what i do
i design secure, resilient systems that scale. my work spans enterprise cloud migrations, identity governance, shadow it risk remediation, and infrastructure hardening. i focus on translating complex security frameworks into operationally executable strategies that reduce measurable risk without slowing business momentum.
across consulting, enterprise energy, and financial services environments, i have led initiatives in azure identity modernization, casb governance, third-party risk management, and operational it leadership — always with a bias toward clarity, accountability, and long-term architectural integrity.
experience highlights
helpdesk manager — municipal accounts & consulting (2025–present)
- lead it operations and infrastructure lifecycle management for a growing accounting firm
- architect automated deployment pipelines and configuration management processes
- implement high-availability file systems, backup automation, and monitoring strategies
- drive vendor evaluation, cost optimization, and enterprise tooling decisions
senior cybersecurity consultant — ernst & young (2022–2024)
- conducted azure and microsoft 365 security assessments aligned to nist and cis benchmarks
- designed casb governance and shadow it remediation processes for a major national bank
- developed data inventory and classification roadmaps leveraging onetrust and azure purview
- delivered governance frameworks improving cloud visibility and regulatory compliance
l3 infrastructure lead — chevron / hcl (2011–2022)
- architected migration of 5,000+ users from on-prem active directory to azure iam
- implemented conditional access, privileged identity management, and access reviews
- deployed azure virtual desktop and site recovery across offshore drillship environments
- designed asset governance frameworks leveraging servicenow cmdb and compliance tooling
certifications
- isc2 certified in cybersecurity (cc)
- microsoft azure security engineer associate (az-500)
- microsoft azure administrator associate (az-104)
- microsoft security, compliance & identity fundamentals (sc-900)
- cissp — in progress
core focus areas
- ▹ cloud security architecture
- ▹ identity & access management (iam)
- ▹ azure ad & conditional access
- ▹ shadow it & casb governance
- ▹ third-party risk management
- ▹ data classification & protection
- ▹ infrastructure automation
- ▹ operational resilience & disaster recovery
philosophy
security is not a toolset — it is a discipline. strategy precedes technology. architecture precedes implementation. every control must serve resilience, not complexity.
ssld reflects that mindset: secure. strategize. lead. defend.
let’s build something resilient
if you are modernizing infrastructure, strengthening identity governance, or exploring secure ai adoption, i welcome the conversation.
reach out — let’s secure it the right way.

