

Senior Azure Cloud Security Architect specializing in Zero Trust Architecture and CMMC/NIST SP 800-171 compliant environments supporting regulated government and defense-sector clients. Proven success designing secure Azure reference architectures, compliant landing zones, and large-scale cloud platforms protecting Controlled Unclassified Information (CUI). Expert in identity-centric security, compliance engineering, assessment readiness, and enterprise cloud modernization. Experienced supporting highly regulated environments requiring strict audit readiness, security control implementation, and secure handling of CUI aligned with DFARS and federal security requirements. Trusted advisor to executive leadership delivering secure, scalable, audit-ready cloud solutions.
• Lead architect for Zero Trust Azure environments supporting regulated government clients, enforcing identity-centric access controls aligned with CMMC Level 2 and NIST 800-171.
• Designed Azure Reference Architectures and compliant landing zones enabling repeatable deployment of secure tenant environments protecting Controlled Unclassified Information (CUI).
• Deployed and secured 100+ of Azure and Microsoft 365 tenants with audit-ready configurations and continuous compliance posture.
• Architected enterprise identity solutions using Entra ID, RBAC, MFA, and Conditional Access to reduce privileged access risk and attack surface.
• Implemented Azure governance and policy frameworks mapped to NIST control families supporting assessment readiness.
• Engineered endpoint and workload protection integrating CrowdStrike, Zscaler, and Airlock within Zero Trust security models.
• Built centralized SecOps monitoring using Microsoft Defender XDR and Azure Sentinel with automated detection and response workflows.
• Implemented data lifecycle governance and insider-risk protections using Microsoft Purview.
• Supported CMMC assessments through SSP development, control validation, remediation planning, and compliance documentation.
• Provided technical leadership and mentoring across Professional Services teams, standardizing secure delivery practices.
• Managed portfolio of enterprise clients, developing technology roadmaps aligned to business strategy and modernization goals.
• Partnered with executive stakeholders to define IT vision, budgeting, and cloud transformation initiatives.
• Acted as trusted advisor ensuring service delivery excellence and long-term client success.
• Coordinated delivery of roadmap initiatives with project and procurement teams, ensuring on-time and on-budget execution.
• Led Quarterly Business Reviews (QBRs) leveraging operational and security metrics to drive continuous improvement.
• Served as Chief Architect delivering scalable private, hybrid, and Azure cloud solutions supporting hundreds of enterprise customers.
• Architected distributed Azure and VMware environments ensuring resilience, scalability, and performance.
• Led complex on-premises to Azure migrations including assessments, POCs, and architectural governance.
• Defined cloud service architecture and contributed to next-generation managed cloud offerings.
• Guided organizations on cloud adoption, disaster recovery, and backup strategy improving operational stability.
• Directed cloud services, platform engineering, and data center modernization initiatives.
• Architected enterprise DRaaS and BaaS platforms (Veeam, Zerto, Asigra) into scalable multi-regional services.
• Built operational frameworks, automation, and technical teams supporting managed cloud product delivery.
• Architected and led development of six large-scale data centers, overseeing deployment of thousands of servers, networking, and storage systems while enabling incident-free releases of up to 200 servers per day.
• Directed data center engineering, automation, and vendor selection, implementing deployment scripting and standardized hardware architectures to improve operational efficiency and scalability.
• Designed and scaled a 25,000-server Hadoop cloud environment, ensuring high availability, performance, and infrastructure resilience to support rapid growth and merger integration.
• Led post-acquisition integration of technology assets and infrastructure, enabling seamless migration with minimal operational disruption.
• Architected migration of legacy systems to high-availability, virtualized environments, improving scalability and operational resilience.
• Directed server consolidation and infrastructure modernization initiatives, enhancing performance, security, and data center efficiency.
• Architected and led migration of legacy systems to high-availability, fault-tolerant platforms, improving scalability and system reliability.
• Assessed enterprise IT infrastructure and defined architectural priorities to optimize performance and operational efficiency.
• Introduced and implemented modern technologies that streamlined media operations and enhanced end-to-end workflows.
• Led cross-functional stakeholders and teams to align project scope, timelines, and budgets with organizational objectives.
• Facilitated collaboration between traders and developers to resolve operational issues and improve workflow efficiency.
• Directed development of automated pre-trading analytics and a .NET/SQL trading platform integrating third-party APIs (e.g., Quantifi), enhancing decision-making and operational performance.
• Designed and implemented VMware solutions for high-traffic applications, enhancing system performance, scalability, and reliability.
• Established a fully redundant data center, optimizing infrastructure performance and ensuring business continuity.
• Trained system engineers and advised executive decision-makers on scalability, efficiency, and strategic infrastructure planning.
• Designed and implemented large-scale Hadoop Big Data clusters, optimizing data processing, storage, and scalability to support analytics and high-performance workloads.
• Collaborated with data scientists and cross-functional teams to enhance data availability, performance tuning, and machine learning pipelines, improving processing speed and accessibility.
• Developed scalable architectures for digital platforms, evaluated emerging technologies, and aligned solutions with business objectives to drive operational efficiency and improved user experience.
• Architected and led enterprise-scale infrastructure and Big Data deployments, including Hadoop clusters, data centers, and high-performance digital platforms, ensuring scalability, high availability, and optimized system performance.
• Directed end-to-end migrations and integrations, designing compute, storage, network, and connectivity solutions while aligning architecture with strategic business objectives and regulatory requirements.
• Partnered with cross-functional teams and executive stakeholders to define technology strategy, security standards, and architecture roadmaps, implementing innovative solutions that enhanced operational reliability, data analytics, and high-volume content delivery.
• Architected and led the end-to-end infrastructure migration of a trading group from Deutsche Bank to Galleon Group, designing scalable compute, storage, network, market data, and low-latency connectivity solutions to support high-performance trading operations.
• Directed the implementation and integration of enterprise-grade infrastructure components—including servers, storage platforms, backup systems, colocation facilities, and private lines—ensuring high availability, performance optimization, and seamless production readiness.
• Developed strategic infrastructure proposals and technical roadmaps for executive leadership, defining hardware standards, connectivity architecture, application transition strategy, and security controls while delivering comprehensive documentation and post-implementation governance.
• Managed large-scale Linux, Solaris, and Windows server clusters across multiple data centers, ensuring 99.9%+ uptime, high availability, and seamless failover strategies.
• Conducted comprehensive network and system security audits; implemented preventive controls and managed Intrusion Detection Systems (IDS) to strengthen overall infrastructure security and risk mitigation.
• Led the design, deployment, and customization of enterprise monitoring solutions for infrastructure and NOC operations, enhancing system visibility, accelerating incident detection, and improving SLA compliance.
Cloud & Security Architecture
Azure Architecture
Zero Trust Architecture (ZTA)
Secure Landing Zones & Governance
Enterprise Identity & Access Architecture
Cloud Security
Security & Operations
Entra ID, RBAC, MFA, Conditional Access
Microsoft Defender XDR
Azure Sentinel (SIEM/SOAR)
Microsoft Purview Governance
Endpoint & Workload Protection
Leadership & Strategy
Enterprise Architecture
Technology Roadmaps
Client Advisory / vCTO Engagement
Cloud Practice Development
Cross-Functional Leadership
Compliance & Frameworks
CMMC Level 2
NIST SP 800-171
DFARS 252204-7012
CUI Protection Strategies
RMF Concepts & Control Mapping
· Zscaler Digital Transformation Administrator (ZDTA)
· Microsoft Certified: Azure Administrator (AZ-103)
· VMware Cloud Provider Professional (VCPP)
· Veeam Certified Engineer (VMCE)
· Zerto Certified Professional (ZCP)
· Asigra Certified Professional (ACP)