Principal Microsoft security architect

Available across US, Europe, and Australia time zones

I help organizations build secure Azure environments. Sentinel, Zero Trust, KQL, automation. Been doing this for 15+ years with Fortune 500 companies and regulated industries.

Book a free consultation
Flexible pricing
15+ years experience
Microsoft expert
US/EU/AU time zones
Available now

What I do

Azure Virtual Desktop (AVD)

  • Deploy secure pooled/personal desktops with FSLogix and MSIX App Attach
  • Security hardening: MFA, Conditional Access, NSGs, RBAC
  • Privileged Access Workstations (PAWs) for high-security environments

Microsoft Intune / Endpoint Management

  • Configuration/compliance policies, Windows Autopilot deployment
  • GPO-to-Intune migration with PowerShell remediation scripts
  • Application packaging and hardening baselines (CIS, Security Baselines)

Microsoft Sentinel SIEM/SOAR

  • Custom KQL detection rules and SOAR automation
  • Deployment via Bicep Infrastructure as Code
  • SOC-ready threat detection and response

Enterprise PKI Architecture

  • NZISM/DIA compliant, highly available multi-tier PKI
  • Automated certificate lifecycle with System Center integration
  • Enterprise-scale provisioning and revocation

Zero Trust Implementation

  • Entra ID, Conditional Access, Privileged Identity Management
  • Identity/device/network microsegmentation
  • Aligned with NIST 800-207 and Azure WAF Security Pillar

Vulnerability Management Programs

  • Enterprise VM programs: Tenable, Nessus, CrowdStrike, Defender for Cloud
  • Risk-prioritized remediation and compliance gap analysis
  • Integration with SCCM/Intune patch management

PowerShell & Bicep Automation

  • Security operations automation and compliance enforcement
  • Bicep/ARM Infrastructure as Code with Azure DevOps CI/CD
  • Reduce deployment time from weeks to hours

System Hardening & Compliance

  • CIS Benchmarks, NZISM, Microsoft Security Baselines
  • Automated enforcement via GPO/SCCM/Intune
  • Continuous monitoring with Azure Policy and Nessus/Tenable

What you get

Working security solutions, complete documentation, and knowledge transfer so your team can run things independently.

Who hires me

Fortune 500 companies, financial services, healthcare, government agencies, tech companies, and consulting firms.

Let's talk

Free 30-minute call to discuss what you need.

Book a call