Identity
Access control, MFA, role design, account lifecycle, least privilege, and privileged workflows.
Security
My focus is practical security: identity, hardening, visibility, segmentation, governance, response, and security controls that support the business instead of fighting it.
Approach
Security works best when it understands the environment it is protecting. Controls have to account for users, workflows, business systems, support requirements, recovery, and operational pressure.
My background in IT operations gives me a practical lens for security. I am interested in controls that reduce risk while still allowing systems and people to function effectively.
That is why identity, access control, logging, segmentation, hardening, documentation, automation, and recovery are recurring themes throughout my labs and projects.
Operating Model
Access control, MFA, role design, account lifecycle, least privilege, and privileged workflows.
Secure configuration, endpoint hygiene, network segmentation, hardening, and reduction of unnecessary exposure.
Logging, monitoring, alert triage, abnormal behavior, and building better visibility into systems.
Containment, investigation, recovery, communication, documentation, and repeatable incident workflows.
Turn incidents, audits, troubleshooting, and operational friction into stronger systems and better controls.
Current Focus
I am combining structured certification study with hands-on infrastructure and security labs.
Identity & Access Management
Microsoft Entra ID
Conditional Access
Cloud Security
Security Operations
Governance & Risk
Endpoint Security
Network Segmentation
Logging & Monitoring
Automation
Security Projects
Identity & Access
Conditional Access, MFA, RBAC, account lifecycle, privileged workflows, and practical identity design.
Explore Project →
Security Operations
Exploring local AI for event classification, log summarization, incident-response assistance, and workflow automation.
Explore Project →
“Resilient systems aren't built by accident.”