I'm a Senior Cloud & Infrastructure Engineer with 16+ years designing, deploying, and hardening enterprise-scale Azure environments — with a specialization in Azure Virtual Desktop (AVD), Nerdio Manager, and Zero Trust identity architecture. I've delivered infrastructure and end-user computing platforms for organizations including AT&T, Microsoft, Crédit Agricole, Transatlantic Reinsurance, the IMF/World Bank, and GE, and currently lead cloud and endpoint security initiatives at Group 1001, an insurance and financial services enterprise.
My work sits at the intersection of cloud infrastructure, identity, endpoint security, and automation — building AVD platforms that are secure by design, provisioned through Infrastructure-as-Code, and governed through Zero Trust conditional access.
- 🏢 Currently: Senior Cloud and Infrastructure Engineer @ Group 1001
- 🖥️ Specialization: Azure Virtual Desktop · Nerdio Manager (NME/NMM) · FSLogix · Entra ID · Intune · Tanium
- ⚙️ Automation: Terraform · Bicep · PowerShell · GitLab CI/CD · Azure DevOps Pipelines
- 🛡️ Security focus: Zero Trust Conditional Access, Endpoint Compliance, Tanium Cloud SCIM/RBAC
- 🌱 Currently building: a ground-up Tanium Cloud deployment with SCIM provisioning from Entra ID
- 🎯 Open to: Senior Cloud Engineer, AVD Architect, and DevOps/Platform Engineer roles (Remote, USA)
| Repository | Description |
|---|---|
| azure-avd-enterprise-architecture | End-to-end AVD platform-as-code: host pools, Nerdio Manager, FSLogix profile containers, Conditional Access, and Tanium Cloud SCIM/RBAC — built with Terraform and deployed via GitLab CI/CD |
Full architecture writeups, diagrams, and IaC modules live in the pinned repo above.