I architect zero-trust access fabrics (NIST 800-207), SASE/SSE controls, and cloud posture management for global enterprises — securing 35,000+ users across 190+ locations. Aligned to NIST AI RMF 1.0, OWASP LLM Top 10, and MITRE ATLAS so AI adoption never compromises identity, data, or posture.
I'm a Network Security Architect with 9 years securing global enterprise infrastructure — architecting zero-trust (NIST 800-207), SASE/SSE (SWG, CASB, DLP), cloud posture (CSPM/CNAPP), identity, and data-egress controls that protect both traditional and AI-enabled workloads at enterprise scale.
At Accenture, I own the zero-trust access fabric for 35,000+ users across 190+ locations on Zscaler (ZIA & ZPA), Palo Alto, Cisco ISE, Entra ID, and Azure CSPM — governing access to enterprise, cloud, and AI-hosted services with ZTNA and micro-segmentation. At Deloitte, I federated 250,000+ users via Entra ID & Google Cloud Identity and migrated 200+ applications across 26 VPCs to AWS.
I align architecture to NIST AI RMF 1.0, OWASP LLM Top 10, and MITRE ATLAS so enterprises can adopt GenAI without compromising posture, data, or identity. Directing 30+ engineer teams across BFSI, healthcare, telecom, and FMCG clients.
NIST 800-207, ZTNA, micro-segmentation, SWG/CASB/DLP, lateral-movement containment.
AWS, Azure, GCP — CSPM/CNAPP/CWPP, API security, inference-endpoint protection.
Entra ID, Okta, Azure B2B, conditional access — human, service, and AI-agent identities.
NIST AI RMF 1.0, OWASP LLM Top 10, MITRE ATLAS, Google SAIF — LLM access governance.
Tap through each role to see the work, the diagrams, and the impact.
Architecting the zero-trust access fabric and cloud security posture for global enterprise infrastructure — governing access to on-prem, cloud, and AI-hosted services, and directing a 26–28 engineer security operations team.
Architected the segmented AWS cloud network foundation for SaaS and AI workloads, and the identity backbone federating SSO for a quarter-million users.
Network security architecture consulting across CMHC, Grant Thornton, Nature's Bounty, and Illinois Tollway — engineering complex changes, DR projects, and multi-OEM firewall policy at SLA.
Network and security operations across Invacare, Weatherford International, and Allstate — Azure firewall deployment, IAM migration, SIEM rollout, and enterprise vulnerability & compliance monitoring.
Owned IP service management operations for Vodafone India's telecom network — incident, change, and availability governance across the IP services stack.
L1/L2 support and network engineering for Vodafone VAS-LAN, NLD/ILD voice, E-TOPUP, and IN networks — routing/switching, firewall ops, and critical MOP execution.
Full-stack security across zero-trust, cloud, identity, detection, and AI infrastructure.
Industry-recognized across Azure and AWS.
AZ-303 / AZ-304
AZ-104
Amazon Web Services
Amazon Web Services
Quantified outcomes across zero-trust, cloud, identity, and AI-ready infrastructure.
End-to-end Zscaler tenant architecture, build, and deployment for 35,000+ users across 190+ locations at Accenture.
Zero-trust access (ZIA/ZPA, ZTNA) across 190+ locations for the global enterprise footprint.
Migrated 250,000+ end-users via Entra ID + Google Cloud Identity federation across Google Marketing Platform at Deloitte.
Migrated 200+ applications incl. 50+ business-critical workloads across 26 VPCs — the segmented cloud network foundation for SaaS and AI workloads at Deloitte.
Cross-functional security operations teams (firewalls, NAC, Zscaler, IAM) governing incident response & compliance posture.
Architecture aligned to NIST AI RMF 1.0, OWASP LLM Top 10, MITRE ATLAS & Google SAIF — enabling enterprise AI without posture drift.
Zero-trust architecture, cloud & AI security, identity governance — open to opportunities and collaborations.