I sit where security architecture meets software engineering. I design Zero Trust controls, then write the code — Python, Django, Microsoft Graph API, Logic Apps — that actually enforces them. The point: take slow, manual security work and turn it into code that runs itself and scales.
At Hunt&Hackett I rolled out enterprise-wide Zero Trust with Conditional Access, PIM, and Entra ID Governance, built a custom IAM automation platform that cut access-review effort by 25%, and automated audit evidence so nobody had to take screenshots by hand anymore.
// zero trust from design to enforcement
// microsoft 365 + azure, defender-grade
// from reactive to engineered
// audit-ready, evidence on tap
A JML (joiners, movers, leavers) automation platform that turns HR events into a smooth first day — automated Entra ID provisioning via Graph API, approvals, and a full audit trail — with the UI and service catalog to run employee lifecycle end-to-end.
Automates periodic access reviews end-to-end — pings owners, tracks approvals, and auto-revokes stale entitlements to keep least-privilege enforced and audit-ready.
Automates employee offboarding and hunts down orphaned "ghost" accounts after departure, revoking access across every downstream app.
Automates ISO 27001 evidence collection from identity logs, turning raw access data into auditor-ready evidence packs.