I specialize in Azure cloud security — designing and implementing Zero Trust architectures, Defender for Cloud posture management, Microsoft Sentinel SIEM/SOAR, and identity governance with Microsoft Entra ID.
On the DevSecOps side, I embed security controls directly into CI/CD pipelines: secrets scanning, IaC security with Checkov and Bicep, container image scanning, and policy-as-code with Azure Policy and OPA. I use Terraform and Bicep to provision hardened, least-privilege infrastructure at scale.
With seven Microsoft certifications and hands-on experience across the full Azure security stack, I bridge the gap between security policy, platform engineering, and developer workflows.