
- ▌ Keyword Driven Testing · sethdfordExpert approach to keyword-driven-testing in test automation. Use when working with .
- ▌ Error Guessing · sethdfordExperience-based testing technique that anticipates defects through intuition, domain knowledge, and common failure patterns. Use when supplementing systematic techniques with exploratory instinct.
- ▌ Defect Prevention · sethdfordExpert approach to defect-prevention in quality measurement. Use when working with .
- ▌ Quality Dashboard · sethdfordExpert approach to quality-dashboard in quality measurement. Use when working with .
- ▌ Regression Strategy · sethdfordDevelop regression test strategies and maintenance approaches. Use when managing regression risk across releases.
- ▌ Shift Left Strategy · sethdfordDesign shift-left testing strategies to catch defects early. Use when planning early involvement of QA in development.
- ▌ Test Pyramid Design · sethdfordDesign test pyramid architecture balancing unit, integration, and E2E tests. Use when establishing test level distribution and automation strategy.
- ▌ Pci Dss Review · sethdfordReview PCI-DSS compliance for payment card data security across network, systems, and processes.
- ▌ Siem Rule Design · sethdfordDesign SIEM (Security Information & Event Management) detection rules to identify suspicious activity and attacks.
- ▌ Attack Tree Modeling · sethdfordBuild hierarchical attack trees showing how attackers decompose goals into sub-goals and exploits. Use when analyzing attack paths, prioritizing security investments, or assessing attacker effort and cost.
- ▌ Onboarding Program · sethdfordDesign structured onboarding that accelerates new hire productivity and reduces time-to-contribution. Use when bringing on engineers at any level or scaling the team.
- ▌ Team Health Check · sethdfordConduct team health assessments to identify morale, skill, process, and engagement issues before they become crises. Use quarterly or when noticing team friction.
- ▌ Tech Lead Journal · sethdfordMaintain a personal journal for reflection, decision-making documentation, and organizational memory. Use for continuous learning and calibrating leadership effectiveness.
- ▌ Legacy Modernization · sethdfordModernize legacy systems without rewriting from scratch. Use strangler fig, facade, and strategic refactoring.
- ▌ Cost Optimization · sethdfordOptimize infrastructure and operational costs without sacrificing performance or reliability. Use when managing cloud budgets or improving unit economics.
- ▌ Microservices Patterns · sethdfordApply proven microservices patterns including saga, circuit breaker, bulkhead, and eventual consistency. Use when designing service-to-service communication and handling distributed failures.
- ▌ GRAPHQL Schema Design · sethdfordGraphQL type systems, queries, mutations, subscriptions, and schema design patterns.
- ▌ Code Complexity Analysis · sethdfordMeasuring and reducing cyclomatic complexity and cognitive complexity to improve maintainability.
- ▌ Business Model Canvas · sethdfordMap how your product creates, delivers, and captures value using the BMC framework.
- ▌ Positioning Statement · sethdfordCraft a clear market positioning that differentiates your product and resonates with target customers.
- ▌ Automation Architecture · sethdfordDesign scalable, maintainable test automation architecture. Use when planning automation framework structure and patterns.
- ▌ Risk Based Test Plan · sethdfordPrioritize test efforts based on risk assessment. Use when allocating limited testing resources to maximize defect detection.
- ▌ Test Strategy Design · sethdfordDesign comprehensive test strategies aligned with project goals, risks, and constraints. Use when planning testing efforts for new projects or major releases.
- ▌ Gdpr Assessment · sethdfordAssess GDPR compliance for data processing, rights, privacy controls, and incident response obligations.
- ▌ Recovery Procedures · sethdfordEstablish recovery procedures to restore systems, verify integrity, and validate business continuity after incidents.
- ▌ Secrets Management · sethdfordManage API keys, credentials, and secrets securely using vaults, environment variables, and rotation policies. Prevent secrets from being committed to code or exposed in logs.
- ▌ Session Management · sethdfordImplement secure session handling with proper token generation, storage, expiry, CSRF protection, and session invalidation.
- ▌ Threat Identification · sethdfordSystematically identify threats from threat libraries, historical CVEs, and attacker tactics. Use when augmenting STRIDE analysis with known threats from MITRE ATT&CK, CWE, or your industry.
- ▌ On Call Rotation · sethdfordDesign fair on-call schedules that distribute burden, prevent burnout, and maintain coverage. Use when establishing on-call practices or scaling incident response.
- ▌ One On One Template · sethdford bundleStructure effective one-on-one meetings that build trust, surface concerns, and align on growth and development. Use when preparing regular 1:1s with direct reports or designing 1:1 practices for your team.
- ▌ Spike Plan · sethdfordDesign research spikes to investigate technical uncertainty before committing to large implementation efforts. Use when feasibility is unclear or approach is unproven.