Azure • DevOps • Cloud Infrastructure

I build reliable cloud platforms and automate the ugly parts.

Senior Azure & Cloud Infrastructure Engineer with deep experience in governance, security, automation, and operations. I design secure, scalable platforms, enforce strong guardrails, and deliver infrastructure that stays reliable at enterprise scale.

Secure by designGovernance & security first
Automate everythingIaC, scripts, pipelines
Built to lastReliable, observable, resilient
Andrew Sutcliffe professional headshot
About Me

Cloud engineer with an operations backbone and a builder’s bias.

I’m an Azure / DevOps / Cloud Infrastructure Engineer who works at the intersection of security, automation, and operational reliability. My background runs from help desk and server operations into enterprise Azure governance, cloud security posture, infrastructure-as-code, and platform delivery.

I care about the parts of cloud that decide whether an environment is actually usable: access boundaries, management group structure, policy, secure defaults, monitoring, change windows, repeatable deployments, and the scripts that remove manual drag.

Outside of work, I’m still a builder. I tinker with self-hosted projects, retro-gaming setups, and hands-on engineering problems. That habit shows up professionally too: I like taking messy systems and turning them into something cleaner, documented, repeatable, and easier to operate.

Andrew Sutcliffe outdoors on a rope course
Good architecture is invisible.
Good automation is priceless.
Skills & Expertise

Practical cloud work across governance, security, automation, and operations.

The common thread is making Azure environments easier to govern, safer to operate, and less dependent on tribal knowledge.

Azure Governance & RBAC

  • Management Groups
  • Azure Policy
  • RBAC & PIM
  • Landing Zone Design

Defender for Cloud / Security Posture

  • Secure Score
  • Recommendations
  • Compliance
  • Threat Protection

Bicep & Infrastructure as Code

  • Bicep Modules
  • ARM Templates
  • IaC Standards
  • Reusable Patterns

PowerShell & Automation

  • PowerShell Scripting
  • Runbooks
  • Automation Accounts
  • Task Automation

Azure DevOps Pipelines

  • CI/CD Pipelines
  • YAML Pipelines
  • Artifacts & Releases
  • Environments

Monitoring / Operations / IR

  • Azure Monitor
  • Log Analytics
  • Alerting
  • Incident Response
Proof & Outcomes

Concrete work, not abstract claims.

A few examples of the scale and type of Azure, automation, governance, and operations work I’ve been trusted with.

23% → 46%

Improved overall cloud security posture by doubling the security score through hardening and policy-driven remediation.

Led a Team of 5

Managed and mentored cloud specialists across Azure initiatives, standards, change windows, and runbooks.

3,000+ AVMs

Migrated Azure VMs across subscriptions in a multi-team delivery effort with production reliability in mind.

120+ Scripts

Built PowerShell scripts and runbooks to automate inventory, provisioning, password workflows, and operations.

Large-Scale Ops

Coordinated infrastructure operations including stop/start, resizing, deallocation, patching, and recovery work.

Governance at Scale

Standardized management groups, policy, RBAC boundaries, tagging, naming patterns, and subscription ownership.

Microsoft Certified: Azure Administrator Associate badge

Certified Azure Administrator

Microsoft Certified: Azure Administrator Associate

Certifications
Microsoft Certified: Azure Administrator Associate badge

Microsoft Certified: Azure Administrator Associate

Issued Jan 2025 · Expires Jan 2026Credential ID 139D3A-WA66BD

Microsoft Certified: Azure Fundamentals badge

Microsoft Certified: Azure Fundamentals

Issued May 2019

Defender for Cloud Ninja

Issued Sep 2022

CompTIA Network+

Historical

CompTIA A+

Historical