sethdford
- 567 skills
- 0 followers
- 21 hours ago last updated
- ▌ Capacity Planning · sethdfordModel team capacity across quarters, accounting for hiring, attrition, and project work. Use when forecasting resource availability for roadmaps.
- ▌ Technical Roadmap · sethdford bundleBuild multi-quarter technical roadmaps aligned with business goals, clearly showing strategic investments, trade-offs, and dependencies. Use when planning longer-term technical direction, communicating with stakeholders, or aligning engineering capacity with business priorities.
- ▌ Velocity Analysis · sethdfordTrack and interpret sprint velocity to forecast capacity, identify bottlenecks, and improve planning accuracy. Use when analyzing team productivity trends.
- ▌ Technical Mentoring · sethdfordCoach engineers on architecture and design. Provide feedback, guide learning, support growth. Use when mentoring junior architects or senior engineers.
- ▌ Proof Of Concept Plan · sethdfordPlan and execute focused POCs to validate architectural decisions before full commitment.
- ▌ Reliability Design · sethdfordDesign systems that fail gracefully and recover automatically. Use when defining SLAs, designing for fault tolerance, or improving uptime.
- ▌ Trade Off Analysis · sethdfordAnalyze architectural trade-offs systematically using decision matrices. Use when comparing design options or justifying architectural choices to stakeholders.
- ▌ CI CD Pipeline Design · sethdfordGitHub Actions, GitLab CI, Jenkins; stages, artifacts, caching, and deployment automation.
- ▌ Code Review Checklist · sethdfordSystematic code review process, feedback templates, approval criteria, and review best practices.
- ▌ Competitive Landscape · sethdfordMap existing solutions, alternatives, and competitive positioning to understand the problem space.
- ▌ Customer Segmentation · sethdfordIdentify and prioritize customer segments based on shared needs, behaviors, and contexts.
- ▌ Discovery Sprint Plan · sethdfordPlan and execute a focused 1-week discovery sprint with clear learning objectives.
- ▌
- ▌ Weighted Scoring · sethdfordCreate custom weighted prioritization frameworks aligned to your strategy.
- ▌
- ▌
- ▌
- ▌ API Performance Testing · sethdfordExpert approach to api-performance-testing in API testing. Use when working with .
- ▌ Test Framework Selection · sethdfordExpert approach to test-framework-selection in test automation. Use when working with .
- ▌ Test Case Design · sethdfordDesign systematic test cases covering valid inputs, invalid inputs, and edge cases. Use when creating manual test suites.
- ▌ Use Case Testing · sethdfordDerive test scenarios from use case specifications to validate end-to-end user workflows including main success, alternate, and exception paths. Use for acceptance testing and requirements validation.
- ▌ Spike Test Plan · sethdfordExpert approach to spike-test-plan in performance testing. Use when working with .
- ▌ Quality Gate Design · sethdfordExpert approach to quality-gate-design in quality measurement. Use when working with .
- ▌ Test Environment Plan · sethdfordPlan and design test environment strategies. Use when setting up testing infrastructure and environment requirements.
- ▌ Containment Strategy · sethdfordDevelop containment strategies to isolate compromised systems, prevent lateral movement, and stop ongoing attacks.
- ▌ Owasp Top Ten Check · sethdfordAudit application architecture and code against OWASP Top 10 vulnerabilities. Use when assessing application security posture and prioritizing fixes.
- ▌ Merge Strategy · sethdfordDefine merge strategies (squash, rebase, merge commits) that balance history clarity with practical workflow. Use when setting CI/CD merge policies.
- ▌ Review Metrics · sethdfordTrack code review health metrics (cycle time, review participation, defect escape) to improve review process. Use when analyzing review effectiveness.
- ▌ Change Management · sethdfordDesign change control processes that prevent production surprises while avoiding process paralysis. Use when coordinating multiple team changes or managing infrastructure modifications.
- ▌ Career Ladder Design · sethdfordCreate transparent role progression frameworks showing how engineers advance within technical and lateral tracks. Use when defining career paths and promotion criteria.
- ▌ Performance Feedback · sethdfordDeliver feedback that builds confidence, corrects course, and accelerates growth. Use in 1:1s, code reviews, and performance cycles.
- ▌ Rfc Process · sethdfordStructure Request for Comments processes to document major technical decisions, surface concerns, and build consensus. Use before implementing significant architectural changes.
- ▌ Dependency Mapping · sethdfordIdentify and visualize dependencies between teams, systems, and work items to prevent blocked work. Use when planning cross-team initiatives.
- ▌ Stakeholder Presentation · sethdfordPresent architecture to diverse audiences (executives, product, engineers). Tailor message, manage Q&A, handle skepticism. Use when communicating major decisions or visions.
- ▌ Data Pipeline Design · sethdfordDesign batch and streaming data pipelines. Plan ingestion, transformation, quality checks, and failure recovery. Use when building ETL/ELT systems or data infrastructure.
- ▌ Integration Patterns · sethdfordIntegrate data across systems using ETL, CDC, event streaming, and API patterns. Design robust, maintainable data integrations. Use when connecting disparate data sources or microservices.
- ▌ Network Topology · sethdfordDesign VPCs, subnets, security groups, load balancing, and DNS architecture. Plan for segmentation, DDoS protection, and failover. Use when architecting network infrastructure.
- ▌ API Versioning Strategy · sethdfordBackward compatibility, deprecation policies, versioning schemes (URL, header, media type).
- ▌ Query Optimization · sethdfordEXPLAIN PLAN analysis, index selection, join strategies, and slow query debugging.
- ▌ Infrastructure As Code · sethdfordTerraform, CloudFormation, reproducible infrastructure, version control, and IaC best practices.
- ▌ Documentation Strategy · sethdfordDocumentation levels and types (README, architecture, API, runbooks), keeping docs current and discoverable.
- ▌ Pair Programming Guide · sethdfordEffective pair programming, driver/navigator roles, tools, and collaboration patterns.
- ▌ Design Patterns · sethdfordGang of Four patterns (Creational, Structural, Behavioral) and when to apply them.
- ▌ Opportunity Assessment · sethdfordEvaluate the size, urgency, and addressability of a discovered problem opportunity.
- ▌
- ▌ Test Maintenance Strategy · sethdfordExpert approach to test-maintenance-strategy in test automation. Use when working with .
- ▌ Visual Regression Testing · sethdfordExpert approach to visual-regression-testing in test automation. Use when working with .
- ▌ Load Test Design · sethdfordExpert approach to load-test-design in performance testing. Use when working with .
- ▌ Stress Test Plan · sethdfordExpert approach to stress-test-plan in performance testing. Use when working with .
- ▌ Test Coverage Analysis · sethdfordMeasure and analyze test coverage gaps. Use when identifying untested code paths and assessing coverage sufficiency.
- ▌ Sast Configuration · sethdfordConfigure and deploy Static Application Security Testing (SAST) tools to find vulnerabilities in source code during development.
- ▌ Security Test Plan · sethdfordDevelop comprehensive security test plans covering functional security, vulnerability scanning, and attack scenarios.
- ▌ Audit Preparation · sethdfordPrepare for compliance audits by collecting evidence, organizing documentation, and coordinating with auditors.
- ▌ Evidence Preservation · sethdfordPreserve evidence during incident response to enable forensic analysis and maintain legal admissibility.
- ▌ Authorization Design · sethdfordDesign authorization systems (access control, role-based permissions, principle of least privilege) to enforce fine-grained access policies.
- ▌ Secure Coding Review · sethdford bundleReview code systematically for security vulnerabilities using OWASP Top 10, secure coding patterns, and static analysis best practices. Use when reviewing pull requests, conducting security code reviews, or implementing secure development practices.
- ▌ Security Documentation · sethdfordDevelop comprehensive security documentation including policies, procedures, architecture, and runbooks.
- ▌ Trust Boundary Analysis · sethdfordIdentify trust boundaries in system architecture where privilege levels, authority, or security contexts change. Use when designing authentication, authorization, and inter-component communication.
- ▌ Branching Strategy · sethdfordDesign branching strategies (git flow, trunk-based development, etc.) that support parallel work while maintaining stability. Use when establishing version control discipline or managing deployment complexity.
- ▌ Release Management · sethdfordDesign repeatable release processes that minimize risk and manual overhead. Use when shipping to production, managing versioning, or coordinating multi-team releases.
- ▌ Observability Design · sethdfordDesign observability (metrics, logs, traces) for understanding system behavior in production. Use when debugging distributed systems or building monitoring.
- ▌ Performance Modeling · sethdfordModel system performance, predict latency under load, identify bottlenecks. Use when optimizing performance or capacity planning.
- ▌ Scalability Analysis · sethdfordAnalyze and predict system scalability. Model growth, identify bottlenecks, project infrastructure costs. Use when planning for growth or investigating performance limits.
- ▌ Event Driven Architecture · sethdfordDesign systems that communicate through events instead of direct service calls. Use when building loosely-coupled, scalable, and resilient architectures.
- ▌ State Management · sethdfordFinite state machines, event sourcing, CQRS (Command Query Responsibility Segregation), and state modeling.
- ▌
- ▌ Aria Validation · sethdfordExpert approach to aria-validation in accessibility testing. Use when working with .
- ▌ API Security Review · sethdfordReview API security including authentication, authorization, rate limiting, input validation, and data exposure.
- ▌ Compliance Mapping · sethdfordMap security controls to compliance framework requirements (NIST, CIS, ISO 27001, PCI-DSS, HIPAA, GDPR, SOC 2).
- ▌ Incident Communication · sethdfordDevelop incident communication strategies for internal teams, customers, regulators, and media during and after security incidents.
- ▌ Incident Response Plan · sethdford bundleDevelop comprehensive incident response plans with clear roles, procedures, communication protocols, and recovery workflows. Use when establishing IR processes, conducting tabletops, or updating response procedures after incidents.
- ▌ Authentication Design · sethdfordDesign secure authentication systems with strong password policies, MFA, secure password reset, and session management.
- ▌ Coding Standards · sethdfordDefine and enforce coding standards that reduce cognitive load, prevent bugs, and make code maintainable. Use when establishing style guides or linting rules.
- ▌ Testing Strategy · sethdfordDesign testing strategies (unit, integration, end-to-end, performance) that catch bugs without creating bottlenecks. Use when scaling testing or improving release confidence.
- ▌ Tooling Strategy · sethdfordPlan tooling investments that multiply team productivity (CI/CD, linters, debuggers, profilers, test frameworks). Use in roadmapping or when choosing development tools.
- ▌ Process Improvement · sethdfordSystematically identify and implement process improvements that increase team velocity and reduce friction. Use in retrospectives or when noticing repeated friction points.
- ▌ Knowledge Sharing Plan · sethdfordDesign systematic knowledge transfer mechanisms (lunch-and-learns, brown bags, wikis, architecture reviews) to prevent silos. Use when scaling team or protecting against key person risks.
- ▌ Engineering Blog Post · sethdfordWrite technical blog posts that document decisions, share learnings, and build external reputation. Use for knowledge sharing, hiring, and credibility building.
- ▌ Tech Talk Preparation · sethdfordPrepare and deliver technical talks that educate, inspire, and represent your team and company. Use for conferences, internal knowledge sharing, or building credibility.
- ▌ Cloud Architecture · sethdfordDesign cloud infrastructure for AWS, GCP, or Azure. Plan compute, storage, networking, and compliance. Use when architecting cloud systems or migrating to cloud.
- ▌ Security Architecture · sethdfordDesign security architecture covering authentication, authorization, data protection, and threat models. Use when building security-critical systems.
- ▌ Reactive Patterns · sethdfordStreams, observables, event-driven reactive systems, backpressure, and reactive programming.
- ▌ Customer Interview Guide · sethdfordDesign and conduct structured customer interviews to uncover problems, motivations, and decision-making.
- ▌
- ▌ Opportunity Scoring · sethdfordApply Gibson Biddle's Importance/Satisfaction/Market Size framework.
- ▌
- ▌ Test Environment Management · sethdfordExpert approach to test-environment-management in QA operations. Use when working with .
- ▌ Root Cause Analysis QA · sethdfordExpert approach to root-cause-analysis-qa in quality measurement. Use when working with .
- ▌ Test Metrics Framework · sethdfordExpert approach to test-metrics-framework in quality measurement. Use when working with .
- ▌ Web Security Headers · sethdfordConfigure security HTTP headers to mitigate XSS, clickjacking, MIME sniffing, and other browser-based attacks.
- ▌ Data Classification · sethdfordClassify organizational data by sensitivity level and define handling, storage, and access requirements.
- ▌ Forensic Analysis Guide · sethdfordConduct forensic analysis to determine attack vectors, scope of compromise, and evidence for legal proceedings.
- ▌ Iam Policy Design · sethdfordDesign and implement least-privilege IAM policies for cloud and on-premise environments.
- ▌ Cryptography Selection · sethdfordSelect appropriate cryptographic algorithms and parameters for encryption, hashing, key derivation, and digital signatures.
- ▌ Detection Engineering · sethdfordBuild detection engineering capabilities including threat modeling, detection hypothesis development, and hypothesis testing.
- ▌ Log Analysis Security · sethdfordAnalyze logs to investigate security incidents, identify attack patterns, and build detection rules.
- ▌ Development Workflow · sethdfordDesign development workflows that balance speed, quality, and safety. Use when establishing team processes or improving delivery efficiency.
- ▌ Estimation Techniques · sethdfordApply evidence-based estimation methods (story points, t-shirt sizing, planning poker) to reduce uncertainty. Use when sizing work for sprints or releases.
- ▌ Sprint Planning Guide · sethdfordFacilitate effective sprint planning meetings that balance team capacity, business priorities, and technical health. Use when preparing for sprint planning.
- ▌ Deployment Topology · sethdfordPlan container orchestration, load balancing, high availability, and scaling. Design deployment topologies for production systems. Use when architecting deployment infrastructure or modernizing deployment practices.