Where I focus
The disciplines behind running regulated cloud infrastructure at scale.
IT strategy & roadmaps
Setting technology direction, capacity plans, and operational risk controls across the portfolio.
Cloud migration & consolidation
Moving on-premises workloads, VMs, and data centers to Azure and AWS without disrupting service.
FinOps & budget ownership
Governing cloud spend, IT budgets, and forecasting so infrastructure growth stays accountable.
Vendor & MSP governance
Owning SLAs and KPIs across distributed teams, vendors, and managed service providers.
Business continuity & DR
Designing disaster recovery strategy against defined RPO/RTO targets for regulated platforms.
Security & continuous monitoring
Implementing threat detection, conditional access, DLP, and audit logging built to meet strict GxP and HIPAA compliance standards.
Azure landing zone architecture
Designed and built a 70-subscription Azure landing zone from scratch — segmented subnets, centralized firewall, Application Gateway, and Front Door for global load balancing.
SharePoint architecture
Designed enterprise SharePoint farm topology and information architecture, and led version-to-version upgrades from 2003 through 2007, 2010, 2013, 2016, and 2019.
Identity & access management
Designed identity architecture across Okta, Azure AD, and AWS IAM, with RBAC and conditional access enforced at the network perimeter.