About me
I am a Cloud Security Architect and security engineering professional with a strong focus on Cloud Security, DevSecOps, AI Governance & Security, and Security Automation. My background combines hands-on technical work with governance, risk-based thinking, and practical collaboration with engineering teams. Over the years, I have worked across infrastructure, cloud platforms, and security operations, which has helped me build a balanced view of how security should support business, engineering, and long-term resilience.
My core experience is centered around Azure-focused cloud security, with additional hands-on exposure to AWS and GCP. I have worked on securing cloud environments through governance guardrails, policy-as-code, infrastructure-as-code security, IAM and RBAC controls, posture management, logging and monitoring, incident support, and continuous compliance. I am especially interested in designing secure-by-default cloud foundations that reduce risk without slowing down engineering teams.
A major part of my work has been in DevSecOps and security engineering. I have experience embedding security controls into CI/CD workflows, supporting security scanning practices such as SAST, SCA, DAST, IAST, and IaC scanning, and improving secure delivery practices in collaboration with developers, cloud engineers, and platform teams. I enjoy turning security expectations into practical workflows that teams can actually adopt and sustain. For me, good DevSecOps is not about adding friction; it is about building security into the delivery lifecycle in a meaningful, scalable, and developer-friendly way.
Alongside cloud and DevSecOps work, I am deeply interested in AI Governance & Security. I see this as one of the most important and evolving areas in security today. Organizations are rapidly adopting AI tools, copilots, agent-based systems, and data-connected workflows, but many of them are doing so without enough governance, visibility, or risk understanding. My interest in AI governance includes areas such as shadow AI, safe enterprise AI adoption, data leakage risks, access control around AI tools, trust boundaries for AI-assisted workflows, and the governance models needed to balance innovation with security and compliance. I am currently developing this interest further academically as well, through my Master’s in Cybersecurity, with thesis focus on AI Security & Governance.
I also have growing interest and practical exposure in AI Security Automation. This includes building and exploring AI-assisted workflows, security investigation support, agent-based tasks for triage and enrichment, and ways to reduce repetitive operational effort through controlled automation. I am especially interested in how AI can support security teams in a realistic way, without overpromising autonomy or creating new unmanaged risk. I believe the future of security will involve a thoughtful combination of human judgment, automation, and AI-assisted decision support.
From a broader perspective, I enjoy working on:
• cloud security strategy and principles
• threat modelling and secure architecture reviews
• policy-as-code and governance guardrails
• CSPM/CNAPP and SIEM-driven visibility
• audit and compliance support
• practical security automation
• mentoring and helping others grow in cloud security and DevSecOps
What makes my profile different is that I do not look at security only from one angle. I bring together architecture, engineering, governance, operations, and risk thinking. I value security that is practical, explainable, measurable, and aligned with how modern engineering teams actually work. I also enjoy helping professionals and learners navigate their own growth in these areas, whether that means understanding cloud security fundamentals, improving interview readiness, refining a resume, or building a learning roadmap.
I am always interested in meaningful discussions around Cloud Security, AI Governance & Security, DevSecOps, Security Architecture, and AI Security Automation. If you are a learner, engineer, or security professional looking for practical guidance, thoughtful discussions, or support in these areas, I would be happy to connect.