01
BUILDING
Secure Azure Landing Zone
TerraformAzureEntra ID
Secure-by-default Azure landing zone with segmentation, encryption, identity controls, and centralized logging.
View project →Practical builds focused on infrastructure as code, identity security, detection engineering, automated remediation, and DevSecOps.
Secure-by-default Azure landing zone with segmentation, encryption, identity controls, and centralized logging.
View project →Identity-security audit tool for risky permissions, stale credentials, MFA posture, and privileged access.
View project →Cloud-native detection pipeline with custom analytics, threat-hunting queries, and investigation guidance.
View project →Event-driven remediation that detects risky configuration changes, corrects them, and records the response.
View project →Shift-left pipeline that scans infrastructure code and blocks insecure deployments.
View project →