Azure Governance & RBAC
- Management Groups
- Azure Policy
- RBAC & PIM
- Landing Zone Design
Senior Azure & Cloud Infrastructure Engineer with deep experience in governance, security, automation, and operations. I design secure, scalable platforms, enforce strong guardrails, and deliver infrastructure that stays reliable at enterprise scale.
I’m an Azure / DevOps / Cloud Infrastructure Engineer who works at the intersection of security, automation, and operational reliability. My background runs from help desk and server operations into enterprise Azure governance, cloud security posture, infrastructure-as-code, and platform delivery.
I care about the parts of cloud that decide whether an environment is actually usable: access boundaries, management group structure, policy, secure defaults, monitoring, change windows, repeatable deployments, and the scripts that remove manual drag.
Outside of work, I’m still a builder. I tinker with self-hosted projects, retro-gaming setups, and hands-on engineering problems. That habit shows up professionally too: I like taking messy systems and turning them into something cleaner, documented, repeatable, and easier to operate.
The common thread is making Azure environments easier to govern, safer to operate, and less dependent on tribal knowledge.
A few examples of the scale and type of Azure, automation, governance, and operations work I’ve been trusted with.
Improved overall cloud security posture by doubling the security score through hardening and policy-driven remediation.
Managed and mentored cloud specialists across Azure initiatives, standards, change windows, and runbooks.
Migrated Azure VMs across subscriptions in a multi-team delivery effort with production reliability in mind.
Built PowerShell scripts and runbooks to automate inventory, provisioning, password workflows, and operations.
Coordinated infrastructure operations including stop/start, resizing, deallocation, patching, and recovery work.
Standardized management groups, policy, RBAC boundaries, tagging, naming patterns, and subscription ownership.
Microsoft Certified: Azure Administrator Associate
Issued Jan 2025 · Expires Jan 2026Credential ID 139D3A-WA66BD
Issued May 2019
Issued Sep 2022
Historical
Historical
If you’re running workloads in Azure, Azure Key Vault is one of your most important security building blocks. It’s where your secrets, keys, and certificates live and if that…
Nov 17, 2025When building cloud applications, choosing the right storage solution is critical. Microsoft Azure offers several storage options, including Blob, Queue, File, and Table storage.…
Nov 16, 2025When most people think about Azure DevOps pipelines, they think YAML, tasks, and service connections. But behind almost every reliable pipeline is at least one PowerShell script…
Nov 11, 2025PowerShell is one of the most powerful tools in a Windows administrator’s toolkit, but even seasoned users often overlook some of its most efficient features. Whether you’re…
Oct 4, 2024Upgrading PowerShell Az modules is essential for keeping your Azure management tools up to date with the latest features, performance improvements, and security patches. However,…